Sign inSign up
Clojure

dhi.io/clojure

Clojure 1.12.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips, 1-debian13-fips, 1-fips, 1.12-debian-fips, 1.12-debian13-fips, 1.12-fips, 1.12.6-debian-fips, 1.12.6-debian13-fips, 1.12.6-fips

Index digest:

sha256:e82ef7022d9c7a1f0fdc60e1df4e5046087301e0d70e92b4ef5d10a8ca0f2bf5

Manifest digest:

sha256:278fdbcddf8e1f6e33a8d5de42e1124c04b0ee1cc564092ab88633090672733f

Size

122.26 MB

Last pushed

11 hours ago

Vulnerabilities

0
0
1
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/clojure:1-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/clojure:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/clojure@sha256:6b51570160aba6a403e3be3cd8cb7d2250888f605d316eb40e8de990006ce582
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/clojure@sha256:306b90db62ea601c275169154b83891d23a2ae1d4fc739f1f60a5133a03e0e4e
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/clojure@sha256:7bdacb01b687ec9767b1a8a7d6fbc0683d6462e913c21a6b92723ddb0cfee713
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/clojure@sha256:590272923ba4123a2171e9601df96b13a0285e7628914d375f93833917a476e3
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/clojure@sha256:c254fd872ef5e10854365ad352f0f165ab1936591f5dbde2e65baffdca724b67
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/clojure@sha256:e87097ae3f9d25763beac83f6312a14c31d2aecdf2e5b311d6187407ea6afa44
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/clojure@sha256:d4822d9f774c50c80c3615507c33232443e504bcabb6ef2483b299e86750b7f7
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/clojure@sha256:27527b6f9d183f51ed16fa62e57f4fc42fefc2436c67d5548db03b182191092e
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/clojure@sha256:250c2a76ff17e63a251c6e15c1838f2ac09fb3f22beab8f76c344ecf11c9d65d
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/clojure@sha256:9f0d0aa708c79663c120c2f0936b8875b04fe310322c1d0ccee8082efdd08ede
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/clojure@sha256:1710d291996015dbd36134511573acb4a5af9d8c9c5331b2f0d4b1c471bd12d5
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/clojure@sha256:24c1c4c9a716e02d9ff9bbab2b2554923c986d0378ce20dc0bbf1c1642b07830
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/clojure@sha256:53705942d78c1d25eea8c131f7f8c843480050addfb34ff8e34d693c8d0f7587
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/clojure@sha256:77d4e41a2dbee8c3d1a15869872cef162ab7b1177e55a0a1a0f6994077b367ed
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/clojure@sha256:90145cc296c993d68a63feefd289c436307680469ffdb254a14239f0a88983d4
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/clojure@sha256:ce497deebf82701c73d3bf6501bef46107bd6be1473a64a4f4b7c6314beece16
SPDX SBOMhttps://spdx.dev/Documentdhi.io/clojure@sha256:ddc04c2be5591e6b2ddd538bae7bb85ff101bd9eae89ed9212987d03c8586d67