Sign inSign up
Varnish Cache

dhi.io/varnish

Varnish Cache 9.0.x (dev)

CIS
linux/amd64
debian 13
Tags:

9-debian-dev, 9-debian13-dev, 9-dev, 9.0-debian-dev, 9.0-debian13-dev, 9.0-dev, 9.0.4-debian-dev, 9.0.4-debian13-dev, 9.0.4-dev

Index digest:

sha256:4bfcd6be1ab43e9577155edec7ad351c208613e220ba0c961063f79ca3b227cb

Manifest digest:

sha256:b1c7e75cddf68ea0700118ebe611ac67efa278ae98f3f3b9566e7179ccae9002

Size

85.09 MB

Last pushed

17 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active until Mar 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/varnish:9-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/varnish:9-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/varnish@sha256:ebddc700b2359cb19328db6b5dad430fe8913023d528cae9f75ba8ffce4ec650
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/varnish@sha256:1b4a0812132a4347e845b87de6333afa19a92624fec234bf6bbf9e71fe43e2d3
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/varnish@sha256:224f0665236e0de2afa331584e1ba65d6432791124c605e085cd9c89fea41ce2
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/varnish@sha256:cef00cbceabadc4711d628cdf9ae682057052eefe04a7680bc5e99948e1dfa16
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/varnish@sha256:98a32cd1a160f8fd311b7436e1e52389325463ab20ea40dba58527fa8bf30068
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/varnish@sha256:ddb4ce4fd35da117efe6fc3a5394a55ede4c1083782461db89e4109f9a799fd7
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/varnish@sha256:3db8e858079ff5f2a130c4b9860dffdd2298074fe5dee74475463fdedbb0a38d
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/varnish@sha256:05bc54eaddccca242520a75ffc485997e98fedec07d2b476cebbac4913796230
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/varnish@sha256:fe21204eec1e0b747b2ef428d1d5cebc75e207a54034279315df90e603ca1c28
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/varnish@sha256:2bfd13552e51144009de8b8ca4b56cedba2201b66911d5df508e7ed101d4ca6b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/varnish@sha256:efbd06cfde0b59d78a3e8baf305f176bdb694f5816228235c33ecd7e39926305
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/varnish@sha256:dd1f3b6c4c03960c7350c54bc856367fc5a25745c55fe8a4324734dd42e8d865
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/varnish@sha256:fed633fa856b3c3c850e4b7cf8d2e758c9cb35911d6e0a80311b1f070503036e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/varnish@sha256:a2af057efac3d6f63241abdd9752db8974e2c446cb3f751f4b40ca808f1bc174
SPDX SBOMhttps://spdx.dev/Documentdhi.io/varnish@sha256:37248b1d5c7db5813d035999f861e139e5b5bec6fe52acc3c2d989c3ab0673b5