Sign inSign up
Azul Platform Prime

dhi.io/azul

Azul Platform Prime 17.x

CIS
linux/amd64
debian 13
Tags:

17-jdk-prime, 17-jdk-prime-debian, 17-jdk-prime-debian13

Index digest:

sha256:2235a0800efd67f6dde3a57617f03da75ab11ce1a6a6ae2247c2ca4ff1ea75b2

Manifest digest:

sha256:e8ed36c1b01d12932d099bcfb15640824257a475b1bfc0b7085ad858c96a8895

Size

289.35 MB

Last pushed

24 hours ago

Vulnerabilities

0
1
0
7
0

Support

Active until Sep 2029

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/azul:17-jdk-prime

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/azul:17-jdk-prime --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/azul@sha256:6f8f134309ca8d1885c815d82ceb6560bc9b434b330964dd082ba3327a30cef1
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/azul@sha256:38391210c45cf5018ee34b38e27fc5d8898163484e7d8a8ff6ee2f52f79f53af
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/azul@sha256:0bd2ac6826da434271d87e69f4c70b9d4870cded68b616fa7a2378292d26ded9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/azul@sha256:6d3f768f1b07d0a19d6a973bf3ed22f678b4435922ae9470129f578e4ed32b82
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/azul@sha256:73f4635b7d035f79db99acbcbcf6fe0d87e54c1e7561588d83bb21f784ec1f78
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/azul@sha256:8d508a38f76ca717838ce3f99e4f563afbc74af8ef093409eff66636df582d69
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/azul@sha256:e881062771bb1d243fe3fab85927c5dea581f469ecb7390abf6fd4fe63b69c92
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/azul@sha256:01966bd54d4a071eba9917a617ed941b048432ed1fbd0801e8a1a0cf6651b97b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/azul@sha256:a722c4ff1d79a09cf9bc496cfd9d1b6a95b0d4bfd488a7ed22c27f03101d930b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/azul@sha256:c08634daef46cb5607badae15c28b8c539ee7a8facb0a575e661533fbef9275b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/azul@sha256:799da1119c58a365f24f8dfd71efb0e04fe8cca54fc7a5964c46c0d7d319c9a8
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/azul@sha256:4acee1a600d533cc7feebfe58deba0ccacd88f6e6393a65f93bf142240f179f9
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/azul@sha256:f0620d97cb39bfa64323c708734d4e64405e31f8fc340eb2cd7a9ce43ac7166a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/azul@sha256:6302d123b5673bdf9bf522b53768bc6baf3fc278f3529f323cdd0364fef89f47
SPDX SBOMhttps://spdx.dev/Documentdhi.io/azul@sha256:a371890e87629557f67089ef77cb0fa447548820ce7938d77a2a2176acc11bc1