dhi.io/solr
10-debian-dev, 10-debian13-dev, 10-dev, 10.0-debian-dev, 10.0-debian13-dev, 10.0-dev, 10.0.0-debian-dev, 10.0.0-debian13-dev, 10.0.0-dev
sha256:1a0944028458741d535d2633d24986487fcbd6cfe18287cf8eab90668f35bd95
Manifest digest:sha256:6b2b52e1ea73baae2f2f1a256f2997702af35577feb123058daf81d8034a4914
Size
135.21 MB
Last pushed
9 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/solr:10-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/solr:10-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/solr@sha256:3908780808b478174eb9b412f86c6e2ce57ff75849b9ee995b7c916993f16334 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/solr@sha256:0793fa53c2c38921390237fb8fb49272fe96c8bd44d60091159680573a2419a8 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/solr@sha256:3d1574f6b89d5834d38a2af26de24f47d197aef37c22f0d1f95b7b645cc986e5 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/solr@sha256:6ca42ca273f0f18bacb37b7025ba61b58ee3420efb11bf830f87b5e96085de9e |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/solr@sha256:b662bb5c3e714ef68a8bb5c96a1f851cd6cc663dcab2fcb31b94750de69a6916 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/solr@sha256:cc0df186ae335e20463bc1c75146d0999e78b4aeb03419b18eb45bad1b6c46b8 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/solr@sha256:32c7318bac4f7b5265aecc362a5d5f30151bdbe2b04f21045a77385c6f7b5211 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/solr@sha256:9c25e6eac787db531b5abf802f6149b65a0ee976e79ae7eded54f28ce8ff8305 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/solr@sha256:70a1e07583d24f535fb6dc3da5d7fd950aa796c17d145666d36a3d481b85e1bb |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/solr@sha256:3539805d2d31ce425183d9ae8610152b21195991564f0f8942fe3d5eba563df2 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/solr@sha256:7834250d299b88802f85e71f8ad534129a411d346f36e58aba39201b24908a62 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/solr@sha256:e153777288ee6845e6f5beef76b0bba71c352b1f0fe6fa34d71351ffbd560456 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/solr@sha256:6256759302e26416b0f7e5c40159517cd846e1fb3c6f090b815b4fcbdde3645d |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/solr@sha256:30a112f0624d1ca12670f142180df3b50ce649dc78fef49385c3a476d6d82965 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/solr@sha256:a540cc76583e97fc1d7fd90f1af90d6476504a3f0b03a50aaa14a20099b60193 |