Sign inSign up
Apache HTTP Server

dhi.io/httpd

Apache HTTP Server 2.4.x (dev)

CIS
linux/amd64
debian 13
Tags:

2-debian-dev, 2-debian13-dev, 2-dev, 2.4-debian-dev, 2.4-debian13-dev, 2.4-dev, 2.4.68-debian-dev, 2.4.68-debian13-dev, 2.4.68-dev

Index digest:

sha256:2494bdb0b4e454ed88e078d6c0b60e2d1680ea05cc9b8a5b5de548abdd136c99

Manifest digest:

sha256:5e1ae4061a1673653745ee1789d4e75fe6d0f4dce0d341b64fbe53c3ca344d74

Size

24.84 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/httpd:2-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/httpd:2-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/httpd@sha256:2c339bf9853fc817dfcf6bcca7d6429b8b546e9bbb381713f22e0b4ddcc6f9e7
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/httpd@sha256:248fb1667da202b6490b94ce224fb7a3fd207c891dbc805195b769ea9e9de7b8
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/httpd@sha256:976af6ca43fc216b21e39641167c8ec8bbd910043536f18c4673b350b4ad1555
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/httpd@sha256:36684614bb635072db8c4b540e4a615730133e36f2d7c9716b47a70ee5fdafb3
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/httpd@sha256:a8784f63f834394f37ea12d0a4232164fb81cc0311bca52dd98b239faedd2830
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/httpd@sha256:36cee869ceee068c213e5ceb4bcd3a02367a948ce41c714a1accfae085a76cee
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/httpd@sha256:04fa1b0ef77d2550633cfe296d9b978eae8eac2d1eb663c24ffae9049b3d7634
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/httpd@sha256:d7181d7b7261baecbec482dd4733fa869531a1df87e23eeaa6da0a1e3e12792f
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/httpd@sha256:8ff4b365d41ca5ad5cdf0eae767272f947966e7321b486328f33f8429f9a4406
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/httpd@sha256:786015fc954b230cfb57257033a48558801892d3c4bb5ef65e904dcbd8bc9d1b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/httpd@sha256:1cf7d5a97963538e354476a1dec13fe4d9a7a5e2d4183a3d71695aed68a5a5f4
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/httpd@sha256:c44b8530e483c76cb32d47faf0b77cb6350cf1b2d7b397373d451180dedd2d87
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/httpd@sha256:dfa4c0ceab98b1b06186bdaccd7200ecc450414f57fe47e116311e934571a9e7
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/httpd@sha256:8d6ce45acf5b32eddb282d728e18193eb2152d2c4ce2da7611cdab86de48d717
SPDX SBOMhttps://spdx.dev/Documentdhi.io/httpd@sha256:4a7cf3fd7085b331ddd3cd7615e8127fc3f1168fce46dad8c22f9a8683aff8c5