dhi.io/solr
10-debian-dev, 10-debian13-dev, 10-dev, 10.0-debian-dev, 10.0-debian13-dev, 10.0-dev, 10.0.0-debian-dev, 10.0.0-debian13-dev, 10.0.0-dev
sha256:bb0a29fc0f67ddf2b1cd8b470344bd710f68d6f40943bedb8a5b65f3b4077695
Manifest digest:sha256:7e1d0854818623f538819dcb5d8ba507aabc2cf5879240e5de68af1dc8a9d790
Size
135.21 MB
Last pushed
3 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/solr:10-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/solr:10-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/solr@sha256:a1aaf6ad7821501ef853c2dc18d22e63a9a20b66e165326135daf7529c6fa6ce |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/solr@sha256:10c81518a2378a3c72f8d6d8fe8864893a76e94e14cd8063daddef4a56b927cf |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/solr@sha256:8333e43f72e15729ccb2d316fbebbbf22f1ab73c575242d01e162a49f02bb19e |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/solr@sha256:f7f1bd323a398e4354c3e22c1f9d0dd1f13a0e6cbac272fb26283e16798ec3ae |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/solr@sha256:523d48c21125d8ec24f34219c1a7e253f0aff3c715cea46df79ef637379f13cc |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/solr@sha256:1e9cc39987241625324e2e5240587e4575433d4dae852581a1c6976b30348cad |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/solr@sha256:c7ec862725d9ef5e40c37fb6b322b109f1d9a9115bd12c26b0b0161cfbe60b54 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/solr@sha256:0285044b2857898072f979e22682fa178659688f0c6fc2728cfe79c975e548e0 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/solr@sha256:f511659c3b42acb13d9b0e6e4236e65353109350c4de0e70bc4dbf91cf8bb104 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/solr@sha256:5caf153d625eb139aa8a96a26b19102a10f1f40b692087145f61bbd3778a6562 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/solr@sha256:3033c9b904d2f8db588f3f6c53a4f152ddbaa5cd9ecc3c09d0f54db5d63e9c4e |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/solr@sha256:120f8ca7269b51cc4aae56c4089f423a1a1f8396b79e1cd444ec03ec3a55f2e7 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/solr@sha256:809b8ba22a2be5dd5adf3e55cd70615dd1953fab2cf404715cd8829403b0077b |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/solr@sha256:ee610f81df2b4685c623b669af0920fda4a556d4802f33a8678d349416dfe7a5 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/solr@sha256:e079d69f8f6754eee315d5b13b9d893f1ab5c0bcd53b88dafdc129ba6b9fa4f1 |