Sign inSign up
Cert-manager-webhook

dhi.io/cert-manager-webhook

cert-manager webhook 1.21.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.21-debian-dev, 1.21-debian13-dev, 1.21-dev, 1.21.2-debian-dev, 1.21.2-debian13-dev, 1.21.2-dev

Index digest:

sha256:c083a577532032eb0a2fa61afcff6dd73711479066bf38530ab282249c272b53

Manifest digest:

sha256:9ea056f18c3531426bf9ba33905d1ca55ee5ecc2f9a51744dbf3fdb89d29626e

Size

55.88 MB

Last pushed

17 hours ago

Vulnerabilities

0
1
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/cert-manager-webhook:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/cert-manager-webhook:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/cert-manager-webhook@sha256:9a5635053bba0f43c6315e3ec450c7cd8a58201c5569fb8c1f31bdaf1a3f0c2d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/cert-manager-webhook@sha256:675186e336d75c6afaa2102dfd2c44e98be202b4edd6cbc0b6e9d67a05f63cdc
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/cert-manager-webhook@sha256:a3c78dd46aa4c2afa1bd54b9a911759fc67efe5ff33339b7e719fc6871ef8846
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/cert-manager-webhook@sha256:f263b9be369c173822811bd7ff62adf9628f42d5df796f592906fc3d365e6afc
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/cert-manager-webhook@sha256:ecc1ff377da3d58c360063c54e980cc4a248dd8c9bd22d7cdf661ffeb6bd8f21
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/cert-manager-webhook@sha256:01422e900e4739213941e33aa61754c3c544dd3fd7cf803647b9eba2959220d7
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/cert-manager-webhook@sha256:051a210864ec0aa23e671b57d7de7da3f1a3045a5f94457b0eefb603a6162f0e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/cert-manager-webhook@sha256:d18a2c692dc844abf7195be745d959697fef7739ae4f8d5703c8673d2dd018c6
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/cert-manager-webhook@sha256:746a53fe9b213e8893a6208490d31de16da48b0ee7600dfbf6eb189b77d6e456
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/cert-manager-webhook@sha256:5146c96fa929315fddc970f391a7154bf931f0d512ee684defaab441f000a31d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/cert-manager-webhook@sha256:40eb30ee0bfab78a397abd5b34a8a87253b209521d97c0217fa22c9ed6f8953c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/cert-manager-webhook@sha256:226ea00354a50650127be5f6df1cea339cf97bf405b8697da12cde5154fb6b02
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/cert-manager-webhook@sha256:aa4cee2ff85b3e1f57793f5a918860fb7d29683c4478bfa6ecb347095848b0e3
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/cert-manager-webhook@sha256:49f115b39b0bba9a79af70808d713abc960879d688f91324b98cb98e450400b6
SPDX SBOMhttps://spdx.dev/Documentdhi.io/cert-manager-webhook@sha256:11bd8e6e9511e6204ecff599c4fc087b309ce2583a76fb9e00de352961d64e58