Sign inSign up
ECK Operator

dhi.io/eck-operator

ECK Operator 2.16.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

2-debian-fips, 2-debian13-fips, 2-fips, 2.16-debian-fips, 2.16-debian13-fips, 2.16-fips, 2.16.1-debian-fips, 2.16.1-debian13-fips, 2.16.1-fips

Index digest:

sha256:a9c6e0ec5927df886099e53241cf0411648782a3d5ffe3fbc3bf8c968bd68382

Manifest digest:

sha256:298c75e44bd355df847c81ae1565b17059f8f8af6c3478ddc5122057463bc7ad

Size

26.40 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
0
0

Support

Active until Jan 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eck-operator:2-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eck-operator:2-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eck-operator@sha256:b3976ee53ad0b580323327a9ac6f0c0814bf6f921bf2fd76f630dee6b0351e4c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eck-operator@sha256:a876b4e83a18d0df9daf0ae3c8bc187154fe64ceb418fef2246700faf4e6b41b
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/eck-operator@sha256:8742f5623900a2ac951446fcef8c803c20d475e54bb70ffb0b93be294cc1a248
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eck-operator@sha256:5e3fa900b9783d6f9249f1189751c7434e6d9e4fc4cb8ec435aa27e02cefa4c4
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/eck-operator@sha256:93e710fe07e0d7e9ec56cb5dcdd49b472e5a0ca0100af7d00eed41e5d55930b3
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eck-operator@sha256:b928a0fd735ff268ac8725d38d359184faa70bee47807126fc643570644645bf
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/eck-operator@sha256:b9427f4bd6d5340398313818eceab914734777216264465737107e434eeaa0a8
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eck-operator@sha256:e810b75b3b6d6740e592ef300ea475c3a83927fac93d87da7acf875bc20b9e0c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eck-operator@sha256:9448116aa158181c11bafe83c072b3b9329b3b46ffd408f397619b97ba4db6c5
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eck-operator@sha256:18cd4a210b4c7b0c104060d53ec77078ee2fdc41de7d13b2d6f90a39868640ab
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eck-operator@sha256:891f7a95e3dd2eb385a4d199815a43b01ec9a2ce2dc02255b51b1e64600f17c5
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eck-operator@sha256:e62c34606b9b0e7b85c298fa777c4ab39ad017c634607dd9a488d555c2915806
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eck-operator@sha256:67e38938c1f60c167a65d81a1e42d81cd79b6e409b6beb01678e164814f1bd4d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eck-operator@sha256:ff05709fe09ebfbc16cc4dcb5a9bdfb2a06902d13e7a8f77ddc8391526595b30
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eck-operator@sha256:2e91e35bc33a19311cf148b91df60abfb0346503eaa1bef4285286c516c8fcd7
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eck-operator@sha256:e2b81f1de58bc54240ba9644d1d1f6d82aa62f049c1a62c3e44dfdd318a1500b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eck-operator@sha256:2027b3b4619b75af045adfc2fe5ee3683d34a594033b90bb280edc1d07232662