Sign inSign up
Azul Platform Prime

dhi.io/azul

Azul Platform Prime 21.x

CIS
linux/amd64
debian 13
Tags:

21-jdk-zulu, 21-jdk-zulu-debian, 21-jdk-zulu-debian13

Index digest:

sha256:70c6b03f134f1687d517004031fa8fe69bffe246ae321a8239ccf54c6737f861

Manifest digest:

sha256:bafcf18477284e8524bd7fdd80103f7cd5c639cc7b47d4647a82bdcc9c96c943

Size

138.45 MB

Last pushed

10 hours ago

Vulnerabilities

0
1
0
7
0

Support

Active until Sep 2031

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/azul:21-jdk-zulu

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/azul:21-jdk-zulu --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/azul@sha256:9f0314e1d26717a1ddb2b9599b994f8c006b26404d302a70e2e650bffd3eec31
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/azul@sha256:98805be3a3963280bf07bba58cef10048095835c68994db427321f122aef0a00
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/azul@sha256:664254ee542bf6f0f96247169c191a5322885f08cfe89d7117e9575a6af6a658
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/azul@sha256:7753486ae34f3bb8c2f2ab3ad24bc44fbeadb0424285491451cff7600fb1851f
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/azul@sha256:23488e8f126b398ee8ca0d3bfa802ca4d7c8cae74d0ff40c635f6934ca6aba0a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/azul@sha256:fc7b03442882f7a3bdf4b65522f60bcec83d2e8a4d7281d859c007a6e88f6448
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/azul@sha256:4663e9bc900729c30b6da8e682e517d97acabb2dd4164a3aeb2d7b107ee76178
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/azul@sha256:0a25c2579cac5b88bb34aec556d21eed482f34f1de9f07409c512c376715c156
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/azul@sha256:a46ca6f2fc643b7d3f1715c49a3182d12a89d0da61f0a3507316a4e2624ef510
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/azul@sha256:6f70a88e94b20533c6ee98bcaa2cf6dc9e5a70c8d24bc90052db2362f0fdb498
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/azul@sha256:b879ee9473f4a6be9068807a5dbb07cc7bb045003ca1a666f264717267060f4a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/azul@sha256:3aed3e6b1d78af47838de3b70a1a5e90c576062d843a46bfd82f407babadc247
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/azul@sha256:0409c228060e2e59461b4de91a53719178811890231864ac7d8465f6b238f4fc
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/azul@sha256:840f3b889c83b3dccf48736bb704e164174e184c2303f7e1a6a795db8f0034e4
SPDX SBOMhttps://spdx.dev/Documentdhi.io/azul@sha256:40ee0838600af69ec7b7193d2062d10fe0cb31c63e0b946641c734f297af222c