Sign inSign up
Keycloak

dhi.io/keycloak

Keycloak 26.x

CIS
linux/amd64
debian 13
Tags:

26, 26-debian, 26-debian13, 26.7, 26.7-debian, 26.7-debian13, 26.7.3, 26.7.3-debian, 26.7.3-debian13

Index digest:

sha256:d132d7b9c31cd687e6ddad2a8d30d2821c12a3ffa0d2085991b4ee23673fb27c

Manifest digest:

sha256:7108dc3459c4f057d10e7063aac7335d93556575ca65ce4177ab877bc49124af

Size

213.43 MB

Last pushed

17 hours ago

Vulnerabilities

0
0
2
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/keycloak:26

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/keycloak:26 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/keycloak@sha256:0e5c794887b2b0d5de12a68176ed7c8298d1dfe2ed97b01e01c7f6a652e04d49
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/keycloak@sha256:02fd6755f6bac2cf19686088ff33130041bb5b3ba3534d512b78be3ba55a89b2
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/keycloak@sha256:7c80e2834c890ce94e4968e99a81a03c05677c1654f49200a44ec82f0e417959
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/keycloak@sha256:c7721399be6e221955591263b05e4829c2136a8a0baec4bc3f646d1ca72043f2
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/keycloak@sha256:3ce4c2609f0f33ab831cd0204ed8194fa91e9ae497b4ff84a03e17343b5c1297
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/keycloak@sha256:28e9a880b568903ae6b2fd28c68e39c1054bbf9c14212045063e608c7ea10c6b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/keycloak@sha256:ebff23c9ef1d5b6067ce7cae83e9a0a64b43329a6226cdf6b10854c9a8a453d5
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/keycloak@sha256:47c6d87aa33cfe703898e4629a6fc3ac1e157386701f1c27218a0a60c4fc8492
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/keycloak@sha256:e2f417fff4288b215503a7d773079c44195bdabdf184a1169b69fe30597a8296
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/keycloak@sha256:60a3537a1b0abcaaf76cc80256be0129976d44fa08054bfdcc70e1bbbfb9a597
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/keycloak@sha256:73aec34c5894071216d6dbf8263c844d61ffdedce8721f86e18e39256d5a3e2a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/keycloak@sha256:ec357063eedd0031ec8a3f093c65c76b6d56d37ac690541eadb7847017a639a5
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/keycloak@sha256:ff981873aeec97d0fa21b8abd0f20065434c3f0bf2f6867911785574b3fee7aa
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/keycloak@sha256:bba7d4d8df9f42c882608a9db1699f252793bee52136b1ee883b27393a4b305f
SPDX SBOMhttps://spdx.dev/Documentdhi.io/keycloak@sha256:35caae433bce9d8157e64829c3e183d9b6a8c39173aecb353399e2ee9e1e6155