Sign inSign up
Apache Solr

dhi.io/solr

Apache Solr 9.10.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

9-debian-fips-dev, 9-debian13-fips-dev, 9-fips-dev, 9.10-debian-fips-dev, 9.10-debian13-fips-dev, 9.10-fips-dev, 9.10.1-debian-fips-dev, 9.10.1-debian13-fips-dev, 9.10.1-fips-dev

Index digest:

sha256:6cfcbbe07220d5c76fab46e599189427a3cfd45a93f729543643b98e6cffa346

Manifest digest:

sha256:da242e1f3df3dfeece7313b737f703ee941ae3b51e4318e3f02925cfb96ebe97

Size

134.61 MB

Last pushed

13 hours ago

Vulnerabilities

0
10
2
14
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/solr:9-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/solr:9-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/solr@sha256:b7e142f99d3c6900d27388fae4ea6cf07a568469b431831908d6d0e78ad977c8
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/solr@sha256:6e0ee554bbda49ebad9830f7fbca2910792ad943f74523dd3421c4bec2dcaa1b
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/solr@sha256:127d1a1a1bf8044251579fdd4f75964c1bea09b76a155cbd6b626b9a304119d5
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/solr@sha256:ec57a2b476593a409b75d009a5668bb736d7a02f27a221ebe6a9e9fc2046dfa5
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/solr@sha256:980c7c24ff489847f67a63888553cedc9de57bae03be1d80d935b2c5b757c232
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/solr@sha256:3ebba1fe8d73ec932f4a2302c05ca5165f546ef21f929550a437baeebc9a7a13
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/solr@sha256:68f6a605d175478d379d731b1b4ba5b42506773d938b41b942d01f117c37f1d9
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/solr@sha256:fb4b638424ee013357fa556c7ff1412a06610ca69c4353b986517ef0dde0a7f6
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/solr@sha256:4313a3f700012ffc871e5d80a4748a220895fb711d8a344b836dc7d6b5a53ba6
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/solr@sha256:5e843472a8b64e3ab808a548ca169a41cdfc3db5ae4ad6dbf2ae9c3f8ffbf67c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/solr@sha256:7f1d040decfd6883ea67b80b0c3ef970fe1f5ed5f6510e85fc60e5695fedc9df
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/solr@sha256:3b1da9571303d623e00ddee82215537eb20e93674bde70df1e7256ee802fe255
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/solr@sha256:7433fcefc54b68b9a29b35034c58b3251d6a8d69f5f6c35f944ad1600e9c7493
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/solr@sha256:118c8826f82e8863a0f3c18fa0f72d3abfb7cfbeb74d3f29e8433ce8b4eac22a
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/solr@sha256:b5a285e744344cfc3c2792494e64024d60198968cc8b79f87bd0ba5a957fbcac
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/solr@sha256:4b3f51ec9b1d85dc9d36c4402d68d653a18f224c4ccc109b37143848aaeaeee8
SPDX SBOMhttps://spdx.dev/Documentdhi.io/solr@sha256:cab4f61e440311eda878ee6d8aea21ade8ca1d866015067e5fdccae0b785595f