Sign inSign up
OAuth2 Proxy

dhi.io/oauth2-proxy

oauth2-proxy 7.15.x

CIS
linux/amd64
debian 13
Tags:

7, 7-debian, 7-debian13, 7.15, 7.15-debian, 7.15-debian13, 7.15.5, 7.15.5-debian, 7.15.5-debian13

Index digest:

sha256:e95b2f3e85cb56a8e0dc6f003c3d74760895c1ccf90618601c2d8f01ba229a82

Manifest digest:

sha256:6bf4f3bcad0388266be4394310c5374f51069f736508b6a0cbd7634f4511c08f

Size

9.72 MB

Last pushed

12 hours ago

Vulnerabilities

0
1
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/oauth2-proxy:7

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/oauth2-proxy:7 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/oauth2-proxy@sha256:c3cbb90ebe47139eb4ced73987de2f170c233239cfe26e9bcd2dc372647af2bc
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/oauth2-proxy@sha256:6a44d31ca170ea23547ef8c75b64a0acab54e04499b556a482d5d56b33eaa4b8
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/oauth2-proxy@sha256:d48b821ea91c35074a82426c578b5ba34ea971be5f353073f1423bd1a65959b0
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/oauth2-proxy@sha256:782e855298836edbf0d5965dfd69edd150442de67b82c980cf4eb0f051d5a781
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/oauth2-proxy@sha256:b5b4753a0dd3e8ea0c129a31571c963fc8506caf7c352c4c8d3dee5f5a455bd7
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/oauth2-proxy@sha256:c51a2b60edf2ae43355fb1d4696d627e947b1068df9abcb47e54383d078dd03f
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/oauth2-proxy@sha256:600dec0d00bdaa2804231ff645a9ee70ab28ff3cf51d4e4a7cdfab7b095ba78a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/oauth2-proxy@sha256:f3438fd7e6ddc5a7b0710c346c397c41a6b8dde5565512c7e0eeb381719cbe73
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/oauth2-proxy@sha256:34c193c2102ecbd733688e8089fb1036b6eb7dcd321b05401d30e1e5ba60cd7a
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/oauth2-proxy@sha256:fe57d9fe2d2845948869f4ae53430aa882ea52539d6e35c0585beff928b09292
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/oauth2-proxy@sha256:dac4f831616ccbf58c89dec5c39ef12da3e74d569104560c3ad25b8da8d4fe1f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/oauth2-proxy@sha256:9724f6a935cd9cf116efa6fbe3982b103aaf28dccf96f599056d69931c20c0bd
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/oauth2-proxy@sha256:bc8025617a994eebe275f98aa1133489ed931409c7331c7f2dce11e82368d6e4
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/oauth2-proxy@sha256:e76134dd063a87e4ad20209db339786e2bc35866a7e889c0bb36ca249c680057
SPDX SBOMhttps://spdx.dev/Documentdhi.io/oauth2-proxy@sha256:4335785520fa08262eef9943e39dc7cda5f1e12cbcbec5041959d985017a62ed