Sign inSign up
HAProxy

dhi.io/haproxy

HAProxy 2.8.x (dev)

CIS
linux/amd64
debian 13
Tags:

2.8-debian-dev, 2.8-debian13-dev, 2.8-dev, 2.8.30-debian-dev, 2.8.30-debian13-dev, 2.8.30-dev

Index digest:

sha256:3db6200ec710aa81e92cf639b3fc9481e2518aa22c9d76c215bfa48161ccaace

Manifest digest:

sha256:306ff6b735726918f21c90f67c73108df242bd43579ed4bbe58cbd536c6d95e2

Size

30.69 MB

Last pushed

21 hours ago

Vulnerabilities

0
1
0
1
0

Support

Active until Apr 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/haproxy:2.8-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/haproxy:2.8-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/haproxy@sha256:f1e36887ca1e4edc0ee8fc289fdff106e4cae0dabaa5c9e522cde5c869c7e46a
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/haproxy@sha256:c3f593840d5c82add8b89a08a7c145df7b5ee5b6c39efcd44ff2fed5b1e43aef
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/haproxy@sha256:06a91238dc639c87b33d14ab25976423ac97fabfbcfcc34a824656ac349d2182
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/haproxy@sha256:e73044139d205782c776395beff07c596ed153f0890e96a7136139c0e5dbe6ce
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/haproxy@sha256:4ba18cf2f2fa9b778c99b84a1bf2e5c781dd3df612fc3186792f05c66b7ff711
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/haproxy@sha256:e53f95dda4a256389eb14cf6b40255efeb5890363c0c2a3baf64e6aeca9da350
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/haproxy@sha256:4fe0981be5e03a17ba32a0e8e5dbe8be36ee810a40778fbb4537fc1dde8c5743
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/haproxy@sha256:18eefc6bc331e7305d567694e048459626a0ba7fbd2d992525fe05cec84e8912
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/haproxy@sha256:620280fe688be35dacc922778c189b7d0bdf9596bfd00e03c3607544b943297d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/haproxy@sha256:f94588d5461197b613966fb2f2ab512b21e1d974f285bfcc956d7f22c7ee4e19
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/haproxy@sha256:8b191eeb4cba601f2f613b1b88d5b5fdb76037ac90a3bbee6d6a44a6b5aab452
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/haproxy@sha256:0dcab18930c79e7fa2a563bca863a1fee81daad5b50cd8f32d06e4df3ad4af1f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/haproxy@sha256:07925ff667f1d71fc4c6786fec2c8ee1f9a9468248dfd57aa57c592758cf9557
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/haproxy@sha256:14f8c8902ee3b408b121aaf992a61c6160ca0607a71547a37941f43a3c7e7236
SPDX SBOMhttps://spdx.dev/Documentdhi.io/haproxy@sha256:8279e1bf71423806a7232dc2a8ca19e346f2c2eda7260d48c338f0caaec8bfde