Sign inSign up
Apache HTTP Server

dhi.io/httpd

Apache HTTP Server 2.4.x (dev)

CIS
linux/amd64
debian 13
Tags:

2-debian-dev, 2-debian13-dev, 2-dev, 2.4-debian-dev, 2.4-debian13-dev, 2.4-dev, 2.4.68-debian-dev, 2.4.68-debian13-dev, 2.4.68-dev

Index digest:

sha256:c401215099a1fd83326a30850b78363dcb6761ecc3076bd53d59d07d7ecad2f5

Manifest digest:

sha256:91e82f0d703a9ea2eeefbf5719b9d21876bddbb23022f2954e1ff1a98e35d46e

Size

24.84 MB

Last pushed

9 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/httpd:2-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/httpd:2-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/httpd@sha256:d71bf299fa81b5ea5fa35e1b37d2892da8bfe79ffe8b5ca43e88610a83dd291c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/httpd@sha256:03e43404a3ca7ac9e5a91e84e6b30261db2092a23d6f1958f5d557ec204d4f38
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/httpd@sha256:4e566d049079027af0156fff9fb89ec27706be18b758ac2916d55ee68f9a9d22
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/httpd@sha256:7600c3bcbe599786f87e1e768ac45738a5b7154bc6c55a740a2c29e8e7e36f6b
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/httpd@sha256:be5767d852436a29285b13f816b8a55b3b14a5cb6cf3f1a55bb3f5f981ad2c3c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/httpd@sha256:75df272edf122435636dd09df7062cc11a63b88f97ae79be1ab2b7fb70b28f89
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/httpd@sha256:1bd2cb70be370a0c59ca07a7111ffc38696a806b0a09117b52b5a9d5360bedce
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/httpd@sha256:4c071cc81ea872a685da23d8276a59ddd6adb208b7f0fccf8f41ca6034f2cc3a
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/httpd@sha256:6755d989afcaf0496cf83e6563421b71488ba1cd726b2c51fc4574499d438904
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/httpd@sha256:b6054701bb6ef21f1b699af2b2c57afe9da3c05afb635a0489685f09e7a8a43f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/httpd@sha256:896c24219b234cae986705635e1141e68772b3eab2e6a1091cd57ee548a2a71c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/httpd@sha256:662ad23be4ab852fe4cbdaa4b9e52281cf5c3e3eb442d8f1a984f2f0b122bd3c
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/httpd@sha256:1363c67101a46c656a0ff666a6083dd482ac2d3367ead6c0fb258941de23bb6e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/httpd@sha256:1208279e21fbef3e7133f42ad3659cf1411de0af915391097879a1121ebb19f0
SPDX SBOMhttps://spdx.dev/Documentdhi.io/httpd@sha256:53faf8c54e0fbe1e190deeb5c9a8e328e1cf453c928ed3bed6dc1a7dac29309e