Sign inSign up
HAProxy

dhi.io/haproxy

HAProxy 3.0.x (dev)

CIS
linux/amd64
debian 13
Tags:

3.0-debian-dev, 3.0-debian13-dev, 3.0-dev, 3.0.29-debian-dev, 3.0.29-debian13-dev, 3.0.29-dev

Index digest:

sha256:b5dfc6a024a73042cbc057e97c79e2717529d3674a4736a613aad54d4b7d4b8f

Manifest digest:

sha256:c0c9b620c11141b082098be55dbc04dd3fddb30197a5edcfd87f5f102c5cb2af

Size

31.58 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
2
0

Support

Active until Apr 2029

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/haproxy:3.0-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/haproxy:3.0-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/haproxy@sha256:fe2af5c8bd128012784bfa9052664ad9a8ed5b307497c153515c06d69a2063d9
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/haproxy@sha256:1cba3b61651a31c8e747401d566c1e6b46d687487c97875767535cbd3f7a3b0c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/haproxy@sha256:0144bfdf40a042eafc070e8ee48d8b6e688628bb9708f34aa768ab39cb34b96c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/haproxy@sha256:068c1932ae3883a12bc187fb6453c5fdd591fb6374d6441fd36fe2dbdc1be146
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/haproxy@sha256:5c810bb03cf76df814b9304088d8ca0bf6001794aaa95abd0ee9b6ab10d95731
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/haproxy@sha256:278851deca7193c3e125e790e65d30a97fc6e59a519b1ac4ee961762e14a5795
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/haproxy@sha256:65b737c11d82d0f5ac38f53aea4d0aeb84e9b768f7d856ae5993696266cc152c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/haproxy@sha256:4df34c60e6c55bfa5dbcaae1d2d716a72648a38d4e8da5d940163ccdcd2d220e
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/haproxy@sha256:90117dacc9b3437db590a734fa9b6b9b01f8e7752c9d99efde60433c8b5312a1
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/haproxy@sha256:fc51b72f16e23ac8c992a24a93d0a2afe2612579d643c020ba5644daa2755c8e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/haproxy@sha256:23f39a1d68809de14bcd2ce293b4c467a507f442d6d51012b8626f2eab7ac43a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/haproxy@sha256:ced6c634a3a4d4bd6202bb59e7d3e1f57b58255040700aef7d946ab8efb43d1e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/haproxy@sha256:0e203f73ba5349bf651eac331f4dc44e358d5c5b49b4d1a5ac29da2ebaf338c3
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/haproxy@sha256:c4643a3c14bf9c52b671ca31b6e02f04db3b83e97aff88178c561fcb2c62885e
SPDX SBOMhttps://spdx.dev/Documentdhi.io/haproxy@sha256:7a333fee9c66040dfea5b020e3be6e8bc116f718f5a24e11f6242858b4b26883