Sign inSign up
Apache Solr

dhi.io/solr

Apache Solr 10.0.x

CIS
linux/amd64
debian 13
Tags:

10, 10-debian, 10-debian13, 10.0, 10.0-debian, 10.0-debian13, 10.0.0, 10.0.0-debian, 10.0.0-debian13

Index digest:

sha256:073ca70daa9c426b1352450aedce24b2f9eb1b73b21466cfb7aad549f958f224

Manifest digest:

sha256:1e7d75f1579c01f972dd0069df96b67ef070c524b88e4e9f45077bde2cadc6ac

Size

125.13 MB

Last pushed

14 hours ago

Vulnerabilities

0
1
0
9
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/solr:10

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/solr:10 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/solr@sha256:8bc5015378514fed63f59a931e14961d482881535683cda10d0795e1b582d13f
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/solr@sha256:88f08819a6ceab409a54e0bfeba3a52ae19ef4362da5b942b72bcb6f81f326af
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/solr@sha256:15ed7a5b6d9a7cb4daaae67ddfff2081be49e169d1dea2676fad6bf2336237f4
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/solr@sha256:2615c43215f880f671aeb85200902784ec8184250c13e0463f3bf20ea1aa6d1a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/solr@sha256:55dba917346cedf79c318e2d0d1c758b9da2dbb3d6e420fac83b45514237717d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/solr@sha256:8a9d777cb1c7d04478311b6ef654f4427fc2e3197ea47a13381cc7968e0c57cc
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/solr@sha256:57a3aef7f62a05ad71d32e726021a43bc34a764ca4431b264ec26664ee9df5c0
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/solr@sha256:b44cd29849fadcf07fb9fa0224b0528a4ed4587ac97e1a9ac2f59c9d5f9e1a2b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/solr@sha256:d7e5aa58bcd0d1ec3598c16e248e795f63eba612a2105b872c4f366ff05c14d3
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/solr@sha256:43e17b7582fb5b6e8e30a14054ec43a00da1341f42ce44045cae16416d16da21
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/solr@sha256:986e5280762f515a0462e1e8dc5e5219615db761aae162dd3efdb5158ebf4140
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/solr@sha256:b43b3feca90bc91bdc19b727bc1fd006a63670d77927f374e444f6f159f063a8
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/solr@sha256:f32d333afc00c210fe6884bef2a3280ca613891b9da3b54cf5a36cfbbe731866
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/solr@sha256:72658c14f974987883c05bbe3c744cae0e884f1bce2560b7d45d05e5788c2858
SPDX SBOMhttps://spdx.dev/Documentdhi.io/solr@sha256:ba925658a42c0970c05d2dafd31363dd3ac3ec404c75b7b6695971bc45cf955a