Sign inSign up
Tigera Operator

dhi.io/tigera-operator

Tigera Operator 1.43.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips-dev, 1-debian13-fips-dev, 1-fips-dev, 1.43-debian-fips-dev, 1.43-debian13-fips-dev, 1.43-fips-dev, 1.43.1-debian-fips-dev, 1.43.1-debian13-fips-dev, 1.43.1-fips-dev

Index digest:

sha256:92641dbcf5efd2d6dfa248b72b8481142269061261353fc57893b61fcb30ac55

Manifest digest:

sha256:20e6ba4f10f3015f54670b8327fba56bf03940d285c29ec3ff65e98f4b91faf4

Size

63.40 MB

Last pushed

17 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/tigera-operator:1-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/tigera-operator:1-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/tigera-operator@sha256:f2cce6f0a95f6d5d45c94ddc9bcbe290122bdd32f54a1f714c6fdd3cdc9f5e19
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/tigera-operator@sha256:d105341cf73d65a7a6461764dccd959bb4ed23519e453afc4e3a76c5a2d50396
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/tigera-operator@sha256:210b40da19fdff4851770fad1522c2804b4b6d43d127cacf9e223a0308364e6d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/tigera-operator@sha256:c5544bae829f23d02259d54978f3c6e974a7fdc2ad482f5248fa0ec768ac95c0
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/tigera-operator@sha256:208380408d7101ce1be4ad992f33e2cc9dfc763806a98c275d717dafe10f255b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/tigera-operator@sha256:f854a9dddea7a7d5de299620222f0272d6dc1644f56bf48116bc4dde7829166d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/tigera-operator@sha256:2b73bcfda1d2d4243ad85e670359c4389b260b57dcbcbb01dec647a3c415aa16
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/tigera-operator@sha256:55b3bf262965d3c711576d0c8fec454bd4895fb522c51e5acbee9fbdfc1c2360
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/tigera-operator@sha256:509f4b6a6a630923a32dddefc9a155b5328fbecc5450812b0055a48a4654c46a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/tigera-operator@sha256:a0392e7e5fc73be3702e45cc38959c19ed78328283eaa132f120d377648c6e03
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/tigera-operator@sha256:14a7da1c39c98e46c6c210fdd51e94360c40e23e94077cf18a9e751e8f51a27c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/tigera-operator@sha256:c1fa84f802b4ee5745a481752e3bd103096ce2aad652af5c4d83e861f8505435
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/tigera-operator@sha256:0b853b5cbab52dddab9fda3058bba23eb35889f3e1893ee8e335666c6011aee3
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/tigera-operator@sha256:6e4b2e19a9c4d6b3ac859766f416353088efb40686be879e0a8d3989a95d431d
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/tigera-operator@sha256:f5059759587968863f4bea0ddbebe0b370d5520383e3f3b7b1f69e52682ceade
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/tigera-operator@sha256:a52f25a7caa8e96574ad91d61a0d3e8c56a3280ce5d4f451df608746435ebec2
SPDX SBOMhttps://spdx.dev/Documentdhi.io/tigera-operator@sha256:5b6d9094e09d566810fa81920ddd4152affde55886648bfe727f92c2cfb3c3e4