Sign inSign up
HAProxy

dhi.io/haproxy

HAProxy 3.0.x (dev)

CIS
linux/amd64
debian 13
Tags:

3.0-debian-dev, 3.0-debian13-dev, 3.0-dev, 3.0.28-debian-dev, 3.0.28-debian13-dev, 3.0.28-dev

Index digest:

sha256:b63389df6ec4a797a1e4317a918a2d5901d561ad095f9d22cd41425fdbc35cb1

Manifest digest:

sha256:97941cedd0d6241c8d712573396dcb6bc3483f8e801421fb822e140d80e3de18

Size

31.57 MB

Last pushed

17 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active until Apr 2029

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/haproxy:3.0-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/haproxy:3.0-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/haproxy@sha256:533f17bbd42a0c6c17421c8dd22777a298533a7b71eca82d01575b0aaa6d613f
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/haproxy@sha256:0a45d4fd3c6a0f4b9ceab6482403d338d0cf8f95b4cb4d0a07079220c284064b
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/haproxy@sha256:e068a3597d6d0fd253f181a7874255415a233f22b127f3a9b7b750d560ab27ac
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/haproxy@sha256:cc3ed2f819ef466f2000069acd6a140c2b6b8c3f77950876979b89c9c4cb0e49
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/haproxy@sha256:9169e3bfe6bcf091d59d7e3de0fb94a0d917165150d4cf558d6cc82119747ce5
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/haproxy@sha256:be1e5d09e4b87023fd726ff1e06d66d3e3dae10ca69af5e9b8cd637bc41e36ad
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/haproxy@sha256:e92686320b9c3b427524cd10e56e7e0a6b654ef461e7199a48c5c5be2448b0af
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/haproxy@sha256:ba25e72c88b38beca767c35268876c3390ab21efe35a5cba1313c1e924c6bfac
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/haproxy@sha256:542668a17e9c8f8be797cc871eb5f3724af1f6d6b47d455b4df0be87f05de918
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/haproxy@sha256:20ba0fa6057684ae38a37bdc005f69b4ea689faccef31be1bd5b2c983bee8716
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/haproxy@sha256:9d58c5c70024fa8ab290ebc6498388768a37ad904588c1f24a4aa816dcdcd1ad
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/haproxy@sha256:471809628dfb83ceb0f25b53584df0684e0239b10b292498989cb90ce177d9d5
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/haproxy@sha256:c5132f002ff991e61b8690deb8ace01b6008abce4f1ddc5f0196a7fc344fd09a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/haproxy@sha256:a4850ffb6a904b1446521a1e45224a0cedaefb359849181f643c9490698e2dfa
SPDX SBOMhttps://spdx.dev/Documentdhi.io/haproxy@sha256:47fd90efa34b7b1dadee1949a2b10935fc22238867c4a267e7677219433688d8