Sign inSign up
Kube Webhook Certgen

dhi.io/kube-webhook-certgen

Kube Webhook Certgen 1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

1-alpine3.23-fips-dev, 1.8-alpine3.23-fips-dev, 1.8.9-alpine3.23-fips-dev

Index digest:

sha256:244bfd38dd9ff942342c32b0c2631d526bff77e2f5b3be004bbcda1125c4b9a5

Manifest digest:

sha256:e496d8749fc6e50ac01ac0ec39a89859eb8889e664a5122d510829e8c5d870f7

Size

11.80 MB

Last pushed

9 hours ago

Vulnerabilities

1
3
0
0
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kube-webhook-certgen:1-alpine3.23-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kube-webhook-certgen:1-alpine3.23-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kube-webhook-certgen@sha256:872e00a18d01d148411d35371770fe9ddcd0b8b47d93058e4abec06bad487539
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kube-webhook-certgen@sha256:a0a4db3bcb7b16f89b4bad470850ab7b752433dc0e0f665d9dd4ee857182d9ee
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/kube-webhook-certgen@sha256:2989ec79cd4bb827f012c02f344e8f76061a88b48c07f5cb4d218c0f0854cb31
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kube-webhook-certgen@sha256:23d283c52c281be85b58d1728b4b22b73e08c913fca7b0e35b8654807d451bb0
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/kube-webhook-certgen@sha256:7de1cbe19348f4e5521d3aa4c28aec7ec0f8951db913d04d4d76515b30c6dfe5
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kube-webhook-certgen@sha256:fa04d2cf728152688e6662ceabca71d1c96cca3a5b9a8bc745bd6bc308e2179d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kube-webhook-certgen@sha256:fb88667f083748049c83e29af2a3e1a47c2a776d38a10dc5940664d5774290d1
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kube-webhook-certgen@sha256:69f76492e61a3c91c9ef4ec5fb7429c4873ee2b6120a443a75d380d63a8be94b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kube-webhook-certgen@sha256:9ee133c67435cf367ea18d15af7ad6bbd1879198056a85eddc0d490a46b6f0c0
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kube-webhook-certgen@sha256:5bc8680f1f28074a7a7f5b1cb3629d31a4131c965ea6dff9914431f5528f1e62
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kube-webhook-certgen@sha256:98c4c70c4473fe41d5cc84e2e09165bd1d212bfea64b630311681313157ac332
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kube-webhook-certgen@sha256:333dfd08cc1612a86f106e8deb196f28f62d137e398921eb170bbe82439e08dc
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kube-webhook-certgen@sha256:ce503453db4c71890059e08e2634713a37d69c0811526e5dae3278ffc595c11a
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kube-webhook-certgen@sha256:75cbe1e3b31bab93608df72c6d064ed3cabd79977af08b018f4b0ab2cd26d914
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kube-webhook-certgen@sha256:e811e2639cda6be5b0cff1dd59e0700d97a63b27c2e02c9d35b4d6b89f005901
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kube-webhook-certgen@sha256:b27498f8f221f451d0688e1da9c0dbbda86c01c3dbbd29aeefb53162342b0163