Sign inSign up
Apache HTTP Server

dhi.io/httpd

Apache HTTP Server 2.4.x

CIS
linux/amd64
debian 13
Tags:

2, 2-debian, 2-debian13, 2.4, 2.4-debian, 2.4-debian13, 2.4.69, 2.4.69-debian, 2.4.69-debian13

Index digest:

sha256:a9337b9a80cadb4e5d3d89ca05e29dabfc93efb72cbac4898f7443d50e1b3eec

Manifest digest:

sha256:767181e266f8dee3514b0d13e8213fbb3d75cb996a50d55dbe21ba291e4c0a14

Size

12.00 MB

Last pushed

11 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/httpd:2

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/httpd:2 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/httpd@sha256:368b127f6642645326d0b4f1f39027530d5cf9dd20925114fb3f506e2d9ae9fe
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/httpd@sha256:a0766d81a9dfdd14dbd5020ecb22b0705644e165a6852ab493d0418354dde560
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/httpd@sha256:bcd87aa51ff3c0348f5ce342c3c052f845ef85b8f7b139cd89ab258506c61fee
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/httpd@sha256:06b59e739add919157b24e07d0f1689b65512dcf2506b22865421ca70294c272
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/httpd@sha256:2e80410d3637d6203fd5982ca7584d99c2fc47f7d0a5628f3b7e4e1ca9f6ec1b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/httpd@sha256:f3a986750e4f013e1ffabf86a44e89c0ebbf2ce9969ca492e180327408d9aff0
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/httpd@sha256:83a9f709e6a5dba837958d71e2b442cbc2dd6c14a5093b4964b4929a8b153365
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/httpd@sha256:e5a282ec38f15451435534af5a3b5e5ac71452eec9399831a4b15d7b04e5ccfc
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/httpd@sha256:d05e4c0e3d18f2e2deab48549b660f72248c71403cafc59225bbd9e361db3ee9
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/httpd@sha256:d30bd2d0ca2d62921764ba3eb62336f7a0b5ae2ac15759d1a6832247f3dfcd3b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/httpd@sha256:160f6e45ea06f8bc5b8108bb98adb28b749c633a91f16255914577defcf64cfa
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/httpd@sha256:8f3009a400a5591e9d42175622814ea4c38f0d448c75db50be66003df1e9cf2f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/httpd@sha256:9d7faa87f53041d9d904efd0f352f794e70b154b3afac254b3d8637999ff418d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/httpd@sha256:5265e0ef8345c683b61be0ec4ea5ba337ca8698a7ae34ac0dc9eb0b888f2f2e8
SPDX SBOMhttps://spdx.dev/Documentdhi.io/httpd@sha256:02636b61c548ff89893d91c4bde0eebb8d6d9c338830b5f2fa4702b516b262e1