Sign inSign up
Apache Solr

dhi.io/solr

Apache Solr 10.0.x

CIS
linux/amd64
debian 13
Tags:

10, 10-debian, 10-debian13, 10.0, 10.0-debian, 10.0-debian13, 10.0.0, 10.0.0-debian, 10.0.0-debian13

Index digest:

sha256:c3601efe263562b8b8038ac5426432a84055617ab4cd17b5dfca9a53222dd63c

Manifest digest:

sha256:71a8a93334ac6053e1005de5a39ce156de51f1e28601fa65ce2dca7ea8af06e5

Size

125.14 MB

Last pushed

3 days ago

Vulnerabilities

0
5
0
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/solr:10

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/solr:10 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/solr@sha256:b51c716e5ffb3d4d2a35faba0d09c8dab0bc2bb72e9e47be74e707554df58f63
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/solr@sha256:fda198a86e4dd0377e020b7c76841c4de5e4cf855adacb7681f5f6b5ff712850
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/solr@sha256:c25f5bd1044b849abff91ccf8286a156bdba1603ef35bd1d062a65d582982494
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/solr@sha256:9066fa9cf56e8cdc12daefde025a53888de9f6f71e95b3dc3d84b0204e95e659
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/solr@sha256:ccb01104ef6c126f72a420cece6fc8037dd44e5965bdbb26a2e8b8afa9efea0b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/solr@sha256:becc4945361ab0ebc5dac1a0b1c003ec7c21bca6bcaf554befb41f046b20141c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/solr@sha256:cdbeac013755c9998c431ef8a645680685cdbd96e461c9456f81ab1f37a91018
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/solr@sha256:bbc4b0d47d5112d8c76c6c66deac8ac19db3f7d1fda5fe93b3f6cbd99a21acad
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/solr@sha256:a2dd5e32686055635e6a1307280c58bc87eecc5f650c6d4de3d91c49a5b28cba
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/solr@sha256:926b8a0447acdd4d7b3c9d48b00807e2e57a55ef3743f56490de52b153b1b085
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/solr@sha256:0d022bc660dc1f448218cc7c3e992a6de899696dfadeedb457902f4000be8cfa
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/solr@sha256:db0b0f151f06268ecc6633093ad480f281835ba69acc8966fe78dfe75959cc3b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/solr@sha256:1faaf747460951cbcad25d6f8d1e6b1869287c06c244c6fcb49bcd72713bfbe2
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/solr@sha256:884cbe802e060159ada549f927f3c9050f54ac6246bd46bdf219a9ff899506e2
SPDX SBOMhttps://spdx.dev/Documentdhi.io/solr@sha256:809cb4d422ae091f32d9ce5982066388e7ca299ebd33cfdac26f1c56cd049af2