Sign inSign up
Apache Solr

dhi.io/solr

Apache Solr 10.0.x (dev)

CIS
linux/amd64
debian 13
Tags:

10-debian-dev, 10-debian13-dev, 10-dev, 10.0-debian-dev, 10.0-debian13-dev, 10.0-dev, 10.0.0-debian-dev, 10.0.0-debian13-dev, 10.0.0-dev

Index digest:

sha256:17c5657b02b58a1b2c0bf270bbd920d7d72d9d803ed33023d2dc381fab5a094a

Manifest digest:

sha256:f3cb58a21c61f50bc0f49616ca5a29eb3256e630cc7c45dfb67dcc423c8e2c21

Size

135.21 MB

Last pushed

1 hour ago

Vulnerabilities

0
2
1
14
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/solr:10-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/solr:10-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/solr@sha256:e9ddcf274ee46909ba63f8591da23efd0651fd1fd9ed2dc41f2bef5116472857
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/solr@sha256:b9b2cc06fd77afc3e58925f776383b7d6d6d230d4dd91209313dbf61155d310c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/solr@sha256:e7ade5672d7bffc0035f76d21b56d8b8af6a8027a28b29fca6fe2f4d5cf44594
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/solr@sha256:a7d87342ff3008697f23d414ab3e276df70349ad39ee277c2be10b97c1293a1c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/solr@sha256:a5477585b81ba5745334672df5304708e4fe5b0db563470cdbf1db353edb923e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/solr@sha256:799b04fc25923445908eb581dac9a6affc9422f8813591ce1f560d11934cc7fc
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/solr@sha256:4d4db9eb663604a472b0aaa937de4d2eef51507bc7747dccef0f33fa2038e14d
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/solr@sha256:cf12316de41918708b59e6de78d826445284513efd8d899ec9d0e62e8ea3ad85
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/solr@sha256:2c74b263fe117ffa48b705e29b958a9a3acb61fed1631a0514894b7a90cd3a6e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/solr@sha256:7f37770f6014fea3eca66bedb65a3587534ba79e752d4043bdd3f61bacbcaf96
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/solr@sha256:3452adf3a479e24f3c3131012111fc8719893baf1a7fae9ad74eedbffaca66bf
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/solr@sha256:b440115c612e679f41610396e78b63778c9ba73ad0bd42b679e060a584e13e3c
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/solr@sha256:954921eb6b0ea8ea6fd7d6f6fef9af3e6354d566693018443df3bffa2bd4c58a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/solr@sha256:9eecc67981ba6a8cb9680dfbd693d5af705f433216235d4026d82dd104771f03
SPDX SBOMhttps://spdx.dev/Documentdhi.io/solr@sha256:1a9e93137862509eb622079a09074b265592061ba091cfaa15f29ab2a0baec02