Sign inSign up
HAProxy

dhi.io/haproxy

HAProxy 2.8.x (dev)

CIS
linux/amd64
debian 13
Tags:

2.8-debian-dev, 2.8-debian13-dev, 2.8-dev, 2.8.28-debian-dev, 2.8.28-debian13-dev, 2.8.28-dev

Index digest:

sha256:6a0177360d7691d243f93ae884bfc9eddbf5a32a4ac2cdd22a971779461936d7

Manifest digest:

sha256:9329bf7a25eb0548da5e423a781689e6609398970f51f2a1448ef6f89315868c

Size

30.67 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
1
0

Support

Active until Apr 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/haproxy:2.8-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/haproxy:2.8-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/haproxy@sha256:4093f9746a3cf4872c2f0b4c1070e95d80b15dfdc9358b0421f6e655a3951549
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/haproxy@sha256:4084cfada8499097940ed74e3593b042f47f52f2a4790bb40fd15454c3ab255f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/haproxy@sha256:17a65e636e7eabdd9857415c148f0e94d7d367deeb29176475820f508ff300aa
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/haproxy@sha256:74c638fae0f32a023ef5da98e67bd08d5e62faf915a0e0d56748630d4d8439b1
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/haproxy@sha256:6bfc515a965d0445b938cfc477ebc8133299381514a88269337b4c281fa12fd6
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/haproxy@sha256:cd139303887f2ea89c061131268b1fe3c709be597f105b5e080598e611c81160
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/haproxy@sha256:707b3fb23d560effdeb639b13c5ec904a5f8d59f60020566098eb32f69430824
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/haproxy@sha256:d43eed7114245d5df320c58722386902d87435d163ad9e07f2d8e898eacb8f95
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/haproxy@sha256:51fbc2417c80686a9ad12779d6be18d65f396d36ddb71c33f00a4ff0b3facb5b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/haproxy@sha256:6078acd66b255cbfba0fd55c3d91fae21cfe1ec29070b298c122650ae1762a5f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/haproxy@sha256:e510c6a25650d947fa6a0326a2e4647ac2fc126c3aec16cf84c0c35b23603214
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/haproxy@sha256:f8752c06e7d807b2635b0eadb94d8298fc2da919c77f78ecaf55d7407614f744
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/haproxy@sha256:a0db6d376ef13451a9c5ec0463ddccb6f082aa14c7ab8a1d98e72c1f98e040cf
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/haproxy@sha256:5e715274175e19625012c7bf057cc85b1c83c97e40611d556d7bec6b7374447a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/haproxy@sha256:f859fe89f8fe795dca2105a2fad4c8c652d5671454179f1546f0093f86756559