Sign inSign up
HAProxy

dhi.io/haproxy

HAProxy 3.4.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips-dev, 3-debian13-fips-dev, 3-fips-dev, 3.4-debian-fips-dev, 3.4-debian13-fips-dev, 3.4-fips-dev, 3.4.6-debian-fips-dev, 3.4.6-debian13-fips-dev, 3.4.6-fips-dev

Index digest:

sha256:db71bb16bb33b7b053384e401cdf3b8e6507f263494f75378d20c908a92cf4da

Manifest digest:

sha256:40eed4b07f3e660d0c262fbaf077af40afe38a61293f7ba3598eaab855fc4bc9

Size

34.97 MB

Last pushed

2 days ago

Vulnerabilities

0
1
2
10
1

Support

Active until Apr 2031

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/haproxy:3-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/haproxy:3-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/haproxy@sha256:9af7fd996bda42fa04060c3255ae7b3eb03d28bd82669aa138a24992cd2587e4
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/haproxy@sha256:d5f2e9f40bf65c239d0bde957f6a56b461afede3ccdb7b6ce24e3be67c55890f
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/haproxy@sha256:968da38f2c405c409842ceaadff759e294cd20ddf0fa1890385bbb477c906d36
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/haproxy@sha256:8387ad2b4412bcfca9ef01975e6e114f1668dd5c8730972539476bce0e3fdb30
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/haproxy@sha256:3ce4079d94b5561dbc597be20cc503c710543b4b478fc72d39684139865a828d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/haproxy@sha256:c05d0ecce86ac0a9aa810fdc92cf73f99501fcf69bba385aa76bbf9c730e213a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/haproxy@sha256:4e49a7a6c2932e2c7fd39d7d80fb3cd7e7fbfc8be3978f1260c00be24a8adb78
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/haproxy@sha256:cd7d7fa3f14c8b52afc30c26030d65fd3d2356a3aff5d691e3e3f81518d72603
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/haproxy@sha256:b9b8720b6a38474ba4dc5ede5607ca26c37651ed260446d22d5d494f108cdeec
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/haproxy@sha256:80c0cc9f2d8fcaff75073895c542e3d2fdc2b51d2b30b93a2fd9656dcc45aabb
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/haproxy@sha256:8214bdf95f9f7f029e028064c994a912ddf796b8eedcb9f1b16bfdf3c5d7db5a
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/haproxy@sha256:38d6e3215f5823b7fa74639fd99723539748d4697aa17eb85d6ecbb57d5032c8
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/haproxy@sha256:b8fdd81fdbd8b4102c5de15e2b8ae234f5862afdbfb022cf72c939c86bbac521
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/haproxy@sha256:830f16bf3b40930c4667f2a7c6dbea37c25947126b91ead4a915c62119a65fec
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/haproxy@sha256:da7f544ceb3fd817ba2b375be3cdae81abbaa79e34f1336397181e91fdce6a77
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/haproxy@sha256:8352fa8fcb8b60d87957cae083d895a0d8c568bca07f069901e7ced44bc3bd3f
SPDX SBOMhttps://spdx.dev/Documentdhi.io/haproxy@sha256:8eea9f7a1ec32fed6cab8b4745133e892469344e73da1e853311ac4da7f27fb2