Sign inSign up
HAProxy

dhi.io/haproxy

HAProxy 2.8.x (dev)

CIS
linux/amd64
debian 13
Tags:

2.8-debian-dev, 2.8-debian13-dev, 2.8-dev, 2.8.30-debian-dev, 2.8.30-debian13-dev, 2.8.30-dev

Index digest:

sha256:fb9386fef009a1ff27aa4af023fdf4406f7b984e63ac9397421e9b94fb1b34dd

Manifest digest:

sha256:65f5726bfcb1bdde545b704d6528a7aa1c475669c0911da7e9118eae051b78a5

Size

30.69 MB

Last pushed

24 hours ago

Vulnerabilities

0
1
0
1
0

Support

Active until Apr 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/haproxy:2.8-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/haproxy:2.8-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/haproxy@sha256:1c775ea2a51bea014f35efa2c11962379de2d39d50043dd6844c0e6c4b7d6f03
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/haproxy@sha256:117fab7965e87fc0320839edd0ad7841c5e5ebe563c2171ef6fea4638304c8c7
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/haproxy@sha256:9dea6615f6b494f2450853dec36692766e4e57c8d2e69a4b160715d26df8498a
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/haproxy@sha256:a4354735e584c3277a4f632aebb7b1d530be1156e32122bb6c2784f1d69176f0
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/haproxy@sha256:bf8cfbb133677c971069dbc400920e3202600037192a563da4f3e1abf40a7d45
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/haproxy@sha256:bfa1234501f20d4e2ce7185cc9859a1debf07558b1560038e27072fbe15163a3
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/haproxy@sha256:419618cc8c4dd397c431f7794adeab3005bffe9f06f00224aa8c2bf57570bce1
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/haproxy@sha256:f5bd17e518d4d139f2c8761349d59df00631f5c904ffbaf39aed42cf3b03d9f5
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/haproxy@sha256:5a89ca4fb7ba5f62a270a7717f3fc7a53a7510d8894e8b1083933d0b71fbcaf4
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/haproxy@sha256:265bc048433840ddaf8561658096d9d7bd3b78269e8767ecdeaaea3544e40a88
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/haproxy@sha256:dfc2f7e3adbc9ba613901a419b883ae8143095cdf96889a172f93b7474db98bf
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/haproxy@sha256:5b1677d418035a9d12d55db34a736b6809511f189f22194b85c4bebc1a9fee81
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/haproxy@sha256:aca31973763252e102b3e35829c2dbfcc723141265c2040977a1bcc4845e6456
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/haproxy@sha256:362ab84e58501b02d81408e1488dacda92ac4a76b1f3bfbeb3142b4b2b3e3c20
SPDX SBOMhttps://spdx.dev/Documentdhi.io/haproxy@sha256:6ab8530bf1308288389671eda1ae3e6963f73cc134c8f535cf4ae8f93079409f