Sign inSign up
Azure Service Operator

dhi.io/azure-service-operator

Azure Service Operator 2.x

CIS
linux/amd64
debian 13
Tags:

2, 2-debian, 2-debian13, 2.21, 2.21-debian, 2.21-debian13, 2.21.1, 2.21.1-debian, 2.21.1-debian13

Index digest:

sha256:c961e9161cc7d401c2a04e8357b5043a1939bc0cae72c157d8473139c987ae1d

Manifest digest:

sha256:55142f213b1efc4fd89c97f27f99f6cc5d80449d048ce1d5bb06b7e2da06d313

Size

75.87 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/azure-service-operator:2

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/azure-service-operator:2 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/azure-service-operator@sha256:1023d9a69ac9673e93b7dba6e84bf4cbab60d6e1995faf3f1e2b002d586ba93b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/azure-service-operator@sha256:155f0dde86512e6c24aa84d5e072987260bb01d1bec5b362991dc88a75bc2c40
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/azure-service-operator@sha256:93604ce76df1cdc2b3b9c3134d0e9552738c0f8df5fac9b6caa9467cb00b9f6f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/azure-service-operator@sha256:a30540d1ae4b2b27d0c49c03ee65b136d1eef742e1a2623bbe48dcccc10af1cb
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/azure-service-operator@sha256:891498948de6ab13970520969a6cd974bb8126c16ab872f3166817d2df18f96d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/azure-service-operator@sha256:eb69fd8d898d0011321f90d0699a5d2aa34e6991369d0d8b759a606040550c91
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/azure-service-operator@sha256:4c85f4c6a27a73ff5a4da0b7ea560b016a8b0dc74d3a0112941bb53d38c49af4
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/azure-service-operator@sha256:c51e645b53c67154097c5c7d8ea8012b772fd0fa90f737f465b07cfe7248b540
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/azure-service-operator@sha256:28ace4c7825806d2836b2bf9696f9099e595bf07c504c4a28838b90b4c13acdf
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/azure-service-operator@sha256:fbe83114f3030ead71560731eead7166d298f7fe1f2e789d9b568e39ce82d0de
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/azure-service-operator@sha256:c9e6dc5aac8a7da5020ef241c38f62e41989490b69a66bd2ffaa12ff741b347f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/azure-service-operator@sha256:77f7d2cb95eda9757f89526135d197babbc91eb14b7950723d3ee3ef41b36e0f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/azure-service-operator@sha256:5ee2876f2fb703caa72f52a7ca625770132e25bf19a507a515dd1e4f421dafbf
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/azure-service-operator@sha256:211985b29cfe94a78ca7db03d91490b7d2f4f4b46784a234e3343fad2fee2aaf
SPDX SBOMhttps://spdx.dev/Documentdhi.io/azure-service-operator@sha256:70dfa3e817c3f1fa4edb65f0976923bed2e8816eef7789d5bc6ddf3378a705a5