Sign inSign up
Apache Solr

dhi.io/solr

Apache Solr 10.0.x

CIS
linux/amd64
debian 13
Tags:

10, 10-debian, 10-debian13, 10.0, 10.0-debian, 10.0-debian13, 10.0.0, 10.0.0-debian, 10.0.0-debian13

Index digest:

sha256:bb3b8bcb35d8303f456ff71996c51ba1d55e6c388a48c7022d64367b88143bea

Manifest digest:

sha256:24b6d26edc2241dd987db6e95fcdfd362868c0edb47c9cfbccdfff84ea547fe4

Size

125.13 MB

Last pushed

58 minutes ago

Vulnerabilities

0
1
0
9
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/solr:10

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/solr:10 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/solr@sha256:eeb1e8b1c516d97818fc789e6ca2391c2cfdf2df392029016d133e6cba69eada
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/solr@sha256:a0adc288b97ec06af78710236e26c076dedf8cb411fab177418c79728a79a73c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/solr@sha256:1a1c881ce2fcdc6633c908ba0835cf8e5e318c55bedde2a305371f765863ee14
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/solr@sha256:2de05bc66fbb2b97d8398dff810ea722d34214b0be4c85e21e8c6c6903f6aab8
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/solr@sha256:fcd9b9700689a42c103ccf068dab79b4838c47d9b7638d529b6fcaba5d28414c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/solr@sha256:cc7e0aee5113846f560fe148edb79a5d81f19b775e3f5725235201e4863d0a2e
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/solr@sha256:ec8ff12557f492cec2a1117498088ad05012a5bbae8bd75529f7342da9ef5077
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/solr@sha256:28390906a924412b7f8df1b76c190ae230889b6d68359c209d3bcb82e57b26ba
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/solr@sha256:baf1b665942cd989d62ce60abf123d2f61c7be5eaca79c2ddbb8cde804a326e9
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/solr@sha256:955de1d043a106ff1d3d36ff2721234e7cfc95b73ba6024c5d90618bb381794c
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/solr@sha256:d40b3926ad16bfb632e3b8b182b3529f51ea133a279cb2d9c31cef2ebb22bdd4
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/solr@sha256:eea743f00270ad0c50cb1fefeb60c8439d705c28dd8dbc7cdf4734f7ba612099
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/solr@sha256:7b122f134c5da7223d080b2cac92ce89af09e91f514044ab177a28de2d501dd4
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/solr@sha256:4f48a78610327c1c4c9d61109b577e351c0ca4767c6cd5dddc86c19d4e7ebe4c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/solr@sha256:1159d4bfbea8668bb252a46c3e62e079430b990b08f710a7a90dd3c79090440c