Sign inSign up
HAProxy

dhi.io/haproxy

HAProxy 2.8.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

2.8-debian-fips-dev, 2.8-debian13-fips-dev, 2.8-fips-dev, 2.8.30-debian-fips-dev, 2.8.30-debian13-fips-dev, 2.8.30-fips-dev

Index digest:

sha256:38f434bfdd4fc084c3351a01113aa1e85dc90bc27e64f722e0035eed4f00b813

Manifest digest:

sha256:a67aed4707e2f57d14df15ba500b8d5ff30b437912090ca434c441c57c122711

Size

31.45 MB

Last pushed

4 hours ago

Vulnerabilities

0
1
0
2
0

Support

Active until Apr 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/haproxy:2.8-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/haproxy:2.8-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/haproxy@sha256:7ad42c264e0438e77ef8398a0c1bae7a0f73ead63a580d11779212c5b4fe3eff
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/haproxy@sha256:266a3ec63f31e71f72e7d2d196d3079c47ca4162b10ec40479c22c19f6b1e32c
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/haproxy@sha256:e7d21f2d9a633163b13b46a9a9bda4278b16ce6de9f1fb03956bd20f2f67f303
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/haproxy@sha256:d2d5127e1cbf867816c78d79ac65578f08f9510cb4c600f5cb681e4fd754daad
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/haproxy@sha256:21e8cdd0f648061b91a089261039ee73ed7d844e09829ce60cbbd006a9b15b4f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/haproxy@sha256:ef5abade2ca11e40598775cd78cd37c34018a805f581d7cdc6e14648bf306091
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/haproxy@sha256:0236e2742c35a308d46e35763657ee8157c538835535808cfa42204975115ef9
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/haproxy@sha256:f8aedfe49e6e94f0be082096297486798376b8c99f347d1205b898a70984ad5d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/haproxy@sha256:ba0e882dc94c62de796f1fead0bf99bac0ff8fc372f117bc5cd26e5ad74ee47b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/haproxy@sha256:91e9243f44b75cc1c0350311b083d28e4ccad36354accc9d88cb1d6d3521e77c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/haproxy@sha256:096d8a52424e0f7b2104216d6a2363bd79e6d8bff253e3f258150fcafaa610d8
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/haproxy@sha256:ccb0184b8d9e77e5f0546027c1ce4ea23af2c0bdf148210e4b978770ed6810ec
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/haproxy@sha256:fc86af6afc3240e1c48be5e94417238829905b76931d689f01190113d499368a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/haproxy@sha256:6c9e3cf793b2730dd28d1b815fa70aa0b4a8f46e9a481f4ef3acd80ef714fba9
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/haproxy@sha256:8f8694073270df083ae9ac29d8ebd22a77c2a7e0d4cbc70e03c8a6bee13efd5c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/haproxy@sha256:34f60cfb390616c3959362e0319e11d608969f58855421abffcc0944e30460b3
SPDX SBOMhttps://spdx.dev/Documentdhi.io/haproxy@sha256:496ec569f9101889042d1f6d2b2caf5a38b351f35300fa89b722554f4b5f045a