Sign inSign up
OAuth2 Proxy

dhi.io/oauth2-proxy

oauth2-proxy 7.15.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

7-debian-fips-dev, 7-debian13-fips-dev, 7-fips-dev, 7.15-debian-fips-dev, 7.15-debian13-fips-dev, 7.15-fips-dev, 7.15.4-debian-fips-dev, 7.15.4-debian13-fips-dev, 7.15.4-fips-dev

Index digest:

sha256:4136169c6e063ebc4f6200434e484d5745f5c19f459844d898a68eefa227b82f

Manifest digest:

sha256:678cec81ed9b14a9bb64f571d716081d8e040ffe01987760ff428e4ce1cc166f

Size

41.77 MB

Last pushed

13 hours ago

Vulnerabilities

0
1
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/oauth2-proxy:7-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/oauth2-proxy:7-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/oauth2-proxy@sha256:1b0798b84ba88ab95c1cca56061e47bbc8d465bdb3d553ebad6d8cc477e6b28a
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/oauth2-proxy@sha256:2b57bb00c5b4949d447df8b40853dedcb46a2356d7ef76e9559de573e4c26db0
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/oauth2-proxy@sha256:d1a4b141874372964026d4acf40649fc60a2d627e54905708f5a240a868a5c67
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/oauth2-proxy@sha256:b010ad8551516374f0f371db2713d6b35c07b1c89c79658f6dee60f2db9ae027
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/oauth2-proxy@sha256:d70a532e1c0611b0753ab62b3b03c9326630fc94785b94035f7992c92d3e3b37
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/oauth2-proxy@sha256:2fde3b2add0771a4c6465431bce9e57fd75c80a448b344f484092de6b02a7acf
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/oauth2-proxy@sha256:0687f96a146a54007f8b8774c9b6628c11e35597915edaf9d22244398532c1de
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/oauth2-proxy@sha256:f4bcf22c94ec358730043afbc568c211dbc444059fcc41c5f00bfea7fb17010f
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/oauth2-proxy@sha256:cc8b3b2b2d2df3aae22a6c51f5678b077d16a5a20b35696e2d221eee872a88b7
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/oauth2-proxy@sha256:95b8c95561d5cdf2425068e4b3dafac3743b73673f389f7a4036f0659bd73c64
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/oauth2-proxy@sha256:061256117d9215ee55861bc8e9d8ab7a3ec2cce780864dce1f17d003ad8842a9
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/oauth2-proxy@sha256:895af552eb2f7e50acf68ab1082814654edd7fe4d96777293eaa4b665dce2330
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/oauth2-proxy@sha256:a2ed0bb8c17b18ac9ef9361a3e315cc71494c75df69adcf7c9538bfa7c75d81c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/oauth2-proxy@sha256:c7d964c035e7b49bc98a8c9688f881e59743d7e984faae4e3dc33224c19132ec
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/oauth2-proxy@sha256:c563b8cabb060712441199e2e21b414b6fc30220554f05213ab1e421f1248606
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/oauth2-proxy@sha256:81b945c454e8efb273e4b7785d8d8f41d4bd5c40dbdbc322fbf8e0be8c7842ee
SPDX SBOMhttps://spdx.dev/Documentdhi.io/oauth2-proxy@sha256:da11c6ac1b4cdf73e9ab9888a6be3db0b89323f231bc1a75496a0eb53cedce76