Sign inSign up
ECK Operator

dhi.io/eck-operator

ECK Operator 3.5.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips, 3-debian13-fips, 3-fips, 3.5-debian-fips, 3.5-debian13-fips, 3.5-fips, 3.5.0-debian-fips, 3.5.0-debian13-fips, 3.5.0-fips

Index digest:

sha256:3fceff069ed700c87ec8a95ed4a8e8e3dc04b499c0169439af26065b1f5dc12f

Manifest digest:

sha256:062bd026e894b59257199c1d849b2d877861a9226a8253051e435f18c4907afd

Size

27.29 MB

Last pushed

3 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active until Oct 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eck-operator:3-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eck-operator:3-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eck-operator@sha256:71f7969219fe34e5b67b2f98c2dc8adaf6a238a92cfabc84a8342ecff503cd98
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eck-operator@sha256:529b473298fc3158614e0be31370f41d9fb2bedbbe4b924757a6acc05d888812
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/eck-operator@sha256:8ca5a7b8706252fcbcfdda5ff9ff5ff7ec6eb5f439a26f8fad465265dd0f84ce
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eck-operator@sha256:71319d05b57dad4947bd427a87a6c858f15f4df685d9eb866eb321ea8c4e0952
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/eck-operator@sha256:092d2f5a444417ba066c6d07b55ea59a5c1acc6dc61a7c407ca827ed723d8d33
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eck-operator@sha256:bc9a8872228a8895ef99f98b282c8b90ec6098cf12ea053719413c4cc04e92b6
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/eck-operator@sha256:9e4926dba87b77eaf00978a428dbf8289c7a4313add377a73f5b203c25026000
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eck-operator@sha256:0cf8e066add847827c194628089a8f7edf2cb3d69af7de8b245188450889277e
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eck-operator@sha256:f62d6654fb0ee5d140ab684be0f97aa78743561f844c636266203695a5afff8c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eck-operator@sha256:6eff2cd729626c3a84133eb56c9d849eead5f1e29ad98c0f1ba109c7028d48d9
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eck-operator@sha256:65b9f04a622498dfb95c9e3920eed941b566040d7a98ee0d096705ba0e6ba191
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eck-operator@sha256:43a87225eafe05ceced56ab4aad1b5c0e7a64575036265ce9a8ca33ccbb00fa8
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eck-operator@sha256:ac88dd0fecc464642bcc297a0f46f393f950c1538e3ad98f3523d621961c590a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eck-operator@sha256:7d8dbaa72665b93336b75bde3fffeb364747e4b3ef637e06934b949ddab8da39
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eck-operator@sha256:0290796b6d03e235301fc0a50cbd6c68507d5080605ae9ad36b02c364ffbde2c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eck-operator@sha256:de541d15f8a32d0940f530d2295122aec161bd70fb9f98785e289fadb511cb2a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eck-operator@sha256:03d850032df47d29f5032bbba0cd40a73958204ab324abd2d5cccc3fc74e3544