Sign inSign up
HAProxy

dhi.io/haproxy

HAProxy 3.0.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3.0-debian-fips-dev, 3.0-debian13-fips-dev, 3.0-fips-dev, 3.0.29-debian-fips-dev, 3.0.29-debian13-fips-dev, 3.0.29-fips-dev

Index digest:

sha256:4c1e726431f60065484550095d1bb6eb3674950454159f528b12ec15e22c94a3

Manifest digest:

sha256:04faeb0d6ec2e8b2df5def401cfe1d0e3cd9d961822343b1223f89402dee62cc

Size

32.34 MB

Last pushed

8 hours ago

Vulnerabilities

0
1
0
1
0

Support

Active until Apr 2029

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/haproxy:3.0-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/haproxy:3.0-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/haproxy@sha256:4cad7bae11fa9306323bcdc627e786deb762ad1cbe89309329fdd8d749237b60
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/haproxy@sha256:2e9b8c2c707f5e4a496874743c6f46a058ea8576f165ab87e10b572eb7f2d5e2
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/haproxy@sha256:ea6375bb74df8a8b6bb449d9387b9ea7de5855f2e8124dbfcf7c2945929f636e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/haproxy@sha256:bcde85049e2f86cdfa059b4bacbb0d68ad9b1756fa7dffb6c1731ae6daa7ca40
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/haproxy@sha256:ad66d35dc0ac04b6cd628d80a9f7529bb33be390c917ee5f91ac46d7638e67dc
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/haproxy@sha256:85ad910748ea55e019f9414c98365ca06e3344bf5e94c1ec963d65b400aad75a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/haproxy@sha256:e2a8d6f955d2c6d54405aadef95ca1c338cc6b7c49de82f4d7269c8789626c61
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/haproxy@sha256:7c6d121fa7a40735e40922e7362dc053e9fb6edcfd1b64eed9057178fd434463
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/haproxy@sha256:c55eac9e20c76b7b8aab1ac8be0925984028424f4ae62c1ac4e0a802ce9afb91
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/haproxy@sha256:2c1b4c02e8898e798ed1586493bbd7f39c884ee5717167fef509bb07b900f6a5
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/haproxy@sha256:6feed5f143aaa5cc5c5337f03f3bf4119406a19cd6c5aa7a0d67c36799b849bf
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/haproxy@sha256:9817d00ddc23c865ebaf2a707c254b374195f2c96c2f721a1b6443e79ead31f8
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/haproxy@sha256:986d786ff2ef6f70c36315ebb2752fe483b97ad450f212c67d1c1b7a736d9fa4
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/haproxy@sha256:c64d69fac0e151369c5527650f828a987c7adbce998163ba1c94a40d4107ff91
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/haproxy@sha256:cac2320a4acf83383bc0390b83dc2082a166a9dd8602eb57971ca6b341cbeebc
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/haproxy@sha256:4d7de01c7a5bb3465af1f8fc2313472486d74768368c4cd12b039219c3df160c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/haproxy@sha256:2456c7d4b319e8610620338f4593168f95fff4aba69b27cca721baa43482a611