Sign inSign up
HAProxy

dhi.io/haproxy

HAProxy 2.8.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

2.8-debian-fips, 2.8-debian13-fips, 2.8-fips, 2.8.30-debian-fips, 2.8.30-debian13-fips, 2.8.30-fips

Index digest:

sha256:b9076d49bbf412733c6061629e22cac3a1edce55f8bf1d3957f6311ccd728056

Manifest digest:

sha256:b4f5387c131ffdeb8e9c6937c686b0ae02513e173a2642a28ddd3e11a5374943

Size

16.78 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
0
0

Support

Active until Apr 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/haproxy:2.8-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/haproxy:2.8-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/haproxy@sha256:1f32f8801d53309b9f07c0e238317923864cae71f774eeaf5f583cf3095661f2
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/haproxy@sha256:55743a3647adad80ea9c247fc815390f56bfffd8644070838be62c1761b537c1
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/haproxy@sha256:2780de6225d659210c6292e6f915bf6ccb87ca902aa690aad6d5f27b1492153a
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/haproxy@sha256:c688d88d8fe6abf1b94bfd9153aa5fa1a8cf7b0306195d6a15bb76917fa7fbd8
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/haproxy@sha256:4b15118b5e2e46d9caf5b9c9c4fa5c3efaeee39653c8d69e0b173a155ab557d1
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/haproxy@sha256:58df27470e53f62c4be00b77d24d8a4e07ccc06135d97d05549282fa21356a14
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/haproxy@sha256:b77d11d481c4e65540f81d255e047566af6f3c192d0c31e3f8bb3809320c4550
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/haproxy@sha256:43e6c071e399aaf2a6f054790e4879bce8c5b572dc607a15446fd59bc0d0fb3d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/haproxy@sha256:c1aa82defa0d51856909549adf7a7bd76fc55823200ad57a262c93b2bc1a1398
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/haproxy@sha256:e4711c71c04d0ee89a41232f8249016008f2e4f16fb26a7f097fffda13fa5428
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/haproxy@sha256:ef2625b758183b71e4de3c444b88cb4dc7e777f48f2200e5e57b3802a08c8b31
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/haproxy@sha256:5ee63af6f2056fcabcae9a33c285641332a300d2b08cda70baf723bda3c00f66
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/haproxy@sha256:9390cd744ae7adf14851fbbb98c4d5c1afc6e2055041c193e0f5180c6e3604c7
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/haproxy@sha256:6b7d561871f1d661b716517c1846b77f15f4f1eedd59d6a3c691abdf85ab07b1
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/haproxy@sha256:89f1743b52c191d3dffc8e69f7e9b337000284e240e0cd2631e308b81d053fc2
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/haproxy@sha256:23c5641597500e574b87dbcb559577e4a6b6fe8903d2a8f9d409e86b6d3dd81b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/haproxy@sha256:8e19821a6bff5ae5c206305153756d3984c99ff61335cfc6244d200fdfa590c7