Sign inSign up
HAProxy

dhi.io/haproxy

HAProxy 2.8.x

CIS
linux/amd64
debian 13
Tags:

2.8, 2.8-debian, 2.8-debian13, 2.8.28, 2.8.28-debian, 2.8.28-debian13

Index digest:

sha256:da3ee69db692fd05c008ba020c9d83f268fdc38344100e271b6951e42129c908

Manifest digest:

sha256:3abe2eed96e68ec935740b379f65584cfa1aa571237484f72605e1d21a6068e6

Size

14.62 MB

Last pushed

5 days ago

Vulnerabilities

0
0
1
1
0

Support

Active until Apr 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/haproxy:2.8

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/haproxy:2.8 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/haproxy@sha256:a906e719db840294456b19d83c5418605a91c4e4504881835e7b4fc01bbc5a5b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/haproxy@sha256:9398140f4962eda472f2f2fdc484f7bc85ecbbe71ed6fdb2a702f29017b2b7fa
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/haproxy@sha256:0424c36ab56f67a5799285cf7d51f3b7f522ab36fdf06281fd040914697506f2
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/haproxy@sha256:c1cb1d61ef27884960ffaa856ae2c7ab72efb50c8d859da56d1b8358eb6a320a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/haproxy@sha256:ef9c583e67b8a6665f060403615d63e22bb0b0ea493c074ae458432719370748
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/haproxy@sha256:d81c627a8fe403ce90f089df30ab152d738fc95014aa778ab7188eac9962dbce
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/haproxy@sha256:f80d4aaff972f454635b436306b53a6683ab9d9f282c3c8cdd5ad4a4c573ebae
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/haproxy@sha256:d775f242888b0457a6145edbad2138385e8fd692e328585d2d5526e7155bb541
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/haproxy@sha256:d86c7efda870abcec7ee753351c555bbf72fd568c024763da81c443a955ed099
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/haproxy@sha256:9f7c437b012d762a09216dad3c49279ede72b10765894606cc371f2988bfa72b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/haproxy@sha256:5bbf5b40dcfc5b1d2a10f652a28e62e5618fa904b729c436354dcf539644a8ec
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/haproxy@sha256:b54d0b213d160ae54db8cfa5362d09acb7eac085f2f842b41c6e558508b6e557
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/haproxy@sha256:4e6a20d54dc33aba95ed66a42246e34440872667346388e3298ac6548b0c17b3
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/haproxy@sha256:64d09fbec885b187173d162e1aec3b69eb98f8227b16206cc976dec19ded3fc1
SPDX SBOMhttps://spdx.dev/Documentdhi.io/haproxy@sha256:e6db926da2375f2808fe8d7543fb64d291a0a6d4386dfe29d5579ccaa4130e7b