Sign inSign up
Apache HTTP Server

dhi.io/httpd

Apache HTTP Server 2.4.x (dev)

CIS
linux/amd64
debian 13
Tags:

2-debian-dev, 2-debian13-dev, 2-dev, 2.4-debian-dev, 2.4-debian13-dev, 2.4-dev, 2.4.69-debian-dev, 2.4.69-debian13-dev, 2.4.69-dev

Index digest:

sha256:5c64b4b7a96f0224db7606d96c599f2b65c0a33d44996773de51201890d2ccd5

Manifest digest:

sha256:f6fc94c90b652d34ee8a33ec8dbbca5b3d226945daa55c8ecdd8080488fedd9d

Size

24.86 MB

Last pushed

16 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/httpd:2-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/httpd:2-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/httpd@sha256:715191c3ba0fe499226a719cdde1c901d7474277d463426e19e3b26e828c38c4
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/httpd@sha256:2bb115b7d3a87cdecdbe9a9b52f460ff5d5d18fc66a0fbbe058945de4e35a4f9
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/httpd@sha256:40d221ff0398b04509ac5f998db1ba8d80150dcd4fe1d944817b7ceb307d2637
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/httpd@sha256:de8a35e99e958e727a736edbfcd96bfb1349c53a8a756b19be6af3a5bb293d2f
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/httpd@sha256:f299db2e715d4d0b10eea2114a717317030df4a68c3d231c29a920c70479cd79
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/httpd@sha256:41da5da8fc8f2d0df953f1dc81dc992c9bb057f1f00974508e7b5c5f58a7d281
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/httpd@sha256:646923f17af02e0fbc2ebcb4ee9812bde5b4648f891334ab3c33a78b982e15b9
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/httpd@sha256:5f398f4fe5db6fe0c34e0068c0e8a62690193b12aef32502844d97536cfd0a27
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/httpd@sha256:56ec0ad9ba44194a3847a9f3eeaa1a315143804525dc6265e039ca577c1fabbe
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/httpd@sha256:7a730c91aa8b9e3fb356f8427a8405b116485c5a0fa70932356f5fe36ad676d4
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/httpd@sha256:4475fec6fa782fb8665ec317efbe7ca77fb3db0b0a37c0f1587ca517eac06e78
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/httpd@sha256:99a038e9c97c01b61a036551f38387cf768f6a12c8f7e515731c3e856bc92857
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/httpd@sha256:b413d06e6bff659c4542d8e6107e3f3fdfe74eb249ab4331f0cadf8166742841
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/httpd@sha256:3755cd5ae7ba110e155b94f35aa68ccbf10d550e49336f8de6dc4d099895c3cf
SPDX SBOMhttps://spdx.dev/Documentdhi.io/httpd@sha256:ff173b2a180522295b1eae343fbc5c9c3f815ff7ec888b9d185fc57fa1c9c04c