Sign inSign up
Virt Operator

dhi.io/virt-operator

Virt Operator 1.9.x

CIS
linux/amd64
debian 13
Tags:

1, 1-debian, 1-debian13, 1.9, 1.9-debian, 1.9-debian13, 1.9.0, 1.9.0-debian, 1.9.0-debian13

Index digest:

sha256:f1c004f3f3d1637cc21682d672e46f3fbf9862438273fcfd78a176875c3b75bb

Manifest digest:

sha256:863ea26d9defc1ff5bd97164a0c0ca9a23653ec0a01b0d7bcd700dff3ce07377

Size

17.44 MB

Last pushed

4 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/virt-operator:1

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/virt-operator:1 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/virt-operator@sha256:c3208bee0ba3eb15d968616e148dd4f6c15b1075e5a2a12e637d038fad2d4a75
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/virt-operator@sha256:62c592bbb794d4d4fb2c6a674ec76ab26eda63629fa1c6354e67ed5b7a7c8c15
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/virt-operator@sha256:d3ba4af419b887afb3a031fe3671e4589f8d1a3b0dccfc2e47f57530b870b519
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/virt-operator@sha256:00b9a2c7d99a48ead019facf303271991c01dffc7c7f26f010fb1fdad5a34cb8
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/virt-operator@sha256:0665ca27c68524b3a3402a6ff9c7ad0f746ede72d681a6a6a589cd19f86e529c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/virt-operator@sha256:e7bedeec6b75938a0236bfa313c94138c0bfb8a65242256826bdcf0c40c7f007
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/virt-operator@sha256:98064e5dd332687461bc8ff7734890281a5b39ad98f88bbf393f60372e69033d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/virt-operator@sha256:df76b23223251107ec29d3e51b7491dea4a89f35185c4e8123413e8662403929
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/virt-operator@sha256:7acff830234b2a5148d2c70bdcde1b3ae5bd507869d4fafceaaafdbac61e1c4c
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/virt-operator@sha256:e99b3ea1eb38dc83a0d786150b0fb8af0443fe040a5b2d566f9788530f4fc664
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/virt-operator@sha256:9613a21d54107c1863edd89a4e749af08ce4180336000c9e8076ca35dd348e66
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/virt-operator@sha256:76317c78ec39bfe846a50a9be03a120ee1df53c51d7841169efcddff0961fb32
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/virt-operator@sha256:ed5ec40112d6b751daac6c9c7abdbae6ed2e81f6381b9672505d70b0dbab5700
SPDX SBOMhttps://spdx.dev/Documentdhi.io/virt-operator@sha256:c0b157abc1566f652d13763a3f81968b39d6854b0a5b932a8b48a2bb834b31f9