Sign inSign up
HAProxy

dhi.io/haproxy

HAProxy 3.4.x

CIS
linux/amd64
debian 13
Tags:

3, 3-debian, 3-debian13, 3.4, 3.4-debian, 3.4-debian13, 3.4.6, 3.4.6-debian, 3.4.6-debian13

Index digest:

sha256:53e28607b62505f574d1302361726f9f25b25914fdf84ad08ab9d3aa924fd66f

Manifest digest:

sha256:bf1b4e0080a1d07050041494c5ab04c7d2b7a18ce92bd99d4187a77cfd59617e

Size

18.15 MB

Last pushed

15 hours ago

Vulnerabilities

0
1
0
0
0

Support

Active until Apr 2031

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/haproxy:3

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/haproxy:3 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/haproxy@sha256:57c2ec7fe0c236f6398a3cf08c85fcbbcff6a67efd4fc7126946bdd0608d734d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/haproxy@sha256:a1c3833bcefd8f22d647c5883fca6db0817e6c02355b6d8f18224d769bb13d9e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/haproxy@sha256:8afcf61923e483fb8dfd2ba75a90a5f098e9235f7e714e866de6b894466c834f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/haproxy@sha256:1eca6ff8b6fd5a5c3b589f5e7a513ccaec3cd6a86559ca351faec3a2ebc5b9c0
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/haproxy@sha256:2f5fa464a75a034872f42dd5c3bef3eeacc0bec8857e5c443c11fb87304cc8e9
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/haproxy@sha256:5e5ea8ada8c924aad492b0c0c20b7cb00dfeb8c5c35f1f4b3a1e1c280619a9a0
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/haproxy@sha256:3c1382657b1e9b546e8a1c7e4a130e0ad2b01a83c2058cd397009dd13d1cd615
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/haproxy@sha256:3230ded9d9620ed41f9156b1d482a1b4c4a135a97bb792c7ee754ff0ef9712da
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/haproxy@sha256:e772fb9915a10951ae6d8bd9c814cc59d71fb39fe4c7b1faf93c162751074525
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/haproxy@sha256:059434c864b6a6dd9e06e2947366955ddf3c9f842e011b9359d7795d12f1cce1
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/haproxy@sha256:640dcf70801e4c6d3a4b15c3fb618e6b85a45b33a1788341a9c789c1de20e279
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/haproxy@sha256:90f3624d94a51a615f6832f4a804f6de9d3bef30c8fa91d8cab2ef947aa1609a
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/haproxy@sha256:1b60bab9c28f00175c8dd5086211ca9624cdd32a0d1f6eb9deaecdc3621ddc00
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/haproxy@sha256:3a476bd169a5b8188b4a0816cc3d1cef9fc3eed6dd80eaa424528cf55f6b3117
SPDX SBOMhttps://spdx.dev/Documentdhi.io/haproxy@sha256:84940cc4bce0d9ba0b0a127aa96a586884cfefcd0cdfffdf71b749abe868773c