Sign inSign up
Apache HTTP Server

dhi.io/httpd

Apache HTTP Server 2.4.x (dev)

CIS
linux/amd64
debian 13
Tags:

2-debian-dev, 2-debian13-dev, 2-dev, 2.4-debian-dev, 2.4-debian13-dev, 2.4-dev, 2.4.68-debian-dev, 2.4.68-debian13-dev, 2.4.68-dev

Index digest:

sha256:3f4a89100e1902c9b71009bcdda05d5220c6c57f511356227041611dab382fc9

Manifest digest:

sha256:c3500bce66731b854d6ac3dfebf1a0adc79b8b3a4c8e1befc0482a71b415d212

Size

24.84 MB

Last pushed

18 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/httpd:2-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/httpd:2-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/httpd@sha256:25ea543fb9362fa158c2abd31aefb6437d880cf517cfb633effe9a23b33c2e99
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/httpd@sha256:9e2702fabc0293ffdae530077718aa7fa48c3a31d6133388d8527ee6bc6ddfec
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/httpd@sha256:79d1a858fe101c691e2683686629cee17ea02de810886ac8bcdb23de6b4652b2
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/httpd@sha256:4df8050177ddd386b6750bd7b9227a02adcc454e1a956982e0cc78b8bbc5dcdb
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/httpd@sha256:6c14373e5fec8faa911230ca651a8217dda58d51290c72dd6970fc0840954ec8
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/httpd@sha256:e7af190e3ceb0e542e792b21834f3d0066544175091c09b8fd7c6f4c8a458b16
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/httpd@sha256:d20f49f99b49b18d74182ab649aff253ab4c708f8bdfc2cbce99395aac2ba1af
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/httpd@sha256:8970b5a2a202eb86d6ce3b8ff3e0b87dc42cd9bd08b475c5aea88971e0eec457
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/httpd@sha256:d31e29d3d7eca6fcb6bf1a305cc5ea65880f61a3e0648a5ad4a6d68d9b31899c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/httpd@sha256:128b152223f099190f0a606bc1a1c958ce3595dc5bca6357b530b7e7ce60e68d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/httpd@sha256:3e7e84b891d06e7c6c1f65042c3752fb51130df8a86ab2c78f51297cbf44b96c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/httpd@sha256:c03567a400959f1b1a19711745430e136ff69a1742f2876e6396d93482da8124
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/httpd@sha256:f786631e81d82b984037a60a8eed7427fceda8a5bdcc5816cd4bde36d2935eed
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/httpd@sha256:7765bc65a088fc4503f356054102d4a93fcf90176f1ae562da3518717ed3b824
SPDX SBOMhttps://spdx.dev/Documentdhi.io/httpd@sha256:3bb02107597c25be30319fd7dedabc1c68df7b8223958545baa542a3441f1266