Sign inSign up
HAProxy

dhi.io/haproxy

HAProxy 3.3.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3.3-debian-fips, 3.3-debian13-fips, 3.3-fips, 3.3.16-debian-fips, 3.3.16-debian13-fips, 3.3.16-fips

Index digest:

sha256:a20485e70e105ff7ced337827133ae4f8a4b4009ce0e09f5b65889af5155c116

Manifest digest:

sha256:20069ebc6e8a689a3ff2bb614f02e7fef079fa3b7d7a4b260aea80edf7820980

Size

19.70 MB

Last pushed

18 hours ago

Vulnerabilities

0
1
0
0
0

Support

Active until Jan 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/haproxy:3.3-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/haproxy:3.3-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/haproxy@sha256:0b5a5c5d1812e742edd0b9576b507d899919c33ba18729280c21d8da744c004d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/haproxy@sha256:083329d66346d2d7ec8cfba2255c7bcb40f4608b68b475215c847ef9bc5592e7
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/haproxy@sha256:025a200abc6ef470a90ab4863d9e8e43e9eaa312c5da52fcb66a1468f87ab1ef
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/haproxy@sha256:c3e12e1b5aa09fd799407e02b9458bd023a023edd87540e18c88ee34f27a1be0
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/haproxy@sha256:c9c2bd9067e044b13f7c708d1b982a7fe51c6ff2a845095bc937e69bb2c8b388
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/haproxy@sha256:722a5ee53b1cf548640fbd70fe222d5af4bf282e2f0348e46d5547275d991ba4
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/haproxy@sha256:39de1b50fece85d26910e01814d6213fefc44b324f81f7af01dea9da689d0725
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/haproxy@sha256:676fa40d72be1fdbed1a998517a3b370b258fda8de0d5b9bd789d07bd5cce197
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/haproxy@sha256:9d732b4d3a8c8bc5ecd8713a52ef43426abcc610579d2d4c08caff5c1e81b9a3
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/haproxy@sha256:b7d14f694762cf0d925749fc347a84157980914f5408b18c1d630590dcdede12
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/haproxy@sha256:b111a15717d473b1ff927ce16438e73f746d5d521f3b6619985fb4df7b0446eb
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/haproxy@sha256:a86b4a4b62c930bc18ae5d599b7a2fc7c470cd6bd5f8b2aedf779baec8da4a2e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/haproxy@sha256:058216ad6e94d6455783f296e807c969683170cb77021f4dfe4805d207e309da
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/haproxy@sha256:2934e98e04aa5038b8d8f6d397808e785f6b6287c6d8016392151a7396b9c79d
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/haproxy@sha256:2c4871ab698460a2586e40ba04d2c4a00a2c378da0b1df19975d33078553d1c8
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/haproxy@sha256:d6db9549b8f8054eb9bad88d909f79276ad2ba4c70ac1ab45d6ce1ad94b698a6
SPDX SBOMhttps://spdx.dev/Documentdhi.io/haproxy@sha256:7a4b9a64a53781faf63856077028fa0c8fc0ae6abf99d0033405d11f721ddd22