Sign inSign up
Apache Solr

dhi.io/solr

Apache Solr 9.10.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

9-debian-fips, 9-debian13-fips, 9-fips, 9.10-debian-fips, 9.10-debian13-fips, 9.10-fips, 9.10.1-debian-fips, 9.10.1-debian13-fips, 9.10.1-fips

Index digest:

sha256:9d5be42ac2f2c3bbdf041fbacc61cdd90392f6433ae01ffb0b8366f27585511e

Manifest digest:

sha256:3b147c8f132a10a5a3fc32ed7ee3e32a084c5e691d3149f14ddf05870605dc57

Size

124.53 MB

Last pushed

1 day ago

Vulnerabilities

0
10
2
10
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/solr:9-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/solr:9-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/solr@sha256:49d93c4cef4dcac5b384845cd61766ad5f638d345f095c690105c6d68a758888
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/solr@sha256:26ef844657a754071da4c911c51ff2255cc5ea136f2a1cb2e4b3416092d03d78
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/solr@sha256:22a85b6ca7cb028c8b342f881b8a634b18c21e7dfda3a80b26808a8d63591955
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/solr@sha256:b0b3e684c1271aad301e120c8377fb3dd2bfc4fa3aa3b7bc2d3d1a2b504ac804
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/solr@sha256:78d51a536e299b9d93e5f88e306901d63dc666517bf369333ce4ebd8d4e2fff9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/solr@sha256:71d2e9c3baf25c49cb2acbb9286ef9e0c3aff6a9073531831d7612bd90ba22aa
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/solr@sha256:6e47f59abb445177e5974659f8ea29e0697c61383cf59ff404e6c307b4e9577d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/solr@sha256:f072590098180788533246c013d2b6369dd86ab31fd77b631000e1c0ea7d9b77
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/solr@sha256:dac28a267d8febad44f13af8bf9646366e3e019a87221abd282e8f986e23e8bc
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/solr@sha256:152436e8786ea66ff974f3d04bba0a99bb2758b59af520978d6357ecdd0a869a
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/solr@sha256:87106bcdcec8fd2e704e5d25196af9e7a6710e45b26e72f38fd55423b56f0cf8
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/solr@sha256:bdb88e26379908745901dad17654e2f9ecf9bb5ef8df0c986f6e76bd5c117dc6
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/solr@sha256:6d96a67b1829ddae8abfc4099fb38ee3b1f38335ed1588c31384cdd6ddfa9e32
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/solr@sha256:b8b50c65970ba7f0cf106ddb15cb19b9dc90d7b7da07d0a6151b62b216863402
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/solr@sha256:5ffcd7f6f1359c7c35762857b5f3f2dc442b07e4273b3d695395509573d40e94
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/solr@sha256:9cda4879151753eb365b2843b1332a758f802c72d1eb5ebcdf5d0256acb90014
SPDX SBOMhttps://spdx.dev/Documentdhi.io/solr@sha256:981528782cd37c43c01d7c32e3b3b5676b7d730eb624e4bc89ab9cf91b7bc4e8