Sign inSign up
Azul Platform Prime

dhi.io/azul

Azul Platform Prime 17.x

CIS
linux/amd64
debian 13
Tags:

17-jdk-prime, 17-jdk-prime-debian, 17-jdk-prime-debian13

Index digest:

sha256:2235a0800efd67f6dde3a57617f03da75ab11ce1a6a6ae2247c2ca4ff1ea75b2

Manifest digest:

sha256:e8ed36c1b01d12932d099bcfb15640824257a475b1bfc0b7085ad858c96a8895

Size

289.35 MB

Last pushed

4 days ago

Vulnerabilities

0
1
0
7
0

Support

Active until Sep 2029

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/azul:17-jdk-prime

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/azul:17-jdk-prime --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/azul@sha256:6f8f134309ca8d1885c815d82ceb6560bc9b434b330964dd082ba3327a30cef1
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/azul@sha256:38391210c45cf5018ee34b38e27fc5d8898163484e7d8a8ff6ee2f52f79f53af
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/azul@sha256:0bd2ac6826da434271d87e69f4c70b9d4870cded68b616fa7a2378292d26ded9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/azul@sha256:380a8a6f214acdf0c2e9fe20ffe9858922c01758171b3c50f121b2c824b17d5e
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/azul@sha256:fd890244e6bc40ff6b81ec87922f613ccd84e6f84d1e13360feb9b571910bb53
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/azul@sha256:8d508a38f76ca717838ce3f99e4f563afbc74af8ef093409eff66636df582d69
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/azul@sha256:e881062771bb1d243fe3fab85927c5dea581f469ecb7390abf6fd4fe63b69c92
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/azul@sha256:01966bd54d4a071eba9917a617ed941b048432ed1fbd0801e8a1a0cf6651b97b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/azul@sha256:a722c4ff1d79a09cf9bc496cfd9d1b6a95b0d4bfd488a7ed22c27f03101d930b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/azul@sha256:c08634daef46cb5607badae15c28b8c539ee7a8facb0a575e661533fbef9275b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/azul@sha256:93959935ac3fbf95b748d6106e8145bb5cae4c10fe78f4a5970c8974d248f085
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/azul@sha256:4acee1a600d533cc7feebfe58deba0ccacd88f6e6393a65f93bf142240f179f9
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/azul@sha256:f0620d97cb39bfa64323c708734d4e64405e31f8fc340eb2cd7a9ce43ac7166a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/azul@sha256:6302d123b5673bdf9bf522b53768bc6baf3fc278f3529f323cdd0364fef89f47
SPDX SBOMhttps://spdx.dev/Documentdhi.io/azul@sha256:a371890e87629557f67089ef77cb0fa447548820ce7938d77a2a2176acc11bc1