Sign inSign up
Apache Solr

dhi.io/solr

Apache Solr 10.0.x (dev)

CIS
linux/amd64
debian 13
Tags:

10-debian-dev, 10-debian13-dev, 10-dev, 10.0-debian-dev, 10.0-debian13-dev, 10.0-dev, 10.0.0-debian-dev, 10.0.0-debian13-dev, 10.0.0-dev

Index digest:

sha256:1a0944028458741d535d2633d24986487fcbd6cfe18287cf8eab90668f35bd95

Manifest digest:

sha256:6b2b52e1ea73baae2f2f1a256f2997702af35577feb123058daf81d8034a4914

Size

135.21 MB

Last pushed

9 hours ago

Vulnerabilities

0
5
0
7
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/solr:10-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/solr:10-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/solr@sha256:3908780808b478174eb9b412f86c6e2ce57ff75849b9ee995b7c916993f16334
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/solr@sha256:0793fa53c2c38921390237fb8fb49272fe96c8bd44d60091159680573a2419a8
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/solr@sha256:3d1574f6b89d5834d38a2af26de24f47d197aef37c22f0d1f95b7b645cc986e5
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/solr@sha256:6ca42ca273f0f18bacb37b7025ba61b58ee3420efb11bf830f87b5e96085de9e
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/solr@sha256:b662bb5c3e714ef68a8bb5c96a1f851cd6cc663dcab2fcb31b94750de69a6916
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/solr@sha256:cc0df186ae335e20463bc1c75146d0999e78b4aeb03419b18eb45bad1b6c46b8
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/solr@sha256:32c7318bac4f7b5265aecc362a5d5f30151bdbe2b04f21045a77385c6f7b5211
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/solr@sha256:9c25e6eac787db531b5abf802f6149b65a0ee976e79ae7eded54f28ce8ff8305
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/solr@sha256:70a1e07583d24f535fb6dc3da5d7fd950aa796c17d145666d36a3d481b85e1bb
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/solr@sha256:3539805d2d31ce425183d9ae8610152b21195991564f0f8942fe3d5eba563df2
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/solr@sha256:7834250d299b88802f85e71f8ad534129a411d346f36e58aba39201b24908a62
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/solr@sha256:e153777288ee6845e6f5beef76b0bba71c352b1f0fe6fa34d71351ffbd560456
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/solr@sha256:6256759302e26416b0f7e5c40159517cd846e1fb3c6f090b815b4fcbdde3645d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/solr@sha256:30a112f0624d1ca12670f142180df3b50ce649dc78fef49385c3a476d6d82965
SPDX SBOMhttps://spdx.dev/Documentdhi.io/solr@sha256:a540cc76583e97fc1d7fd90f1af90d6476504a3f0b03a50aaa14a20099b60193