dhi.io/httpd
2-debian-dev, 2-debian13-dev, 2-dev, 2.4-debian-dev, 2.4-debian13-dev, 2.4-dev, 2.4.68-debian-dev, 2.4.68-debian13-dev, 2.4.68-dev
sha256:2494bdb0b4e454ed88e078d6c0b60e2d1680ea05cc9b8a5b5de548abdd136c99
Manifest digest:sha256:5e1ae4061a1673653745ee1789d4e75fe6d0f4dce0d341b64fbe53c3ca344d74
Size
24.84 MB
Last pushed
1 day ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/httpd:2-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/httpd:2-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/httpd@sha256:2c339bf9853fc817dfcf6bcca7d6429b8b546e9bbb381713f22e0b4ddcc6f9e7 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/httpd@sha256:248fb1667da202b6490b94ce224fb7a3fd207c891dbc805195b769ea9e9de7b8 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/httpd@sha256:976af6ca43fc216b21e39641167c8ec8bbd910043536f18c4673b350b4ad1555 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/httpd@sha256:36684614bb635072db8c4b540e4a615730133e36f2d7c9716b47a70ee5fdafb3 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/httpd@sha256:a8784f63f834394f37ea12d0a4232164fb81cc0311bca52dd98b239faedd2830 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/httpd@sha256:36cee869ceee068c213e5ceb4bcd3a02367a948ce41c714a1accfae085a76cee |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/httpd@sha256:04fa1b0ef77d2550633cfe296d9b978eae8eac2d1eb663c24ffae9049b3d7634 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/httpd@sha256:d7181d7b7261baecbec482dd4733fa869531a1df87e23eeaa6da0a1e3e12792f |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/httpd@sha256:8ff4b365d41ca5ad5cdf0eae767272f947966e7321b486328f33f8429f9a4406 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/httpd@sha256:786015fc954b230cfb57257033a48558801892d3c4bb5ef65e904dcbd8bc9d1b |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/httpd@sha256:1cf7d5a97963538e354476a1dec13fe4d9a7a5e2d4183a3d71695aed68a5a5f4 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/httpd@sha256:c44b8530e483c76cb32d47faf0b77cb6350cf1b2d7b397373d451180dedd2d87 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/httpd@sha256:dfa4c0ceab98b1b06186bdaccd7200ecc450414f57fe47e116311e934571a9e7 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/httpd@sha256:8d6ce45acf5b32eddb282d728e18193eb2152d2c4ce2da7611cdab86de48d717 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/httpd@sha256:4a7cf3fd7085b331ddd3cd7615e8127fc3f1168fce46dad8c22f9a8683aff8c5 |