Sign inSign up
Virt Operator

dhi.io/virt-operator

Virt Operator 1.8.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.8-debian-fips-dev, 1.8-debian13-fips-dev, 1.8-fips-dev, 1.8.4-debian-fips-dev, 1.8.4-debian13-fips-dev, 1.8.4-fips-dev

Index digest:

sha256:a083d0ca69a5d9ac147c9aef3d4cbe92f03edc481fa3d635628afd4b0987cb87

Manifest digest:

sha256:95c706b87ebd2652b9038284782ce7244558d3cf186c90d6b0b211f526689bab

Size

57.58 MB

Last pushed

3 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/virt-operator:1.8-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/virt-operator:1.8-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/virt-operator@sha256:0b2bdd5a0ccbcd5f7b98a7d3ef919dab7e3e131a238f3d937a82bf7709c980b3
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/virt-operator@sha256:69d720a2a857347b7cf0843f612f56fc4f7e73d7f060bce072605e1fef8243af
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/virt-operator@sha256:e01a545bb7e6f8a0991e16a9608ee676114914d7daf5614014053cad12bb1852
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/virt-operator@sha256:ad52e1c31cbe57fa955a8916f1a1eec3e0f4913d32ce68eba2c1d81ac6436f37
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/virt-operator@sha256:7f7279d4a8c7d63ecac6340aff519e46803e40989e4adabfa3d12b5a75ec8f1a
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/virt-operator@sha256:387020452cee5ca9b58dc12e569e3d80af86f8a42b4cbd50054d0bee1e8593bd
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/virt-operator@sha256:51e5e48786c7431baaaee9678178601631095cfbefc3111c8e9bc07eef5fe08e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/virt-operator@sha256:6e78c409c40cb61738cc43434dbe67e9f6eca4f28bc273b27a6c83fc9e196c38
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/virt-operator@sha256:ec3b0e611d7c919a26a9f3d20eb752c9bede603698a665df0260a535f794ccf5
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/virt-operator@sha256:b327cc399d283f7b44f2faebb1bf3d7fa18758cfea518d296a7608ea0a673311
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/virt-operator@sha256:824d7209e7faada7ccfc44f4a8136ab43546cfae3e0836dbb7a4d9d177d6f1dc
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/virt-operator@sha256:a6461c9eb266ec29dfb4b8c1ad750be96344eab50844e294e8a925211c37bfd4
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/virt-operator@sha256:3023af25203cd43a41d519ee06538244ec85f961316c2c77ea982e02171dff37
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/virt-operator@sha256:b56504a6ad69b5572c6535820d9467c7ce0198478408228b07ce0c09fc213e85
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/virt-operator@sha256:e76a642c0d81e0959229458e3186d93458519a28126cf3eee5ab4a16f148e574
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/virt-operator@sha256:5eee4bf3d73b6494b0c64eb2f6f109a9400abd54f0aa9cc022e8cf31b70d5fd5
SPDX SBOMhttps://spdx.dev/Documentdhi.io/virt-operator@sha256:1cfdcc94f82522f932ffe31d0c5f035b7dad154e709329923e6e905b1e617b2b