Sign inSign up
HAProxy

dhi.io/haproxy

HAProxy 3.0.x (dev)

CIS
linux/amd64
debian 13
Tags:

3.0-debian-dev, 3.0-debian13-dev, 3.0-dev, 3.0.27-debian-dev, 3.0.27-debian13-dev, 3.0.27-dev

Index digest:

sha256:e6729fc08a71d3464c02773ee55fec99f4e094e4c6e0702d18ec8668e1d32065

Manifest digest:

sha256:5ce5e9a6220f65d52085ee4ff1a17ac222e8b548bb16497679b0dd3fc00b4651

Size

31.56 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
2
0

Support

Active until Apr 2029

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/haproxy:3.0-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/haproxy:3.0-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/haproxy@sha256:7e0a05b10b9f862ebe9dea2012a1d77dfd17cca8203e7fcb11f068f6a7fbb014
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/haproxy@sha256:49e58aa0fbf3730e91676632ef72d3462bfd7e24661f56b35c2fc0c2f7f97838
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/haproxy@sha256:40b3fdfb920dff6aa7b4513a1ea3e909ddd76ca73ae59684b0b73c9b0b8fcdc9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/haproxy@sha256:8c4348068eb034ffaae0ebee28da139bccb4426951b2c88719083dbf00dee6d3
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/haproxy@sha256:588df1559cf5435d8cd413dcdb111444a5327d88d8cf9b64a24c417ffd753822
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/haproxy@sha256:d96caa544f5065c8cc8f6a4c25034af5e251d705181a9ef63ef3522318fbddd8
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/haproxy@sha256:bf050f38dbad19753124674d2cfc883c84c5fe92365a2456b7f0f2542c0c1f31
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/haproxy@sha256:1441b7569b673aad4cec65c6655c07a24e6b1f0a3f712848b29047a732e5b5b9
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/haproxy@sha256:0499ec0590397b51ed8f46ee0e5504bb09079893750900d22dc0b69cd099d302
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/haproxy@sha256:073f3720a49c1d4a7b2a63ec96c59abf23e0b52b8245abdd216867334051a95e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/haproxy@sha256:c8f9508fbbd2c931d3f8f51ef72da0296b252d833800e4ab134efd0950b9f823
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/haproxy@sha256:69e76d7e68dce30da405644ec31f090e1b5253551d14357953d062e5492f1894
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/haproxy@sha256:0163c7213f73aee4c77362d125e7b0e30f9ad1aa439058aac7cbb59bdf354f64
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/haproxy@sha256:ea7b4870520fcae6bf2f15940cbf51249f5daeeee46c288ee55e18a9bb708614
SPDX SBOMhttps://spdx.dev/Documentdhi.io/haproxy@sha256:f4114787e4d885884ccef99b34400ead1ac814f3714b629ff6c0345559975750