Sign inSign up
K8ssandra Operator

dhi.io/k8ssandra-operator

k8ssandra-operator 1.x

CIS
linux/amd64
debian 13
Tags:

1, 1-debian, 1-debian13, 1.32, 1.32-debian, 1.32-debian13, 1.32.6, 1.32.6-debian, 1.32.6-debian13

Index digest:

sha256:d666388c1d54cee25e39974675ae3b3115342a4b877f1e366823e722db4c1127

Manifest digest:

sha256:c94b30910dd0150db1457a06f7ea8bde2ae70fa90b9e4dec0f6b88904fb856f9

Size

21.32 MB

Last pushed

11 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/k8ssandra-operator:1

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/k8ssandra-operator:1 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/k8ssandra-operator@sha256:9019f27b99222eb9f5510af9be7457fbab57bb379a8042652315fda8103f8f59
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/k8ssandra-operator@sha256:0f7064a9d481040e7995fafa5f23552700c65bee93f7048e0d77c26989d88564
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/k8ssandra-operator@sha256:75b0a502cae3d15449765d4a33167814bb5fab096d1b1fab25d2d9c28bef4915
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/k8ssandra-operator@sha256:938f91c751b448020cae8059db0da246dd42dfa09706f4a9d7cd836070768664
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/k8ssandra-operator@sha256:505a8ea23b5c93acb26f31cd26407bc84b3c2f7cb303cd4007dec7f3d58b63e4
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/k8ssandra-operator@sha256:b958ccee69f0aa9bed54194a0dcb9f9bc468e31997287736e312ebd47763ba60
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/k8ssandra-operator@sha256:030977fc82984dd06db340563c79da4ccdc4f47bc6efcdc7a59b5268988572c2
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/k8ssandra-operator@sha256:e2101114e325784eb0bcc78ed08237f23afde312085f612cef73e711604ec43b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/k8ssandra-operator@sha256:049020022e0a25b7a1d9b76606d403863ad2f4134df0e429f4527d7fc85e3bc0
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/k8ssandra-operator@sha256:899c29a8f45e1ff97f311bb0410cf5a031ff9f0d7a9b89017f20a9eeb5a06331
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/k8ssandra-operator@sha256:9a9097f7995cd6c06061109134863f219e92062dbd51a18ee2a79c5f4d95ea79
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/k8ssandra-operator@sha256:6b6b0036e5e3e4724f57dc9493a73258f21737b3096aaeb3bde69d6b4c5ce63b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/k8ssandra-operator@sha256:f509cc4409df50f75845ace93677a19bfc1d9b9fe02e094d3f8fea91e4925bf4
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/k8ssandra-operator@sha256:d38d970b9a2bc48a6860342457c15f00d310c1b868812c6531ed2e7a0b0245f9
SPDX SBOMhttps://spdx.dev/Documentdhi.io/k8ssandra-operator@sha256:b8e3fbaea5fd605755842f3de4a315e5af1787b18fd25851add2e93a719097be