Sign inSign up
Virt Operator

dhi.io/virt-operator

Virt Operator 1.9.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips-dev, 1-debian13-fips-dev, 1-fips-dev, 1.9-debian-fips-dev, 1.9-debian13-fips-dev, 1.9-fips-dev, 1.9.0-debian-fips-dev, 1.9.0-debian13-fips-dev, 1.9.0-fips-dev

Index digest:

sha256:c413889def863f5b12be04c9f268edb84b6906a106620df98a3033a714da7e37

Manifest digest:

sha256:c69699a15b15121589bcb520ed108d17ab445863afedc83eb63cca3461ef2ebd

Size

57.70 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/virt-operator:1-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/virt-operator:1-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/virt-operator@sha256:137804f4e1744c5be8c4d9c896b63d271a729880ea8f05321561dac495a8f1dd
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/virt-operator@sha256:25fe7d1dd423a97b3b553fe6efd1d924dcbaa4e22d5afcb40cc465f2c1a9d7f8
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/virt-operator@sha256:963ac47b8af0347d377aef14274b9ebbc833d17f9cd496f1b893f6275eeb270e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/virt-operator@sha256:e1d11dc6daee0061f7b2e1e546b7850656912d54c99d35a12e26d462db355fa4
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/virt-operator@sha256:f4b8d3dd25a29e08c8da88f808fcabbe3b11dfda5ff423cd524b4da3f6a3d95b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/virt-operator@sha256:e35cb523dabf3cb27b4cd2f33f9edb229474587ebdd249384aa870b75a5dd0da
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/virt-operator@sha256:ad40af814aa77bc1987ac5f55530422334bd05f9fdde0a3a72137e65901c44ee
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/virt-operator@sha256:7dbb98498dd1ce3ebc3c51c92790758f04d1a0b30120c448bd517bc198ce1109
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/virt-operator@sha256:d295235232bc9d3762ae6d622726447239dfa5f507e44dd2a8c1c5f8e0fb0d74
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/virt-operator@sha256:2c30a8fc55b24b3c323f5ed77edfbdcef445271b9691bd842716c97803275c07
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/virt-operator@sha256:27712fc70a2203b7cf24d5547f4777891afddd7413d2b51ff96bb1a0c93b3ed7
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/virt-operator@sha256:8d0d99c178b90dee71aac091c4b1883a27b7e36bf80771671f6e0e1e2dbb7b73
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/virt-operator@sha256:f42e8f711731bd1efe5ce299f029c7ad7fece965d7dd1fa36c5b92a7c6a72eb9
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/virt-operator@sha256:0d0183e5b1887b82c348aa946e17f2d6c6c35be37cf52e6b100f24b6062e5c35
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/virt-operator@sha256:c9e6c3bf906c5e5cdfc8e778c2d7324418c3c2981b8715d6ca0d7c41d51ef114
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/virt-operator@sha256:38cd844bb8541beaf6e877d147c6849aba845695c544a74c18c3070f17161a41
SPDX SBOMhttps://spdx.dev/Documentdhi.io/virt-operator@sha256:ad046f187627b72be298420eb81d56c9a0425be72fdfaa6607eb0f9ff3b491ba