Sign inSign up
HAProxy

dhi.io/haproxy

HAProxy 3.0.x (dev)

CIS
linux/amd64
debian 13
Tags:

3.0-debian-dev, 3.0-debian13-dev, 3.0-dev, 3.0.29-debian-dev, 3.0.29-debian13-dev, 3.0.29-dev

Index digest:

sha256:8f40e6832d4e90445a0c2faf3b7f70b76100d13638d24a7a04fa224f322957af

Manifest digest:

sha256:25d9f392ee4ab9599c233896ec8b1bba6d2811e40a10f22ca91c8b916c6349ce

Size

31.58 MB

Last pushed

4 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active until Apr 2029

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/haproxy:3.0-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/haproxy:3.0-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/haproxy@sha256:ae68814a030e8b766a3ada90314de7d26f3851cf78dc7b7de2051750d0feecb2
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/haproxy@sha256:69b27822bd3acdcac5513f873c3cc618e5baf957ac9d096cda022d2eeb772ae9
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/haproxy@sha256:1e4d31ad39dde20df6144e74bd0e099e96e8bb2251c0865eed2c16da84574cb4
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/haproxy@sha256:b6acf1e0c208fccc9489f3fa27a930a7295fca3b1b2dbdcf6a48067d7a8a8a1c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/haproxy@sha256:e8b3cc7665b0de0daf1dbc82cdfa491a8720c426e6ec2aa734b9eb74edd87948
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/haproxy@sha256:6e93fe47000955e3d70caf3783c1f3371e7604edd01c69e873d44782f6ab638c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/haproxy@sha256:9a222d66ceb7d4bf5a596a59df1ce8f9f0053d6fc5cb8bf2964c054f33e86f50
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/haproxy@sha256:89a14ca73dcab87c24139d9e22f7b0bf12191a9c5b055b3f304b9b464b0cd738
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/haproxy@sha256:8a8bd97deb40f1f3da8f15f6fba7f09b993ea1bed1d98793d00313d855fc13be
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/haproxy@sha256:b9bae38f5377ff58bb138b79b67138d4ca2a7069f1036b816cc60f75c0858ec1
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/haproxy@sha256:919612cb54d0d781747c48f2aa558d3d0ea29dc48e7e4c7ffb4581f08d2e43a1
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/haproxy@sha256:5558c6032d41b1f5ce2a137114c5d32e2b1c6778e09e1c7c27f65812fe475e40
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/haproxy@sha256:984552cb15e60e4f5233c45fdb80bceec17f8deeee4e2069acc802d606328678
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/haproxy@sha256:0dee28abb000c693e11ed1bafaeea6c09babbcdd9881780e2af7be997a63b727
SPDX SBOMhttps://spdx.dev/Documentdhi.io/haproxy@sha256:4f264468e0f794b44438eb6b800691f0b84ab3775d9a61a8f9ff18de4fc85242