Sign inSign up
Varnish Cache

dhi.io/varnish

Varnish Cache 9.0.x (dev)

CIS
linux/amd64
debian 13
Tags:

9-debian-dev, 9-debian13-dev, 9-dev, 9.0-debian-dev, 9.0-debian13-dev, 9.0-dev, 9.0.3-debian-dev, 9.0.3-debian13-dev, 9.0.3-dev

Index digest:

sha256:d26c477cdacd85e1ac0d2e665f2739165b048cb50551f6bb52068e68884f40cc

Manifest digest:

sha256:50ca67f5113d0ff335ee505fd2101d08629fbec1c01432ce22bb7b3ad4badfeb

Size

85.08 MB

Last pushed

2 hours ago

Vulnerabilities

0
0
0
2
0

Support

Active until Mar 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/varnish:9-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/varnish:9-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/varnish@sha256:eacf78cf2c6cfe9a437fad06aa6173f35df476693bb0fe59c3d1179e766a59ef
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/varnish@sha256:4492ab67b092c15b26d138b65f9e1b5c09eab2f6c9cca2e936db0c2feb03439d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/varnish@sha256:e178ffc44a45d39f0b7a8c9c3630d5dffce22d316e78f92bbffad433450f9cf7
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/varnish@sha256:6efb0b160e86adf97ee2f98eac525deed1dfd6c2090c77b7c90890da77d3d38e
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/varnish@sha256:4032a2efb5020e9a260574826b53a654d67b4454ec51a2dd533e5df75cfe4d1f
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/varnish@sha256:32e4e94f1bb7511a0e84dbe76c36b3eb715db9275e4892857ddc2ba7aeae7023
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/varnish@sha256:e434ceadc213e343b6713ab00e11d725a241cb085c4336d8bf00fb9feb4cee1c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/varnish@sha256:5f72db220de69c16417501bbb87f39b654627ff89a91c9d16b6588449bc859de
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/varnish@sha256:275342e908ae925dcc8c0a39b48ebd6a616b4fc8e3fe145db3443f9b6056c425
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/varnish@sha256:2db5cf5c66a5c606f8d038a959bada0a24f3d4a5d33c20227d7839f8eff79c12
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/varnish@sha256:2101cfd91966ceb0bf102d6b7d1babb70cc9f5293252392dbe9247166457f52a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/varnish@sha256:f12a0a06e4c3d7a32347e143958b9900e6a39f7d8f529ec980b6de4a96f63746
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/varnish@sha256:c2c8605d69553ae08ae7af465299f7d270597528f3e3893ebbe57b9277ba9958
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/varnish@sha256:04a47f3266caa56f83c6f62735024658f4c51fe337875c029e1508f6bd1aa402
SPDX SBOMhttps://spdx.dev/Documentdhi.io/varnish@sha256:51f7c6f259ab94806caf8c8f23ae9f2e0782d7a9dcc8b7932472cc51dc0553c9