Sign inSign up
OAuth2 Proxy

dhi.io/oauth2-proxy

oauth2-proxy 7.15.x

CIS
linux/amd64
debian 13
Tags:

7, 7-debian, 7-debian13, 7.15, 7.15-debian, 7.15-debian13, 7.15.5, 7.15.5-debian, 7.15.5-debian13

Index digest:

sha256:2cadd1f3c20bd0464ab226139968cf165e3843830ab438541b449a2e27b0a630

Manifest digest:

sha256:71f39162086df2081ced719918d81b3aa43b4979dcc12f08892afb58bf33c95a

Size

9.72 MB

Last pushed

1 day ago

Vulnerabilities

0
1
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/oauth2-proxy:7

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/oauth2-proxy:7 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/oauth2-proxy@sha256:29a97820b33b4bda1f1362b4a7861f45de7ac65dccda71256fd97f8dcec3ad7e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/oauth2-proxy@sha256:5b2925f623fc170c04dcea076fc103f2fef01a6e42b8da14c919527eaa03999c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/oauth2-proxy@sha256:b97246739608a4cec01eb448d9436298c28f10ab830a44034567e4a6932590ea
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/oauth2-proxy@sha256:a5db38def5a8022bb60f29efc7ab8add5b042876dfec86451d8e94105f1d3590
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/oauth2-proxy@sha256:7d599de0b367858972dca6106a9ade2dc13f00d474f59d99896fb5d9416cd0e5
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/oauth2-proxy@sha256:a0ea83391b3c769a22962679da3ad8a5ab2fc88b6df24bb42ff85b24f07d76a5
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/oauth2-proxy@sha256:593ed5a94fa6de6c43a45987419e9d2a62f095da6ece1179c7552ec8f539c226
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/oauth2-proxy@sha256:0fab0c6f4cf3a90245a72063baea7baeece5414786e59179e29911fabc599672
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/oauth2-proxy@sha256:7f546ba0bc837820c2b91c7c153ae8e7b792dd68ac015810c926a7aa88780c8f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/oauth2-proxy@sha256:109407cc85f91dcd33705f9eac7c76e97a6574aee91f5c7b06a176893744e188
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/oauth2-proxy@sha256:52047faafec6aa0e9b3278791bb085d0b46ba08eb85c130dfd7e2210381eee46
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/oauth2-proxy@sha256:30ced6f34f3079f4a565aeb60ef91dc069fca174a75c5333eab2c640def81e10
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/oauth2-proxy@sha256:41bff7bb324c4d729c321f1b581bc8c559a509636f7899438d51b3629cdf2f07
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/oauth2-proxy@sha256:a6de60065c0f26292c42c2b13a1c0f7767061177bd07251680b6ff8209f455a5
SPDX SBOMhttps://spdx.dev/Documentdhi.io/oauth2-proxy@sha256:1f1c98c5814cbaa164b128cb97176cd90011fb5af97287d7e1747523bc08c702