Sign inSign up
HTTP Echo

dhi.io/http-echo

HTTP Echo 1.0.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips-dev, 1-debian13-fips-dev, 1-fips-dev, 1.0-debian-fips-dev, 1.0-debian13-fips-dev, 1.0-fips-dev, 1.0.0-debian-fips-dev, 1.0.0-debian13-fips-dev, 1.0.0-fips-dev

Index digest:

sha256:9db551d912310cfd7f9873694bb1db347fe8a3828d4d57f1a6f9c7bc285a2fd8

Manifest digest:

sha256:3a3264740134b71dd1caab6e78fc7b78e23e06cfa90e53cc67b430e6abee8b7e

Size

28.24 MB

Last pushed

24 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/http-echo:1-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/http-echo:1-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/http-echo@sha256:3ef69bae2d659566cdac21aa85df48ddd7da4746967b4f6cdede4fcba58bb464
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/http-echo@sha256:df53d1056e887cdc3f7b483c3a9884a88df20027dd4d49801e03e8d4251b82fb
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/http-echo@sha256:bbaf3e3507fb0ee2b0efda0d2f9245aa0cd5ef3decdd8fb6c2a58d1896b13dcb
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/http-echo@sha256:42792f5c3a8006b339d0abd4b6d5674dc8f0feba27d912829cadd2985864689f
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/http-echo@sha256:81161440f3564bf958f5cc4c92c9f149af43fed4687d2968c48a79b4e9cc84eb
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/http-echo@sha256:44880980d3bf4a5a79d726c9fbe42fe7928d85184ae5a7857199edbf9110b353
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/http-echo@sha256:a2d7988d6affe59408562c48c2964ac29f49ea3b31a75147181de497d37f3777
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/http-echo@sha256:ed9ae391cd0b03b3cbbbaa1574e2ca039ba41044beed6f5df68c0e9fe498272e
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/http-echo@sha256:797c144c1c3d9c584919b1325e611692eca66a1ad12f04378e9bcddd17231ff1
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/http-echo@sha256:94f7e5d500195c8cdc0a3b567b58c3c58dabe0598c3cf67fedfa8d13e9006c67
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/http-echo@sha256:e3873b2c011baaddff4be3d88f27002c13d8e2bee74148ea7b9b3e7746530676
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/http-echo@sha256:731c00a080d7810459b477179a6954c803e95d40528682c615276050b81139bf
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/http-echo@sha256:f62ab543e11a0712842952b0866e66f51a1c3da256a0c57580f9ebfaa130b209
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/http-echo@sha256:b0e98d297be5c2b58c5d390ca5ddd0609e89a22e91626f345d55f6f5b0726f9c
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/http-echo@sha256:e565dd7fbdc65f4dad368516c4cacb2fc44ce3e9dade300a22d6ca55f71682ba
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/http-echo@sha256:9bf4c0751953b59ec457f13b1db343fe1ae6523f0e8d76a92c5fd1f44fdf79e4
SPDX SBOMhttps://spdx.dev/Documentdhi.io/http-echo@sha256:c4b09c4111a1b5c6bbd663fc1aaf9ef863b2d321b3aa0bb1de27a4c4f9d34092