Sign inSign up
Keycloak

dhi.io/keycloak

Keycloak 26.x

CIS
linux/amd64
debian 13
Tags:

26, 26-debian, 26-debian13, 26.7, 26.7-debian, 26.7-debian13, 26.7.3, 26.7.3-debian, 26.7.3-debian13

Index digest:

sha256:a7a854d5f74467af5f91ccdb933875582595197b60b5c99347461c8cbd84f278

Manifest digest:

sha256:53001b4a98c552a2a6ef883759caaf77869233f6710e48387a686603f63ede66

Size

213.43 MB

Last pushed

10 hours ago

Vulnerabilities

0
0
2
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/keycloak:26

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/keycloak:26 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/keycloak@sha256:46daf3823d2ebfcf74d46badee0c042d80725cd4aa4c649e6a5377e72e6bb0c7
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/keycloak@sha256:cf8bf55d121dc3deff44c6bf35c0ce8e262a8c13326ec4785e1aaf95a55baf71
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/keycloak@sha256:ba4a5cd08cc004f50e6fbe278b481313a898ae5896935eb43bd3e62a8ae3d664
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/keycloak@sha256:fa85038e2a44496087999c18ec1755191ba65b26f4cb298611bce0a4e9df2ec3
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/keycloak@sha256:b1868a8e0d5578a8eadaaa7d41b4674065c18603f6443fa725a739357c5d4640
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/keycloak@sha256:904fb63a9ab743a7b83fa8d17b1d367e1979ff4b085848f9e5bd31e43a93c3cb
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/keycloak@sha256:fdeac83dcbe8cc457c644f8e55a26d92b11a20373e81902666965e10793eceab
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/keycloak@sha256:44a62e4c3ce4ce4849fe4c4c292ad52336bc12471e043373ca5bba5361d379f9
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/keycloak@sha256:07b813ded97aba58ec26a2cd1635aed85095a5457a903e766dd1d21e3321efc2
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/keycloak@sha256:a5a0cfe1bc7480697a5541241c6efa9fde6890b92cc059305e91b4eb9a0ab1b7
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/keycloak@sha256:7d3df511392e145048a57e61415fb93f5e7bad55be81a231b0d8cf4a5ddf2d3e
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/keycloak@sha256:fc26a7aa0e7273054d5746525a872ac96bf3317e181b310a42224f74baf9f780
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/keycloak@sha256:1dd19ddc289908e51a76aea2345960dfb36cfdfbf6ea510445ade987e85ac9a6
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/keycloak@sha256:59a3c91f740a328291887551ef78460c36b2a1f43f69c1d36e4015c9b634b8d7
SPDX SBOMhttps://spdx.dev/Documentdhi.io/keycloak@sha256:8c493874f2e873468cc911a1d7f96bf98b7f180e68e6db49256765dc1970a0a2