Sign inSign up
Apache Solr

dhi.io/solr

Apache Solr 10.0.x

CIS
linux/amd64
debian 13
Tags:

10, 10-debian, 10-debian13, 10.0, 10.0-debian, 10.0-debian13, 10.0.0, 10.0.0-debian, 10.0.0-debian13

Index digest:

sha256:0644048ae04f091b97897f4e4428cea45ca9a9b731110bb41aeabffac37200e6

Manifest digest:

sha256:82d89bdc764d989e9bb8bb6cb596fbfe03ffdcd0d494f323feb8cc809c4c16a0

Size

125.14 MB

Last pushed

11 hours ago

Vulnerabilities

0
4
0
10
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/solr:10

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/solr:10 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/solr@sha256:3e01be86911be1813d0c6f90b0c46789dd1dcfbe71623e1380448ab86cd541bd
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/solr@sha256:b7f38feb88ca1f056b8408fedd66b6e47e1e6a1b41cf264652c58a3a66bb3153
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/solr@sha256:6ba89594f35a2fffb9f7ae9e7febc4d30e83d9a0a708cd69a0d593423d5d74c1
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/solr@sha256:fb42b7a0c0029c06decbd63408712d3f0534fee8f8f3866a918176243516f476
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/solr@sha256:8ff75b8b01eb1de112fc969283dedd10d56a77b4b19bdd6ee26ec1ca86b0fa51
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/solr@sha256:2dc0b9d28106458067ad1ae6a8354a47e9919d72392e4df37e9e29837bb97774
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/solr@sha256:e9ed44c23e50a38488925b0416ec00da18630c16280162232d368282101d2b50
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/solr@sha256:deec87a24c3a7cad59d259bbc8033174e767c2894f92c32af5b0e79b7c95e1e9
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/solr@sha256:aad99ebf60dd038df83c432e72e24830eb3eb47ec8e520f397a9ee1a9bc4ef34
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/solr@sha256:202d1b70a823710fccd91e575672f5309154d4e34f33d1ff5fcc049379ca9ab0
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/solr@sha256:13d0561e4bf6576775ecef6b15b304d6351fa28593f463d115fbea3f8083d8b1
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/solr@sha256:ec553ec1fafa6b89925ef8927505ef1d3477ab7ca7ee93808fbe2d54448d04a4
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/solr@sha256:ac2188269d67576eb88c24351051795b900806b0ac410287077fabe7df9ac08c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/solr@sha256:6dcb99e31e0a7071f4dc169d79405dad1fb9f9ab1bf1da63065aae2fcd6fbb52
SPDX SBOMhttps://spdx.dev/Documentdhi.io/solr@sha256:e03c0ed98bfeb71c35fad50dab81f74c920412a6a60d599fcd408ee1c2377720