Sign inSign up
Apache Solr

dhi.io/solr

Apache Solr 10.0.x

CIS
linux/amd64
debian 13
Tags:

10, 10-debian, 10-debian13, 10.0, 10.0-debian, 10.0-debian13, 10.0.0, 10.0.0-debian, 10.0.0-debian13

Index digest:

sha256:c3601efe263562b8b8038ac5426432a84055617ab4cd17b5dfca9a53222dd63c

Manifest digest:

sha256:71a8a93334ac6053e1005de5a39ce156de51f1e28601fa65ce2dca7ea8af06e5

Size

125.14 MB

Last pushed

3 hours ago

Vulnerabilities

0
6
0
10
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/solr:10

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/solr:10 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/solr@sha256:b51c716e5ffb3d4d2a35faba0d09c8dab0bc2bb72e9e47be74e707554df58f63
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/solr@sha256:fda198a86e4dd0377e020b7c76841c4de5e4cf855adacb7681f5f6b5ff712850
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/solr@sha256:c25f5bd1044b849abff91ccf8286a156bdba1603ef35bd1d062a65d582982494
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/solr@sha256:26d4516ef10a4639e108daf9e10fc2b245af5412053a8eadc324851c2899b047
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/solr@sha256:35dfffca8ec9e1175cfd08cfdd252bb58cde993aae79d9a1d2662fd536cfb751
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/solr@sha256:becc4945361ab0ebc5dac1a0b1c003ec7c21bca6bcaf554befb41f046b20141c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/solr@sha256:cdbeac013755c9998c431ef8a645680685cdbd96e461c9456f81ab1f37a91018
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/solr@sha256:bbc4b0d47d5112d8c76c6c66deac8ac19db3f7d1fda5fe93b3f6cbd99a21acad
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/solr@sha256:a2dd5e32686055635e6a1307280c58bc87eecc5f650c6d4de3d91c49a5b28cba
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/solr@sha256:926b8a0447acdd4d7b3c9d48b00807e2e57a55ef3743f56490de52b153b1b085
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/solr@sha256:c53f3b033a739a692b7b594da46c1638e49d8ba93a88fce933bd4d94f7381872
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/solr@sha256:1f061fae203c1c7db355880e8cbef422d52ceb3ffda172e18cf442f98f2cfa64
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/solr@sha256:1faaf747460951cbcad25d6f8d1e6b1869287c06c244c6fcb49bcd72713bfbe2
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/solr@sha256:884cbe802e060159ada549f927f3c9050f54ac6246bd46bdf219a9ff899506e2
SPDX SBOMhttps://spdx.dev/Documentdhi.io/solr@sha256:2b406a68dd0866b9735c5c665d98fb5f794e13d54561d37908953ea563099487