Sign inSign up
OAuth2 Proxy

dhi.io/oauth2-proxy

oauth2-proxy 7.15.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

7-debian-fips-dev, 7-debian13-fips-dev, 7-fips-dev, 7.15-debian-fips-dev, 7.15-debian13-fips-dev, 7.15-fips-dev, 7.15.5-debian-fips-dev, 7.15.5-debian13-fips-dev, 7.15.5-fips-dev

Index digest:

sha256:542eeac0c199dae83b9c0674a89d523992cea72735aa1efdcb3c2a0dbb913597

Manifest digest:

sha256:3e9357dafc57c66a21f2e9e364325e4b617696a538b2400dd93c696359d3ad45

Size

41.77 MB

Last pushed

24 hours ago

Vulnerabilities

0
0
0
1
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/oauth2-proxy:7-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/oauth2-proxy:7-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/oauth2-proxy@sha256:41c14d55c6b189c6226ce8f7860c3ab466b25c9cf669dd29b3153a57cbd02a33
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/oauth2-proxy@sha256:9318b9eec8055201142d1e0351882e1feb7e82206934bf999527fe09193cc768
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/oauth2-proxy@sha256:0bf60c9f33647caeaf8fc5dc84acb299e31a5c945b015d9ab0310c8ba3029a11
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/oauth2-proxy@sha256:382d19c9ce5d88e1d19c1ffca6d16764066e0e2f71cfe49aa656aaa180061f9e
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/oauth2-proxy@sha256:c1c196108a9daf12afc691e12e1ac54a4c0fe39188e05a6fee98ae90033accd2
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/oauth2-proxy@sha256:a2bf8cfc6fb844071d95eeae54259c7864a427964f1931dc522d167d8d128ff4
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/oauth2-proxy@sha256:0cfdc182eb224f3ea1b4415906b392debeeeed45fffa61efb00545b86ba4d797
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/oauth2-proxy@sha256:6796a25ea6f1139871e6e9cfe0b31d77de207554d3871b4d15260255ff87ed3e
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/oauth2-proxy@sha256:da79cc688f91115ce2b229ccb2f9bf53b44693040022a950f3b0ed513554cb7c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/oauth2-proxy@sha256:e7d4a729bb856dfa9d5ce25c4c1a9de33fddf4e16bfc5a5d52e0c180058f10cb
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/oauth2-proxy@sha256:c7bdfee192363008fdfb6d2d260f0a5af08bcf4bf97ac81423df21e0d9295ff7
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/oauth2-proxy@sha256:72bcb1e4cd7a0982699395ec0e99deec746e89f870d472650def149423d0387c
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/oauth2-proxy@sha256:c4062abdb089a4951623e0e4f92a87dd76a25281cc6768f72e0edc60e81821c9
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/oauth2-proxy@sha256:a8a9dc8e8e86b44ba5f37a3955c9425c5302aa10333a13ec74e64ce2568483c0
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/oauth2-proxy@sha256:e3b8f7957f682a517c97637443e0d51dab58f54b11ac02ad7ceac97d44bcf5cc
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/oauth2-proxy@sha256:80deacface26b87059ba4b1309c2d73a8fe4f2387caebf70b7dca343ba0be9c6
SPDX SBOMhttps://spdx.dev/Documentdhi.io/oauth2-proxy@sha256:7077a5630558a7292781686779855e11aab26bdc794cdc0db42e1406dd61c0dd