Sign inSign up
OpenResty

dhi.io/openresty

OpenResty 1.x

CIS
linux/amd64
debian 13
Tags:

1, 1-debian, 1-debian13, 1.31, 1.31-debian, 1.31-debian13, 1.31.1.1, 1.31.1.1-debian, 1.31.1.1-debian13

Index digest:

sha256:3f889b183da066a9c468de6a4f9df2b918ebbb62dd6b193727f09dacec4dbe95

Manifest digest:

sha256:508a1b107c78e390311336b4d50d189cf7865ca195acf5993eacd0045132f780

Size

25.26 MB

Last pushed

6 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/openresty:1

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/openresty:1 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/openresty@sha256:8857b41d817e1687fa79b6180056ff5cff5ce92dc17c856fd295841d630283d1
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/openresty@sha256:de5228a3774067ae0621d67e7221ec73c184a69290d5cf23d3b51ae8bfa3fe28
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/openresty@sha256:81428c0ed9dd31499191bb390e2cb67aa8f9357b9ff1b39e91fbae78df890694
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/openresty@sha256:7366af3cb44dc9eacbb8d25f9122bbce98807f7cc2b42f5c266040edbc4bc731
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/openresty@sha256:e6fdd9b4d4ffb02fc64ed3cbd04382a674572e57d273c9b4028bd6f39bfff5f5
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/openresty@sha256:dd2e65a11a6dcc6286b86e11c7a5f289a5f410ecab2a644a9da6450e5b0b52ab
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/openresty@sha256:0ab60342767b9c142f942ab21f8f33e61e5074d8f71a591659cec42a22cf70ec
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/openresty@sha256:122c33c61684c95f69304b2eba5d4c87466ce68c157eaa5781e5e7471e5261f2
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/openresty@sha256:aa96416841e95b71792cbd3d56e86d75a4f094059bebafb79b3344c68c736eac
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/openresty@sha256:57700214cf013b1b0648bd5c31dc4fcb9f37af28af09c60f3f535ef162dd19bf
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/openresty@sha256:b31d1cbf92a4a0826b7c7e277ad0f8af4dc1e1d2faffbc5b64e483ba9ae4edbd
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/openresty@sha256:8fb3f82e12fd1ab637ef1e38c3dfedcb50075644978a2672942e874c0c5f1281
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/openresty@sha256:962ac82cbe4e1490bd476ec201cb4b2d98ddfe57df39b084787c372dd8909318
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/openresty@sha256:b3b7d4211ef3711c56a2534ab06f9f660f32e833a29cf022754a68ba6c2021b9
SPDX SBOMhttps://spdx.dev/Documentdhi.io/openresty@sha256:690d881ce6201b3693ddf52ae1bbfb463b4e02d71e3e98dddf2c37c993cb81d5