Sign inSign up
ECK Operator

dhi.io/eck-operator

ECK Operator 3.5.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips, 3-debian13-fips, 3-fips, 3.5-debian-fips, 3.5-debian13-fips, 3.5-fips, 3.5.0-debian-fips, 3.5.0-debian13-fips, 3.5.0-fips

Index digest:

sha256:bdc150ff4e5750483ccbc3d8a2dd1450989730c65a5030ca4d13db0330e37472

Manifest digest:

sha256:24bfcd0d308d38074c3d6eea2e5d719fd62a33c823d925576434851ec2e7e9ec

Size

27.30 MB

Last pushed

2 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active until Oct 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eck-operator:3-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eck-operator:3-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eck-operator@sha256:0a1282fd397c6c74032b7f8fb2b5de4cbde3284541bee8db7897e58824284635
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eck-operator@sha256:3b1a0e2d2dca88bc7fd74043668ebada5a1ee055c6fd643385c4444903fe83da
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/eck-operator@sha256:180ee740e6f4f62e42baed81aef42ddca7a0820da90b003d73b25dbf346f4072
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eck-operator@sha256:55d10fcd7a11e06865758ca322e46bac48b91ddf5a82ce571319f26f400b9a05
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/eck-operator@sha256:59092933a165cc279db115dc9a7cd102604089c21a3e0361c9ff1d0db6a15418
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eck-operator@sha256:ccae0dab07b3045716a20597eef866e759bd7495df3f335d130e32072e1ce578
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/eck-operator@sha256:bf272a3111be9c2e30771833d03b5b9e8ba780f6923f748e4763edecf2ea6893
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eck-operator@sha256:168ed9da900e1c049366ab9b9e0700929d3412fa5999c251a3ec8aecb6a738d5
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eck-operator@sha256:9aebde65a37b13ada9b08893824fd467ba45f83e9b88a6f0a7e89c1de92d77f2
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eck-operator@sha256:124b1aed580d061bf3bb446f155bc799ca98486c2f4b170a483c1cb5f888ba68
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eck-operator@sha256:87528aa3a5efcf690039fca7eed9937b69d69fb4336c64f04598d828162f2fef
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eck-operator@sha256:70d13a1388fd9f8150dec1911e8116a302c0f087553121126299e57828091294
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eck-operator@sha256:a23ac9c564a855715c8bc782c3794df38b2130076c35603a98892aeaace5b3bf
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eck-operator@sha256:9b137b0bc74313a41572b7abe9399343179e9f9eacf646c9a2cc7d4e3306ffc3
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eck-operator@sha256:347c1f9b83472bef7b599ef9e1475511a563ec408916fe590c99b64547351d8c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eck-operator@sha256:3921a0303cdfc2469c0cb2e15954fea12cb4f4224655be83cd83d41447afe868
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eck-operator@sha256:d96baaa2c8c86573de93b958b8d2ba24326aac7dafa380027384048421a40f97