Sign inSign up
K8ssandra Operator

dhi.io/k8ssandra-operator

k8ssandra-operator 1.x

CIS
linux/amd64
debian 13
Tags:

1.30, 1.30-debian, 1.30-debian13, 1.30.2, 1.30.2-debian, 1.30.2-debian13

Index digest:

sha256:2896061bc15c69758473b58bab9bd72e3cde9d7f71fe740963a6fe53eb2f506e

Manifest digest:

sha256:872ca4f0253d614e92458ecca93e169936a6a1bfc130e91eda82577cce6e8a6a

Size

21.25 MB

Last pushed

23 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/k8ssandra-operator:1.30

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/k8ssandra-operator:1.30 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/k8ssandra-operator@sha256:9bcee68a93005e6a9cff335fc1e4f9945f71a93e8d8e5efb8d6823c673989805
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/k8ssandra-operator@sha256:c3c1902dc8be83fa3975efd5ada391a1b48d120a864bb54349a610a01970a66c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/k8ssandra-operator@sha256:db91a2fd59cbd2793ef0985c01ec11fb87c60684751295e3cf10cc8cefe715ea
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/k8ssandra-operator@sha256:46f6e7f98d32d993792bf2f4f0e07d4bc15094887d4a8eaba8d41de999f726a1
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/k8ssandra-operator@sha256:fc47d1e1b1ef24a57fa216458ed7760a0d09c53b9a50fc79f6b73bfcefc56fe8
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/k8ssandra-operator@sha256:cf6083bcf722c4aedbfbfd7b99479cfb1ccfec3bb755f09abe5f1f9498f22e35
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/k8ssandra-operator@sha256:1d4f93b642aec122673a56590db99909a89c001873907e1fde8e7593deb4eae0
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/k8ssandra-operator@sha256:4b4a817f7bc20708c0d3a53c7f5a7c23cee55deca2511d81a3ce66e46d460707
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/k8ssandra-operator@sha256:24db91f9b05b73c9281b64aa0f68ae0c4033e2515d214b51dc66c078f70b8567
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/k8ssandra-operator@sha256:b0bc5756604d2dcd0d2d868aabc977404705da66776ba4a30fb56abbea8e9c7d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/k8ssandra-operator@sha256:4844e7d2a1eda2346b6ddf88d363d475e0b1562596da640978a1a6a14124a22b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/k8ssandra-operator@sha256:c7ef4a736a34ed383cec8eae354b1a94414419cd9dee3a784fc777ec1fd7bc47
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/k8ssandra-operator@sha256:804c3351b5da58e4d1ccda9883a83a7f462b7ca77478b6a0e7efa3af17bde230
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/k8ssandra-operator@sha256:d9f4449343c46ba77de412f97c34a4f1ed102c27bdb09fc5a53fb58d08eccf6a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/k8ssandra-operator@sha256:f2c019afc21b1d427e0b9e973cce9764ebf087c57af5986eb3e13d8fe9f91b21