Sign inSign up
OpenResty

dhi.io/openresty

OpenResty 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.31-debian-dev, 1.31-debian13-dev, 1.31-dev, 1.31.1.1-debian-dev, 1.31.1.1-debian13-dev, 1.31.1.1-dev

Index digest:

sha256:3aca2a432e64622709a803257a8997f1f5a77c9d7ceb5fc3dd3731a4e0e39967

Manifest digest:

sha256:bb30da3ab25fce8127e5f8ddf20d5bef26275ca1a1064351844cae14d1a75fb8

Size

33.78 MB

Last pushed

1 day ago

Vulnerabilities

0
1
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/openresty:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/openresty:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/openresty@sha256:3236f0f43921046a41d74871a3469d230615fcb24cb3c20d1a36c944b6bde726
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/openresty@sha256:a4321909f00c69b45c72a99c4bd5c6349d7630a81990881fe48991bf35162796
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/openresty@sha256:cc7ded8b3903c4f1e29cff1247d335759bc777efaab888740d823d60775eaca8
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/openresty@sha256:75bd56d3e17c93460d2aa2f8c642ffbe39dde2ac4986345545fc3efc6b7310ed
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/openresty@sha256:a7b560e00f2e84a10f5f28adad4b662278498c11f7fb45d6187e673b8e44b8c7
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/openresty@sha256:cc295cf5187327e4bce1ddccd3a15c4e616c47b2d65c1311bb5f4ee8a91a7d0d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/openresty@sha256:3dd4c972bf25c39d98716256508c0eda1ca71c14eae126f839d08a3cb0bcc4b5
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/openresty@sha256:707cb6f7763622f2847380824806c44b359921073c487c61fffabe3b79a650ff
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/openresty@sha256:21d08bb1e6bfdb09600536539ed18c12d5c89d1f914caa75779f26d0b16a0f73
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/openresty@sha256:c2d825f0b5f6bb15ad4a778a9a333d91d8662969829f4fd083c663b148e69bbc
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/openresty@sha256:6409ec35ec108ba3f62db95280a485d0f35bba02d395ce8f223493f538db21e6
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/openresty@sha256:0a21b61b1467b4db867021922101a387ea29e73c0d55d21ce6ec2aa013b1b7de
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/openresty@sha256:f2ce9235c67f506f5709c0d6d078e2b6de71bcb2e1fa7370d6e24322ca5ae3d3
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/openresty@sha256:1f828c00459123836aaf573f9f72e71ff8a92ecf4faaef56667588bae473eff8
SPDX SBOMhttps://spdx.dev/Documentdhi.io/openresty@sha256:c12e7d99783246c6ffabdfb3748149ec5900191635d91045c4144a5f4748bfd0