Sign inSign up
HAProxy

dhi.io/haproxy

HAProxy 3.3.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3.3-debian-fips, 3.3-debian13-fips, 3.3-fips, 3.3.16-debian-fips, 3.3.16-debian13-fips, 3.3.16-fips

Index digest:

sha256:d9fe2d664e3115e4a0a9406161d40d76c74a32e84136bd9c61634de6097bf63f

Manifest digest:

sha256:33b7fea7b2e73dc222ad077d3771145fddb1b144d4f527f642328ee0774c0109

Size

19.70 MB

Last pushed

3 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active until Jan 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/haproxy:3.3-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/haproxy:3.3-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/haproxy@sha256:f16287c375dba31d6397ccbb4142a319c4751575140758a824999b774abac719
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/haproxy@sha256:b86a39445067739347954509c66b92ead118e340c1b7f3e1e89186fec49566de
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/haproxy@sha256:de5f14b5e43a34d32ea52626541cc91b95272da6ccd5ab71763917f51d1467aa
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/haproxy@sha256:0a92f68d253a7596db19beb9f756b90b7562e0889a692e14170dd237db305cf0
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/haproxy@sha256:29561ba5ce744e059cdacbd61c85b2540294d15b9c3bc204d0b549d5b893de59
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/haproxy@sha256:97999b4c9cda86a8fae11121c6ec48a22e5876b9be723da71daf295f9e98fbfe
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/haproxy@sha256:a0a7360dc0ee1b2d4020a214262fb1c5e8368dc805f52a5616563483e406efef
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/haproxy@sha256:2e3f706f4fc12a46ad8f3d14150b712021e84d24794533d120e403efc3634ffc
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/haproxy@sha256:65a646fe37128ee5252ebe5d2e1178d5cf51012684f9c9e46cd02df6dd4b52f6
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/haproxy@sha256:518c4d19ee134e8c75a4f10b809f3b26a4162175f610181034a2d7aa80f5d948
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/haproxy@sha256:5fe74b2dc4b6b3ae57902499e9c7e854d2e3cfcc63d1e6a8846295b8c244d01f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/haproxy@sha256:4e0e474364706e0a554519ba271522b0ce00f2a76d86deaccb77dfbe00405c30
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/haproxy@sha256:b28f5d6f40ef3751518441b9c853c2b32b0d390855feaa3db42da7ab089dd72c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/haproxy@sha256:9514a651633e5927b790f5c7c8998ece039935e73f7635f553a0927ed2ca3887
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/haproxy@sha256:9ff64843b708cb7e6b58b0748acb5750f0d94f369da06f684bc2122aede1b39b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/haproxy@sha256:7c3175191ecf7f6fc1322ce27913362c6c8029f4a2c3e53582a0f00d5d7ea6da
SPDX SBOMhttps://spdx.dev/Documentdhi.io/haproxy@sha256:b087b9b7ecbfdf04e31c8495186038cdf72577f3374000240d5a256648b03e45