Sign inSign up
Eclipse Temurin

dhi.io/eclipse-temurin

Eclipse Temurin 8.x JDK (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

8-jdk-alpine-fips-dev, 8-jdk-alpine3.24-fips-dev, 8.504-jdk-alpine-fips-dev, 8.504-jdk-alpine3.24-fips-dev, 8.504.01-jdk-alpine-fips-dev, 8.504.01-jdk-alpine3.24-fips-dev

Index digest:

sha256:fc9b629dc3c31973edbcd2af86785bb18191b4f4a700ac69657dbca009f1faa5

Manifest digest:

sha256:582f5f57fd54ece456b8367d656dcd98cb117d3a082d25e942e37b6ecf8ed296

Size

102.49 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
0
0

Support

Active until Dec 2030

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eclipse-temurin:8-jdk-alpine-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eclipse-temurin:8-jdk-alpine-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eclipse-temurin@sha256:528758a77a025c450055717f1ec4b54525ea5e880c262ad17f137dd5382c78cd
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eclipse-temurin@sha256:2c7fa76e334176212ef26165ef4907394505a624af1839cb4c6733406a3d0e51
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/eclipse-temurin@sha256:24fbc807abc36d3146330711ab6137369ba61973d19600476f0a05bee28bbbd0
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eclipse-temurin@sha256:6dbf0091db1777d893c08d4365737251e1625cbe7ce13e713d4289c12aadc2f9
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/eclipse-temurin@sha256:a7245466d0b5f723aacab3846d92677bf3e87b3ce59ef01c00cd0c9c90b0e076
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eclipse-temurin@sha256:539c972a18dd9c9b4d77c36c3b1b5fae8edf38617ac167eb1053ae79ff9bb7fc
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eclipse-temurin@sha256:f76f3fa56f22e9bcf435e6ed8c2da67a7586363bff422f89a2b4035227a48ed9
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eclipse-temurin@sha256:b4e6cdd4911cb7fa45a43d222affe1cea94be0e739f3a9aa8564f035f3ab79fa
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eclipse-temurin@sha256:2c9ee54d7014d4964300a9853c68e90460479fd251a8a7cdca4b7b0440e5bfc5
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eclipse-temurin@sha256:fa8d2ff9c91b36a801164ca8d6575ebe67d4c77636c667646bc2ab7e16ef60f4
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eclipse-temurin@sha256:ad398fd72d716446ae4d5d350ea4d8dcd5e6cd69104f9c3e382bc6295b6c9f47
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eclipse-temurin@sha256:5fff857c082eaf8d917b977d4460217204b1a296d595f03c81554d9508db3fd1
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eclipse-temurin@sha256:65155b0e0a0014afa8602d8c800314a82d785fbb0505b01aef1b766b6101a739
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eclipse-temurin@sha256:20a598e60ea4c508b776d8874540d174f7fc25a9fb38b2595c7ede5abe7c8287
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eclipse-temurin@sha256:78fd7065703ff160d4b6fb2a887c8b9c98cc160bddfa8ad8cd737610e900ff03
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eclipse-temurin@sha256:05b178f0f6a88a4414926a228d496c2b67612870ec20646834ea3507a0b62fa8