Sign inSign up
Clojure

dhi.io/clojure

Clojure 1.12.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips, 1-debian13-fips, 1-fips, 1.12-debian-fips, 1.12-debian13-fips, 1.12-fips, 1.12.6-debian-fips, 1.12.6-debian13-fips, 1.12.6-fips

Index digest:

sha256:8937fbc3a8cb60d38e62ca500f4d29fcc7deb3fee143d66690ad657dfa352cbb

Manifest digest:

sha256:a344adde00c27ce9f3fa58e2e5158a3994b170e7a672b1ac9db868eb97542d55

Size

121.60 MB

Last pushed

23 hours ago

Vulnerabilities

0
1
3
10
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/clojure:1-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/clojure:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/clojure@sha256:aa6e74029cb000351e540799b984cd156b7dc76fa20adf044c826d037710167a
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/clojure@sha256:b362021abb6577c82e6a3750a5e8d2c7d44a2a21fc13df5e47be9cd86442f533
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/clojure@sha256:306b32eba252c32196f325c1e7129315159c632f146e8cc30344669932a72b35
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/clojure@sha256:51d0da7d1e90aa99687515a66eecb966c98105f323563881cc0243145c2a37a2
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/clojure@sha256:66416378c89eadba2311322f22a523a462746db551695d625c61dbff2ef467ef
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/clojure@sha256:8c63f0f6ac2fda0db28c1f72142e22bfc0cb0aae0d13950e818b033c207d7191
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/clojure@sha256:8f57988df59a75cd49068610a3fb8b706618950bbbccdde93362ab085764c677
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/clojure@sha256:ff513e172ba1ddd09481b1eee211aff4f96b57eb71b106d901085d9ccd9baa27
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/clojure@sha256:d553d4db57e99ac95080942cba4bee99a62c1f9dcccd2ef1d25a3e65f4a34e8c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/clojure@sha256:7d808c8be07c2ed9932acd7e1683306189dcf78ae798e0f9612de52c6813072e
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/clojure@sha256:b1955b1ee19422c14f541783ee8eb003e3d2165c8e75ea46d96136ba3cf12a69
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/clojure@sha256:ebcc6a7815509b0642db6b763e1662f2e6713b676dcea23b7656aa61bdbe3286
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/clojure@sha256:9b1a648391c667eba1832f64895e3a5cb6a8502354c6e05fd199a51416fed3e4
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/clojure@sha256:27e4d06f2fac5355d9bd91feef6ddfa32a758cc60a59d6de76f94283a6ef03bb
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/clojure@sha256:3e4463a34a396a40bd1036ce353b25b0240690ed76e2b48b32a38c8aa7072fba
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/clojure@sha256:26c168cc4e01cdfe003d70015f6404010f27f2484cb494f1522e7495b28d515a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/clojure@sha256:b908e25afa2ae8601344e4ed4b1d39f5e51ea43bde79df05876fa47a0e14258b