Sign inSign up
HAProxy

dhi.io/haproxy

HAProxy 2.8.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

2.8-debian-fips-dev, 2.8-debian13-fips-dev, 2.8-fips-dev, 2.8.30-debian-fips-dev, 2.8.30-debian13-fips-dev, 2.8.30-fips-dev

Index digest:

sha256:2cf185c06a3b87eb3864159708dd5e82656c0707c83ec6116d33ab90ac2370d6

Manifest digest:

sha256:f68dfdac9bdbec71c9326eec9337e10bac6764141600df3b2536a0cd3dfac6bb

Size

31.45 MB

Last pushed

10 hours ago

Vulnerabilities

0
1
0
1
0

Support

Active until Apr 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/haproxy:2.8-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/haproxy:2.8-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/haproxy@sha256:e8acd56b3826e584c3306cdb0bffa6771415d1a759eafbec11d3b88328733c91
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/haproxy@sha256:c034f19c4ae1729e2a0e053adc32057661d616386ff0681d925cc900a2801b40
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/haproxy@sha256:f6671603910bf2c5ea69c6968fae9f482b267f570ec40eca34e2178a02fb90c7
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/haproxy@sha256:e257a2c94be3fd30aae3242477dda08b82915f10577cf6e5a38be5d272a8c614
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/haproxy@sha256:86371aaeb6e5c9b7ead2eea989935270266e1c1dffe69bd0554c824d10b381a9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/haproxy@sha256:7d0c57ea32c61b2d0b62c17e17e3688d53240e759a449290c92e8252b1785bea
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/haproxy@sha256:afe8dfefc45bdc92d407ea806558f12c9f9d6d54e8ab637b862c4af784cfffd1
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/haproxy@sha256:3ac8135039b852bb122d6a1b6092ca54f1d843e60b2847ed3e6afda5605f4ae4
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/haproxy@sha256:2b9a11593c087223dfc26fe03db889e8ca3470cf5500bf41d265d482433a4e7a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/haproxy@sha256:600494678720f17d0176bf8d7342332fa87f81bcda30dd0db5efb52cc79fa255
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/haproxy@sha256:ad78b05e3daeab41b706cf70542f0031962885b9c65cd13f6fecf1b493355c3e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/haproxy@sha256:e65670ca332e955361948fddab5deda64e81428ea12ac6e95d7ef645af7fa9d0
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/haproxy@sha256:02795d3bb44d66cb38b6fe23173720e701db1e9c159c330df35f7b40993e0e52
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/haproxy@sha256:62877f384e7cc4eceee98dae434adf6c49cb61a0f6937d7c1d12150d53634260
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/haproxy@sha256:65b081ea803dab48e5d85188f17849ffeb812842f1f904f13e752b9a0dbaf0b9
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/haproxy@sha256:6b9dd668d176bc2605ceb20f06fa273accf1bf735badf8448386cc8c1bb71759
SPDX SBOMhttps://spdx.dev/Documentdhi.io/haproxy@sha256:53b42eb40028d868fefbc9632da8ed7230a91262ab19faf23669b752710109ce