dhi.io/cilium-operator
1-debian-fips, 1-debian13-fips, 1-fips, 1.20-debian-fips, 1.20-debian13-fips, 1.20-fips, 1.20.2-debian-fips, 1.20.2-debian13-fips, 1.20.2-fips
sha256:3e048fec38aeea3352997c144fa44e4bb9b247d505588ba9db0645ffc619873c
Manifest digest:sha256:ea42a4125501611b740a5c97134fdbb9f023bbd1aa15d4f2305cf4148c5db85d
Size
39.95 MB
Last pushed
8 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/cilium-operator:1-debian-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/cilium-operator:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/cilium-operator@sha256:777a447939df683204e3710cdbcbe1f48d7016d4d4975b577f70023dcf20a02b |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/cilium-operator@sha256:8b3cf7ce667cb236c7eba2e511f7b164e1d9c32dfde0183518ff96ce63fb408d |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/cilium-operator@sha256:4a7860fc01c678a22e7751f0fc12ae383aead627197043cb94812c2cc0ed6132 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/cilium-operator@sha256:bcc910e7bf0ef728c21af307fdf48eb3008cbfbb64ea99874bc5980a615813e1 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/cilium-operator@sha256:c243ae02c4af3c1206033372594cd99a6011fba1b152ebd9c6eb84044a5d1e40 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/cilium-operator@sha256:9764a19250ce1491bdf563f8f6226f83c002953168642cbf75c32651afcd0ba6 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/cilium-operator@sha256:fee7e94dc13183bcc711e6ddf3346d0b88c48512211685577a648309f43bbe31 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/cilium-operator@sha256:f5489e43f585a2da9188a6affcf457b242b46581528d405a8ecff41956a5ba55 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/cilium-operator@sha256:fb9c621ce7474fc1ac32e78f6f25a953b8af52df7a171fe3de923dfc6f198065 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/cilium-operator@sha256:d19f23d80948a0415a932806f7f2cb071b0325909392c5e747f892f5fafed25d |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/cilium-operator@sha256:7b3c627b5c3eb038600d5dca60b4d05f1f5422500a7662df2575b19c55b8f3ba |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/cilium-operator@sha256:625551f86d0c17bb72c29250bf32eb8e21703cae0c7ef9689a8a46bf0e964b95 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/cilium-operator@sha256:0a25185a2448a9aa6f3b6e665d722e154291551b44671acfc5336abde483a817 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/cilium-operator@sha256:906ff769ce73f0bb7e8971af33d01c0b79008928ad85becad7454d31e60d44f2 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/cilium-operator@sha256:9a8128b662f7e859acbb8bda5f2025b5cd38f85c8ead3ad56b8fe6df670e3c99 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/cilium-operator@sha256:7b3a358695bac7218a36e283b56865e5abf1a0bb63d2558332dcf021a0a5cd22 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/cilium-operator@sha256:2cdcde16f07a22ab8e527a6ea10b4515d06f100c97c19c96cac8a76c461dc04c |