Sign inSign up
HAProxy

dhi.io/haproxy

HAProxy 3.0.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3.0-debian-fips, 3.0-debian13-fips, 3.0-fips, 3.0.27-debian-fips, 3.0.27-debian13-fips, 3.0.27-fips

Index digest:

sha256:2df8f0ef7e23d62574c389b1479a0268629b8bec6af5794c08bfc4860c228937

Manifest digest:

sha256:89e7950c8b14c63f0d0efd1d4628d887d3f8061ce794da008264db708f60ed7d

Size

17.66 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
0
0

Support

Active until Apr 2029

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/haproxy:3.0-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/haproxy:3.0-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/haproxy@sha256:249cdcc2af6a58d7f8468f23aa715c7f569c45377f7059150ba7118ae211d2b6
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/haproxy@sha256:208211ea3e37c2de143ab076f63a3d10e603b54bb87c229ec4a610cdd5a777eb
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/haproxy@sha256:5a42d0f77deb01805197ba0fd421562ed6749e4ad354d7a282f10fa6e40b97de
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/haproxy@sha256:d77a08005f457306322cb987b83e72a0317922c5c9e41b74e9a00793c2fe96a1
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/haproxy@sha256:3bc505a4524eec5400b265fe4d6058a171575b2f402b8a08949c95b66a0f32ea
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/haproxy@sha256:97e8ee1ee8d73f10835938869b11e256ffc26b48d3f9e1aa108028bb32f82188
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/haproxy@sha256:fc4fbf5da463406ca7566df9c2ea3b7366502d337c654ee974b639c82fd9f5c7
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/haproxy@sha256:3f4c5f7ccd732adffdd16a6660b0396fce55cde5034a1b40e58eaa93532dac69
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/haproxy@sha256:5ac3618d5e6949800260ed63e3d33f951afacc8a1918b7f021ea6289d2e6c8c6
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/haproxy@sha256:61f6c8da19b5595d53b30092068b8796e2e9dfd5f745197ac0ade0fad227dff6
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/haproxy@sha256:680d298a07b8b6a843ec1174735b013f2ad50a7cb49f412600dcec0fa7cf93c1
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/haproxy@sha256:f06f4801311c16e177ad3587806bdbf617d4f9afce31551cf2ea128f7b79e4ee
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/haproxy@sha256:00b5e3b3f602686f2069ee17d53fb0fd33d864efd915844926703d5bb44fe86f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/haproxy@sha256:a910e02dc8474fee7005981d6c01ad50bdbeb0f1d0f2d63edb39c0479bffba95
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/haproxy@sha256:c9b71923f9094059ba75cc26c54d03249d841ff114a7c43b4e3a5ec36f960e75
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/haproxy@sha256:e54c5986aeb92ade7a6ffadeee1e1b13e38d00d21cfa7fd93e0c8604439a4dc3
SPDX SBOMhttps://spdx.dev/Documentdhi.io/haproxy@sha256:055fa1c7e55c65713c79cd95f70597081fd92a64c3a08fa0a5aed792eb526d90