Sign inSign up
HTTP Echo

dhi.io/http-echo

HTTP Echo 1.0.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips-dev, 1-debian13-fips-dev, 1-fips-dev, 1.0-debian-fips-dev, 1.0-debian13-fips-dev, 1.0-fips-dev, 1.0.0-debian-fips-dev, 1.0.0-debian13-fips-dev, 1.0.0-fips-dev

Index digest:

sha256:e912b22c9d64bea1d599e7023999c98c82ba934c5f2700403dc06e1f3c8cbb28

Manifest digest:

sha256:7c44739d6c626f35d794d6ed99c02b95319d635b30dd293b3b0714e5007d008b

Size

28.23 MB

Last pushed

17 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/http-echo:1-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/http-echo:1-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/http-echo@sha256:1ea361fd9855ec4e95e36e51a2a9455133eb4d403cf6b1b276a0038d0df68c69
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/http-echo@sha256:476951e37991c8513b062039e9fc688fbbe32211531e50c9a1f25bc4f0d234f3
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/http-echo@sha256:387ec10bb97d441ee6f803ad749375c0aacfe3dc5d36b21195abfcb0f0d2435b
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/http-echo@sha256:23d39f44ed87fab3edd7776903439871202e7611866f96dd865832e8c7093a93
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/http-echo@sha256:b20903c2017af046d52367432f6ba93eaaef2e1d91de11fd7e627ce972c49f61
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/http-echo@sha256:7297c9e6cb7a94cec201ae228e268702d2bb007d8f8e0e5f3f5f8a495a76aef0
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/http-echo@sha256:17409a54156fc4a52a0abb2071a794518d2367ca94474034875c1206e9ed0ea4
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/http-echo@sha256:23e152fa3c123e058771ec6e3d44241e2e2d54874c5b148ecb28309143105d99
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/http-echo@sha256:95fd4a4209fca0867db5125d6e210e9a2b2d604b394014700b9413ef0d1243d2
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/http-echo@sha256:cdb8f9f8e7d9a54154d0c6c3d5eb2d87b9d008fd86c6992751959bf3f4fbe4c5
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/http-echo@sha256:2116333b65b70c9e8496df2c14cca2c29ac90436fa5b234fdd0549f4bb056413
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/http-echo@sha256:aa539768853b68b017bde134ff0f70291bb770676c4e29dcc3fe1ca5f4b8fd23
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/http-echo@sha256:2dbe2c130234b0da172a086617e08c581aa944c095659f6245df4562295489fe
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/http-echo@sha256:ceeddf8297bb0a8b891a2f18b80467aae95a6db44d01126f20b7933081c6a002
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/http-echo@sha256:a0ca8ee12faa87d951ffe0776feea1da92b9da227d6ca1b543a399baa5e1bcac
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/http-echo@sha256:396d005f2e8e471a70144b3072102f5ffe34f503118615be69413291ef6111c6
SPDX SBOMhttps://spdx.dev/Documentdhi.io/http-echo@sha256:e60bdba403c1338fa5b376d372a0ab015d7252d2f8d7d18aa59c85a2094fe223