Sign inSign up
Eclipse Temurin

dhi.io/eclipse-temurin

Eclipse Temurin 11.x JDK (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

11-jdk-alpine3.23-fips-dev, 11.0-jdk-alpine3.23-fips-dev, 11.0.32-jdk-alpine3.23-fips-dev, 11.0.32.9-jdk-alpine3.23-fips-dev

Index digest:

sha256:4e85aafef229f0676aeae5bc72c8c3a6a3aeaff7fd734967260e22251299bd1c

Manifest digest:

sha256:f1f09baedbdd04de8c3bcafecd7ec1b32134a8dfff0aac78b1dcbbabd9f20396

Size

184.82 MB

Last pushed

16 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active until Oct 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eclipse-temurin:11-jdk-alpine3.23-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eclipse-temurin:11-jdk-alpine3.23-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eclipse-temurin@sha256:4eae3ef3f040a8e330b8643e94bf3b34c39cd0b51f58dbd441f2ea071f7d6ee5
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eclipse-temurin@sha256:3cb8d689d8f0eac331470d8505048b63dceef732dc14ec15cb89fc951a5dbbfb
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/eclipse-temurin@sha256:e0a103b8075e63417c02a3f162dc1dca00245db89c46ad5461bc5a5b8ca86b8f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eclipse-temurin@sha256:f4748f80dd4510d36819b7792e0b21ecab3b47f1befd97c1c67ea0f0e7af6011
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/eclipse-temurin@sha256:81aed3fcaed6a609ccfc92e77b3b51ed8a0001eddc7ad78f0b7e9905132e86fa
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eclipse-temurin@sha256:406afa423eb489ddd8c5a70716866460fe441438bf7208e82339e65eb0f4b547
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eclipse-temurin@sha256:adf34bab7611b8c887a6944725db058d3d7ecabe98acf38cc6297f8c47405263
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eclipse-temurin@sha256:0ef2c7da8890090b535564ac11144732df8ab1f982923651ee644e32b01f66ff
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eclipse-temurin@sha256:da4c8a65a76db4c03d316a3293a87a21228a053bfb833ad17f6c392ca3bdd46f
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eclipse-temurin@sha256:843d7a65544ace0e3cd3ee20cd16b51a6b6b1529ff8eab93cbbdced25869cf17
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eclipse-temurin@sha256:6dcb1c23bd09d6aaed0fab7f96bfc026ebcd52f9848bd5058cc9f6c0f7e8fbfb
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eclipse-temurin@sha256:dd4a670779cfa3009a3a8582da5d4b2c8bea36af5eb083b4fafd9afdbdfd2cd3
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eclipse-temurin@sha256:ccd1193968438235f5d236a8b9d60e8195f2413bce43589982959efdba60dc56
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eclipse-temurin@sha256:c21209409f3d630cad6487a80bda69527e965d34f0b4acf13763d84a3aa2887f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eclipse-temurin@sha256:c3a17ea11d335b8706a1aa49aefcbddc24bd104e52223b7ef9456703cb44bf12
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eclipse-temurin@sha256:af08dfbf7779e0265e7361a78dd3f3adb9f3b4c1b310f8b35f368d7b9af590af