Sign inSign up
Kube Webhook Certgen

dhi.io/kube-webhook-certgen

Kube Webhook Certgen 1.x (fips)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

1-alpine3.23-fips, 1.8-alpine3.23-fips, 1.8.8-alpine3.23-fips

Index digest:

sha256:dfec58fafc07d8446fef73619c4e3812ca38c2a9a067c141586422904259be53

Manifest digest:

sha256:610e384cc3e66271f75b218a18ae7a499f53c0b812aa969cf7152c3b6dacbb69

Size

10.95 MB

Last pushed

3 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kube-webhook-certgen:1-alpine3.23-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kube-webhook-certgen:1-alpine3.23-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kube-webhook-certgen@sha256:d97fe01b17f661d5a6e3dd68c9b59afd906674e7ea99f4f85514ce0fc78dc856
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kube-webhook-certgen@sha256:21cc601a7d05425301268b08dc108358975b5d43a78ca0a945b491adab82dd7a
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/kube-webhook-certgen@sha256:7541badd156eae7344ed93cfe2e6c34617deefecafd3db09479c6ce0a40bf0c3
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kube-webhook-certgen@sha256:71b441f3051085d5a38e99f1207dc0350352eab7f2ce0e5459acc2db3a9a1b4d
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/kube-webhook-certgen@sha256:1426eb79aad1fccacd5b97c3327d694514e68317a47da94a6a0ee5c7c652b188
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kube-webhook-certgen@sha256:e29732d6b78cc5bbf265e53f0c9e1f58d5dffc707db6b418e4d79bbb6949bd02
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kube-webhook-certgen@sha256:cca4bcdff9af27b70501d9e3d5692751fd6273a779e9b71cb281382902f9f444
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kube-webhook-certgen@sha256:31aa1f81ffb13ff8a3d30e5d1b38289f264657c711af4d3850f47446909b14ce
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kube-webhook-certgen@sha256:57bd60fe93a01d09b89fe226be8b8e0b8dd5ac057ea22c9970f2d96cddbb5e63
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kube-webhook-certgen@sha256:a59d6763ef348bb5052bc49818aee116a13f6e1d6a2cb90954261806a51e675d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kube-webhook-certgen@sha256:cb5119bea5886215f9900c0fbd81002dce7cdc789f23e21458dfa441754b17bf
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kube-webhook-certgen@sha256:71ba2bd96ca938825539751f683c7829a726ca17b1f84373fbcc6a738535e7d9
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kube-webhook-certgen@sha256:141824f1844611775554ec6c96bde913dcdfcea6a78f6e0f58d4b2d977bd1445
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kube-webhook-certgen@sha256:f815362f7a87d87a403273e32a69a5f6b848d13bf749e950fddd765eaefa8860
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kube-webhook-certgen@sha256:921b54f8729ea7f7331319b2993094d5aaad2b9d5cfdb555c7cb920ac4987146
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kube-webhook-certgen@sha256:e770a00df3646e2b1ada52a3db6b9e4f26b91eb26584d563e52ec02c5fab6a5e