Sign inSign up
HTTP Echo

dhi.io/http-echo

HTTP Echo 1.0.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips, 1-debian13-fips, 1-fips, 1.0-debian-fips, 1.0-debian13-fips, 1.0-fips, 1.0.0-debian-fips, 1.0.0-debian13-fips, 1.0.0-fips

Index digest:

sha256:ade6f34694f1c0c1e2c5f271f40d879eea4c698f3aad8e1c622ac8552c2b042e

Manifest digest:

sha256:65b01e90b5c072ad6dd2494ef25a7c7db4fb09dcc5e509bf3635fca5cec30a03

Size

11.02 MB

Last pushed

11 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/http-echo:1-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/http-echo:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/http-echo@sha256:a7f4082105089f9401fdc166fad33b8886752157f0367661dcc626bf87218d99
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/http-echo@sha256:150d8cfe8923026a238d1ce7869de7474752581f69c4fe2b957d43fb0b9511ca
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/http-echo@sha256:14e4ce76db297f1b26872e708250e1fc1f79b82d0b1c3298d1eb6e5ddd883c9e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/http-echo@sha256:fd6afa954feaca10c9b08d077daaa4b7992dcb383cb7b846c2cb856fa980ffda
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/http-echo@sha256:83347a23645f927b208e2cf2eb4b759d5c37e8615efbf9b118ee4d6eb61ad34b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/http-echo@sha256:633b28355e884af0a853e528fd46b5a640c04440d2394ba5c3c531998f1cfa4b
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/http-echo@sha256:fdf4686b05a319cfb609a8222e1206f1ca9eadeba3b7bada9904a6aa16a5e813
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/http-echo@sha256:f98994c496d9df40f0c374aad2abd808a85e4f9dbc27c0afcac2f4fbf26ef102
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/http-echo@sha256:6103d5fd0a589b2fb6e8795dc10200d14a0906a7183cbca18991e06615e6328c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/http-echo@sha256:d02a56961c951101471f9c4ffcfd0a17530d6a5bc9fbca20e497c83b3740f168
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/http-echo@sha256:88138f9e99696cbc89fbe2b3472aedf169cf1f6de51ea1efbcf5e505b9910fb9
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/http-echo@sha256:4201ea57538139ff6fdd1c9fd2f004b7f20bcfe66f252c9a0849280f58463618
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/http-echo@sha256:35449cd41baf2af847f6f3cfc1029d351ebd48128b04d3c8f48ed260e4b8e666
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/http-echo@sha256:95609428369bcce0210b4d1deed62ba24f9080f39326a4a1ede2b12637dab16b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/http-echo@sha256:8f119760fb480c18022ad322a037c12af517edd037b259e1430d9e36ed4074c9
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/http-echo@sha256:f30b4cda89d8fcbfa6105d28168bc4eed68b18c261dd34d02d63831452a3cda8
SPDX SBOMhttps://spdx.dev/Documentdhi.io/http-echo@sha256:39dabfcbabedf873b20d35986c23936789d8618ba8a7361c6bb7e276a2a047cf