Sign inSign up
HAProxy

dhi.io/haproxy

HAProxy 3.0.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3.0-debian-fips-dev, 3.0-debian13-fips-dev, 3.0-fips-dev, 3.0.28-debian-fips-dev, 3.0.28-debian13-fips-dev, 3.0.28-fips-dev

Index digest:

sha256:bd9c762132d3dfc76247190369845faf822f1995d6296022bc7e55529d4ceb6d

Manifest digest:

sha256:4a2868e27560fea44ac3ccae946009958c9969042c4acea86635dc666a1d0824

Size

32.33 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
1
0

Support

Active until Apr 2029

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/haproxy:3.0-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/haproxy:3.0-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/haproxy@sha256:b3ec9a6417ce5a75259db68190593fd83f582c9d17e7342cae01307b80fec033
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/haproxy@sha256:33a26055e5b35d2d5c236818ae5886e1e8869730cb9d23048c4f1f939867ace7
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/haproxy@sha256:21fcf67f124a02449c7a115ae046c59d09782a049236aa1852c8f02d050b810b
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/haproxy@sha256:404a88ce7a5f54f5df6d738d25f1e928f52a8bfd352b45b212dc09cdd163b3e2
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/haproxy@sha256:7d38954648801050b66107a1e52298a7e1843601d16dfaecf0d5a5df26faf5a6
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/haproxy@sha256:ac471d350ef78793bb39c004ff370086491d3656eb6ff0ccee438360d16b3485
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/haproxy@sha256:9ed4c1b16e47e3baaaa7f1ecf5d492e2da8ce6bae8d0a7f3217bd8782ad5101c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/haproxy@sha256:8d84c353a4f3695a29562f22614aa5e4b621b4616edcb6a3e42979fbc3baea30
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/haproxy@sha256:fcf8500e33df8626dfe8a1b088fc8b4baf21cf8bf1e61adbf5998d22a396771a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/haproxy@sha256:c9418b64ec427449bb42ffc4f24850b355ec6bbcceddae5515401fca0ec97d3c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/haproxy@sha256:1b498f1a2ac03f9b55b57941b5ed10608cb0f418fed33b16716f489dcb2f12d3
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/haproxy@sha256:818001be92ccd2279f464cfd03636c4b2eaae73d157bdaa2d38c83d7551b5015
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/haproxy@sha256:4dbeb3f665731896ba3f6b44e5acdbcbd5d0c14eed8a5455534b29c9007509f5
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/haproxy@sha256:952ad8bd3eeab89706debd685aa432385a383f940364bbf496625160dbd37de7
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/haproxy@sha256:c534e0cfbf590db11a35870e446b78924483916abf942f46ef2322cc3dbc09dd
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/haproxy@sha256:49f83f29407637a3414f6b2a828c75cc3fc868600763ff5b3ca52dcd012187d6
SPDX SBOMhttps://spdx.dev/Documentdhi.io/haproxy@sha256:7d3a8c1a7710c6ab7bb75210edb79d00b254d892acd598f5e2b5b7807806a651