Sign inSign up
Eclipse Temurin

dhi.io/eclipse-temurin

Eclipse Temurin 11.x JDK (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

11-jdk-alpine-fips-dev, 11-jdk-alpine3.24-fips-dev, 11.0-jdk-alpine-fips-dev, 11.0-jdk-alpine3.24-fips-dev, 11.0.32-jdk-alpine-fips-dev, 11.0.32-jdk-alpine3.24-fips-dev, 11.0.32.1-jdk-alpine-fips-dev, 11.0.32.1-jdk-alpine3.24-fips-dev

Index digest:

sha256:9dfd88cae6be80dc3bd4553710bac6e12a2d82d4f9336f322e1ca25b1a693f2e

Manifest digest:

sha256:f4bb4ab29ead1cf752a27a93524afaa1444c4965876c93e95cc82767fbb9cea5

Size

184.19 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
0
0

Support

Active until Oct 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eclipse-temurin:11-jdk-alpine-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eclipse-temurin:11-jdk-alpine-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eclipse-temurin@sha256:daf087b4fc5349743e2f35b7c2192f4ffb940a3ee68d706d280413a6e1d0318d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eclipse-temurin@sha256:bf49bf0685665200cf60345139a5830efc9a760ccc9680a77c24df064655d1c3
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/eclipse-temurin@sha256:7e0273fc6102f0324b9eddafbd9e6a3d50ec2f7838561833446cdc8549252ebc
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eclipse-temurin@sha256:d93bdacd010b26da77b5fc6e1f30845354212062bf94f36b0b28849c33ba52da
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/eclipse-temurin@sha256:1d2b12ec94f32fafdd57c2480b6c463fd269762f67849925995b23859f34a9af
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eclipse-temurin@sha256:20e4334e55f99ede46c809611210f645596bb03949f4fa5e2c0b5149eceb1eb5
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eclipse-temurin@sha256:1ac032a750fde3a3ac68715720b80fc56eaaa751b2d4046c5d080fb965cddb14
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eclipse-temurin@sha256:3e375406e15d9d03abd76e0a13e554058c35c8348d036e2fbd2742772bd0aa67
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eclipse-temurin@sha256:0057ef3a269f788edce6cea3b55e2072e8c9163de4133b962e1bbcb93b487251
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eclipse-temurin@sha256:ae7c5b215545a4f996a43d60a22c7adfcad97abb5093c73c291002e38e22005f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eclipse-temurin@sha256:948c98dc5f338b161e47585da6daf7a2304769583a4f373fd9ad89c02fe4a0de
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eclipse-temurin@sha256:19d00856b062149696af9e37800ed9dea8a1be8b9bd680774068fc84ca053216
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eclipse-temurin@sha256:d215e865c3f6e310bf06d972c4e5b3f91e0f8614be3edb7a7aa23262bcf72891
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eclipse-temurin@sha256:5a2e7cbfdf02452962a31060cc3941cc8d7d6d2bad77ad82a106e7b44b53d79b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eclipse-temurin@sha256:655fb6d22caa6182526b3ddd69a5b5462a2fef44023a1d69899bf6e68e0b1fff
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eclipse-temurin@sha256:0abfa23fd57fb6e03500dc061564ad555146e92e9b3a637da7c537ac37a004a7