Sign inSign up
Varnish Cache

dhi.io/varnish

Varnish Cache 8.0.x (dev)

CIS
linux/amd64
debian 13
Tags:

8-debian-dev, 8-debian13-dev, 8-dev, 8.0-debian-dev, 8.0-debian13-dev, 8.0-dev, 8.0.0-debian-dev, 8.0.0-debian13-dev, 8.0.0-dev

Index digest:

sha256:65ef689c10fc4bd5970a180765215c6fbf38cd44a48f7b29dd33bbfbc49a717e

Manifest digest:

sha256:dae534f889bd1ccd28118785dd9705ef1100a222e074b49174d5a5c4e5266c02

Size

84.82 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
2
0

Support

Ends Sep 2026

Request ELS

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/varnish:8-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/varnish:8-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/varnish@sha256:b68eb4681a3bc74ab9abd1199831c1461bc3c14196875ddacb4989e5f73523a0
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/varnish@sha256:5b715e5df8e46bb02e3feb65599dcdcb01d0bc6f1ee4dd150bfeaebd98aa4488
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/varnish@sha256:72dc4698e251c9a632bcc0b043a43a63e77fe676ae9733b978ca64f1d54ca78c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/varnish@sha256:a426c377014747f7a6da81a166a93c1a3b7efe99e56c7517eeb9b3be80bb3d93
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/varnish@sha256:544794df34090f5525d4ebcd01f795d797d78264cb6a5abd556096f18fe3ca59
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/varnish@sha256:4c6903b2f404770145853b033870a94c4d2c517dbfc4db632310bccd23869ab7
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/varnish@sha256:52c9a7d833772efd0ec911b50bb718d27ad5d5eb47916649ba4d3fe0bb43eb3a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/varnish@sha256:bea8184b0e8f065d052ae25b3541dc54fd17c3c9318220e722df527efea33958
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/varnish@sha256:ce50cefdb93c3bd1830269a3939f4dfb508a4c7b371e26d8b85eb6a079f2f57b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/varnish@sha256:18239e962d49fee8fda3d50afb4b313da0471efaab1d21d18a509dd1024bff28
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/varnish@sha256:87ef8c6b1c3036eabc6cdb8bbdc8c29472bc1557317e5bc51c9607ca193ae991
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/varnish@sha256:fd214016d71a73e96d93082ae4b18184244e279e269dc0a73b47b0da55f52cd1
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/varnish@sha256:3c1e907919b06e496af46c0d4d7bbf0785222d08a7ec07d07fc72030611d585a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/varnish@sha256:9f4d6440883bd38162faa0096f31d42e8c46939b52e0ed6d8a6bdfbbe62988bb
SPDX SBOMhttps://spdx.dev/Documentdhi.io/varnish@sha256:63207471f59e89e37cf4c76e02eeb821b227c14827c569fb032dfd9f50b55e4c