Sign inSign up
HAProxy

dhi.io/haproxy

HAProxy 2.8.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

2.8-debian-fips-dev, 2.8-debian13-fips-dev, 2.8-fips-dev, 2.8.30-debian-fips-dev, 2.8.30-debian13-fips-dev, 2.8.30-fips-dev

Index digest:

sha256:2f329c81f6d5a08ba572e8ac145cdc1afa59c58c8bbb328ae6ea45ffc242b1e2

Manifest digest:

sha256:e0e617bb1e21ec2986f64dfa0bb1659e7ce560c78abe1883ad60fc9e1fbf53f1

Size

31.45 MB

Last pushed

14 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active until Apr 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/haproxy:2.8-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/haproxy:2.8-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/haproxy@sha256:a7d5f6177dc655529968a2396cee06dd1edfa5873f31885e9f4a95a0c0ebb3f1
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/haproxy@sha256:fee69b07c19f621a7f8cc25280e108454732c7ba9c3bbedbde998f2ef7ab18d3
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/haproxy@sha256:45a0b04f70e131a93bc40384f17e4c3fca3f14db09b76e03bbfc57bcc5e0d828
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/haproxy@sha256:eee1f3880c23e512b2dbdf5ffa708e224b5337d98d9e64e993febed7adc1de44
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/haproxy@sha256:6184cbd80589ae24f2fa77ee42eec6514e05fcf96346762a3a3d8a34629a561b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/haproxy@sha256:1cf0625aa83b482d3ceb805a407d51b0d1544ddb45e2ccab8b7e53158a36e87c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/haproxy@sha256:e8cea37eba506cb003879bfaa301427dfca6d52b4086889147ee4c449bd68dd1
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/haproxy@sha256:c5fe41b7f68012b498281520966251d835e64707216304b1b473995d19a884f1
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/haproxy@sha256:56d7c817d7c354d885a6bbf223706c058d7766dccfd37a6fbf9d1628325bf4ae
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/haproxy@sha256:386d2f6344724944c24083c60129ae205f046f65f2d776bb85e0aade07e2627d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/haproxy@sha256:6cd30809be573f4be418fa94acc8735c8258ab6f5285902433dbd3bae71efa47
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/haproxy@sha256:2cafb8ec4ddab93ac7550c4ced538d81e0da52851ff32248ef90c7b54f66dac2
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/haproxy@sha256:e6d9ea6c417e97828f2b42d6e47a87bb765e466a243885ab2030c3bdafa9cbce
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/haproxy@sha256:d052ce96b56f96971e855b5dda5793219a5ac37b4afd768769d0ec373acc6a37
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/haproxy@sha256:0a2713aca2e37cd0786654c46c7829412380efe3be73e828bb019b23aaad49d4
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/haproxy@sha256:d043bf5ed2dc9f45f1b778a673e58a40ea1bcacd7b3b88e55a5aaa0f11ee3912
SPDX SBOMhttps://spdx.dev/Documentdhi.io/haproxy@sha256:725a4a494a9a2c07be63f1a8342ac85d32f732984a0890468518915c1c1e13d3