Sign inSign up
HAProxy

dhi.io/haproxy

HAProxy 3.4.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips-dev, 3-debian13-fips-dev, 3-fips-dev, 3.4-debian-fips-dev, 3.4-debian13-fips-dev, 3.4-fips-dev, 3.4.5-debian-fips-dev, 3.4.5-debian13-fips-dev, 3.4.5-fips-dev

Index digest:

sha256:8a2c4532f4fa1110f06260742e4a9ce7c8a54826866716e4716ff967c1038fe8

Manifest digest:

sha256:2159acf0f91e4dd2f96ed2d32e800d6b5fb418bd546f711407d8a4553d092cd5

Size

34.97 MB

Last pushed

12 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active until Apr 2031

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/haproxy:3-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/haproxy:3-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/haproxy@sha256:c02853ae4487a1bf8b54e49a7abf9ec849befd54b25f3e7ff966fa51ea21718b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/haproxy@sha256:b367155628da05de8545f99dad307db0cf90890d1e875ceece8ad388ab190e98
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/haproxy@sha256:718964fb69fb8a7f9177d899ef02f668581f36be8e7e20e5442649e6a54b248d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/haproxy@sha256:72312a1e2eb0cd6e512aef712bea904bddc367610a4c74b9e58ae58a9536eee0
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/haproxy@sha256:82546f9a95003c799600c065fc225294afe251e4a9834ca9560f107d680a27b8
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/haproxy@sha256:fd6c9fc04db6968a82218e1ddb8c8e27d4abd535b0926c537549f79860935c6a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/haproxy@sha256:56ca68af57999d015817f47b3a1a9d690d6af02beb643212bdec2b3b9b30d249
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/haproxy@sha256:5470bc1719dbc714f7eba430ecfc0b9a41169e79de0c4d94ea63ef99ccb05d60
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/haproxy@sha256:f04d04ed55c0e093326f92aa5829436c229db52f5fd1b5a1db3d9a2efc912640
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/haproxy@sha256:a614456c33ada8b743a55214d0f3293605f8c1743aae8c4f91b10cf7c943ed11
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/haproxy@sha256:b2227ab1661c3838999aca697379a60162f1f5c1db598c4bcb0267e1512dfee4
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/haproxy@sha256:503d7a5cd8d1e01ae004542ec935ca904d826a99fcc29b48164ea274e3fbe1c1
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/haproxy@sha256:fdb27f483dd8973627274e669c1ec7d6851d6928f9987c707b76d5a0367fe1a0
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/haproxy@sha256:15ae298652ed43ad552cd28c842416747ebd8309efc3b22b0077f4ee651ad95e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/haproxy@sha256:0ffd2ee9c8f11e2746ff26a2bef6c9535a547503da0aad8c67c229766c623283
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/haproxy@sha256:1af07729da88eb006ffd304de012a6329d8feb28f9da4dc7581e4e5bff159f97
SPDX SBOMhttps://spdx.dev/Documentdhi.io/haproxy@sha256:2b8b3a4b5cf7de3ce4b3dda64398deee5edee6ad4606074eb7c2c03a13e7ee40