Sign inSign up
Eclipse Temurin

dhi.io/eclipse-temurin

Eclipse Temurin 11.x JDK (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

11-jdk-alpine-fips-dev, 11-jdk-alpine3.24-fips-dev, 11.0-jdk-alpine-fips-dev, 11.0-jdk-alpine3.24-fips-dev, 11.0.32-jdk-alpine-fips-dev, 11.0.32-jdk-alpine3.24-fips-dev, 11.0.32.9-jdk-alpine-fips-dev, 11.0.32.9-jdk-alpine3.24-fips-dev

Index digest:

sha256:5c3240f65ca721e39b4a13115b3a56781797e4b7586504e9e256bd382d4eb4a5

Manifest digest:

sha256:b28f6fb5467ee8b7b285edc362ccffd0c5fcef9c6cd1b4e00bd0e60cd4d0cfce

Size

184.85 MB

Last pushed

3 days ago

Vulnerabilities

1
3
0
0
0

Support

Active until Oct 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eclipse-temurin:11-jdk-alpine-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eclipse-temurin:11-jdk-alpine-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eclipse-temurin@sha256:413b348bd0bdbe266c4d9ba41c5208b1ceac24a96b3494e3a47e8b062012ff49
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eclipse-temurin@sha256:c6b4cc05eb4ec08bccb94e2a48fe23bfe9158fdbae68d6b83ad77ad8b73222a6
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/eclipse-temurin@sha256:b9e5deca0a486c6e8eecab3167609d938cf26321a5fe0620cd9c3d819d41d7c9
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eclipse-temurin@sha256:b1e0e4395150c3584e0c8756c3e9f394fa008c38f1c6c1cf59332efdfd34a3b3
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/eclipse-temurin@sha256:e9ea4a060616be579da34e8e12a9e3467dba160b9bc9987386b1a2e732b7aaf2
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eclipse-temurin@sha256:a16ba04de8511871359699cba1af3426905d9bd4f7db62b70925e0f590fba2cb
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eclipse-temurin@sha256:bb3ad217fc28179178d59894ffe39afc152039783f16e70be798e43ae15fc219
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eclipse-temurin@sha256:fd57cc9399beb7040c5a54c15ac7025ec626e2252279cf0259451acfbcfe193c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eclipse-temurin@sha256:18e96be340b616dece26c4ce74a3e651783c3be1a83661ceb4b46c5a98fe0be8
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eclipse-temurin@sha256:65b0d045395fb6b542e379dd9cd43a7b5e08609859c979d487da0b74dc5f1e83
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eclipse-temurin@sha256:4a4d2629e1ef52eae01359abdd3cfaf2bb4542c5219e10cdc923149336d99917
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eclipse-temurin@sha256:57dd6d758b02394b2f958f793284db1bd14b1b64547201e48de2d6464d9cc31a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eclipse-temurin@sha256:96364e8b21acaa148cd97fd0b23dc243effca3779db0494de0f0a80cf182c0f5
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eclipse-temurin@sha256:af8c49e7d5562e559da8c4dcdfa29e554a19ffbc433dda592bfe2a8f3c68c980
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eclipse-temurin@sha256:d64170a0d32682bfcfc6a6de3addbb5ccfea83d7395304bc07af1de63f397466
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eclipse-temurin@sha256:f50ca98d696d20c2832aeea40494b4d6fb86bd3599297607cbdcd20f39f66a2a