Sign inSign up
HAProxy

dhi.io/haproxy

HAProxy 3.3.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3.3-debian-fips, 3.3-debian13-fips, 3.3-fips, 3.3.16-debian-fips, 3.3.16-debian13-fips, 3.3.16-fips

Index digest:

sha256:04da4a3a017ef7f46831128d61a69464db863a6363e6a1c8ed0941a8f9003be9

Manifest digest:

sha256:e8c3d9132b7ac883a00e0085e9a1c529ae9047e97f8ab18e9d741cebc55f8d6f

Size

19.70 MB

Last pushed

9 hours ago

Vulnerabilities

0
1
0
1
0

Support

Active until Jan 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/haproxy:3.3-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/haproxy:3.3-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/haproxy@sha256:5710993c16c5b074029dd37965686f82af78f55a99c623c108b898a3ca9bbbfc
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/haproxy@sha256:52d1cc6dfeaba8978bb0aab5f3beee414bce8530d7b8eb708195579e2aca22b3
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/haproxy@sha256:5c65b1b312847e697401ffa4cca1a0697c91aa3aaca790158c2496715806bc8a
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/haproxy@sha256:673f555b1edadef818c49271330ab8962c6b6988c975609a2eb19d4095b7c724
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/haproxy@sha256:7c68361c1d5e39697a471f46498232dff7775bf3d53f233e8b0c4bcf32cb5d62
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/haproxy@sha256:d77ae6031408879c59ce12c7aa2a1f607d885e7212f6aa0fdc662f10c47caed5
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/haproxy@sha256:3d233e844d4e272114357310e4e73f438fabeade449557583b6e0d70ff54729c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/haproxy@sha256:b08ab6dbb72d94a306dd5c95050302ec2aa743054b47df36e513e0b2165b67e2
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/haproxy@sha256:9e62191c6d1ba61e29c4e4b9fa7390bcf9553685b0abf9b86660e90041778f17
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/haproxy@sha256:c610a738c63f9b72a62c56f44368cb8aa092bf0cdb59e6e3cddf9ad7f2bdf0fc
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/haproxy@sha256:111abe5915737a71cb03943879b8a98e0350b8d210f9426eb0c0a79a963c2275
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/haproxy@sha256:6f444709a74aeafe127cda9132da92b06e959e19eccaaeaee7b1b1282b50c8e3
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/haproxy@sha256:bb18d77903da93c190574c02dbe3998d39cab56ccea2c9f8a875c1247c9f0fbb
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/haproxy@sha256:1888f76e9e5eb503c66de54e103ad2b52e3f0397ee7461402d5538b0567092ea
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/haproxy@sha256:74511e8cf6ed8e11f3d7f1e7c651827cf668bd92b005c3474e0a98a5e1e33b67
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/haproxy@sha256:5957f03118f368f688eba11918d8ee5f81ce8841a88fd350d09bea20bd8c73df
SPDX SBOMhttps://spdx.dev/Documentdhi.io/haproxy@sha256:e17b881f49171d6ce95009494c9cceee4a1b9215c1fd3d29f8ea9774703e8c76