Sign inSign up
Apache HTTP Server

dhi.io/httpd

Apache HTTP Server 2.4.x

CIS
linux/amd64
debian 13
Tags:

2, 2-debian, 2-debian13, 2.4, 2.4-debian, 2.4-debian13, 2.4.69, 2.4.69-debian, 2.4.69-debian13

Index digest:

sha256:f97265655af1d5b18a559dc118005bd223e4a00735a22db54afcddee2a52cf45

Manifest digest:

sha256:3e628f20431f97cd7d2a46ade6e389b65af46f7444f7a6a0caee83bc7d9048ae

Size

11.99 MB

Last pushed

19 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/httpd:2

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/httpd:2 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/httpd@sha256:eb1f57488c846058b9ed3218656f2ac2964390536e4c23c76484bf55e135dcd2
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/httpd@sha256:bc2ad80b836979ce71562df621865d690ea1a1ed455a7b8456a0ae7fe8af1f23
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/httpd@sha256:deb71782e10278136c9be0f881512a5802c3e4c93a68b90a298c463b19cb74c2
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/httpd@sha256:67e08aaf44aeb7d5aa180643d241266463c5ad55e9397191727a90f5e2d2ae90
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/httpd@sha256:42669935bdb7ed9c170415f9f3a4350f940182412180d6c920e394f006567b93
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/httpd@sha256:0a97157df249a4a11d3dc87e0b700f790366c0492a51572e8c394187cd3b3c75
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/httpd@sha256:365ecb28d4505b678cdbb6cfd08896663634457cdedef23f5d2a6f552ba90a4b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/httpd@sha256:fbee4ff1675d790172391120ceafbf91cd007adb43a3b09317e58a42ae965ad1
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/httpd@sha256:d8e9cb9fb9ae761f6af11f4dce7275e5f231202b712370c6974e9206a0835d18
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/httpd@sha256:acea47aa5092e14037adba9ac3839fa1bc632f32a199a3e5ce455d9b053acbaf
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/httpd@sha256:1683b0f939eef03404d7933fd0a5cc76773ffac6fa7c6932386c209fad3f0141
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/httpd@sha256:918d52e9abb2e8a383594265c87dbfe1c56fe58e8abb9a75f1b7990876e6a6a7
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/httpd@sha256:a72a5f3508641b7a092d0fcc1c3ac874d42ad76454da33d872741acb918ea259
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/httpd@sha256:c31f929c417b5473592c6adb90be13367c6e82ca33c8b67cc9883aa86f610e04
SPDX SBOMhttps://spdx.dev/Documentdhi.io/httpd@sha256:4e5e5a836386db0f3cf8d85d9acb2d0093b37ce91dd77a14ee06dcb60f22ac64