Sign inSign up
cert-manager-startupapicheck

dhi.io/cert-manager-startupapicheck

cert-manager startupapicheck 1.20.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.20-debian-fips-dev, 1.20-debian13-fips-dev, 1.20-fips-dev, 1.20.4-debian-fips-dev, 1.20.4-debian13-fips-dev, 1.20.4-fips-dev

Index digest:

sha256:c8c26c3a389d954ec43b2c5e9eb660eccde19194bae5bb357a717b879ff23f7e

Manifest digest:

sha256:b8794153b9c5f6da59a64b7bdb0bd3dd32f089f77c31bae63d4907d5b890ecb0

Size

46.61 MB

Last pushed

10 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/cert-manager-startupapicheck:1.20-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/cert-manager-startupapicheck:1.20-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/cert-manager-startupapicheck@sha256:8ede5a7a49e1c9456480532f16b39b04ab6e98317d0bd9e6435d063b449656c3
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/cert-manager-startupapicheck@sha256:b33fdc0fca9d792b6ebb5a63103a210bba9848518b53a8f5c3d1b7f6474e9185
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/cert-manager-startupapicheck@sha256:951fc5bab96d627baf2c29b739ab46fe60f4c68139994f164023af0e1269a04c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/cert-manager-startupapicheck@sha256:0068fd22125f9a6534c8bd4c25ee9cf67c6a9720e070cba7fc045954a319c04f
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/cert-manager-startupapicheck@sha256:a63619d7c0806cefdf83d89878fb71834f4ef6222e6702961cfdb3f705865db6
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/cert-manager-startupapicheck@sha256:80982d1f8ee71e7a29897b02225bf50b1e2e9e20343a80cb1770aa9b1f1b732c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/cert-manager-startupapicheck@sha256:7236ad88a5cb77fe468767dccb5ebfc67c887f55408e2b625a52fa7a419a8f2c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/cert-manager-startupapicheck@sha256:fbf78bbb3b546731d85f71e84d4ef684e276ec90427184176b1566473b33ac45
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/cert-manager-startupapicheck@sha256:f9da43f08b771a92544694dc5c4599edd4acab0220f6908ccc8f7d028e31db22
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/cert-manager-startupapicheck@sha256:c7fbb4b4a94fdb23cf08d0f24dbbc0220d2f23b976bf038f0c3109f6654322d8
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/cert-manager-startupapicheck@sha256:f889867430e19c7df62a0fe5d746d5dc629c9a2bc7d5961d52b0c3da33fb1af0
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/cert-manager-startupapicheck@sha256:b6f0a9e9fdc6d56a90ca1033ad975d44abaa6ffea4c79e82d45df8a8bd65e61b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/cert-manager-startupapicheck@sha256:136dd9a44de7cbec27fa3fb85267a3d89685cc3832228ed275d3cf29b2d11f1b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/cert-manager-startupapicheck@sha256:8e7b5ecc5d9cd28b9cb66161d0b39f6708c5774545a160928bdfca4dd461b705
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/cert-manager-startupapicheck@sha256:23d4ecd1e7e11649fa0bbddf50c66e25b6aa3805f1f6ef51b7490db5a9266bb7
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/cert-manager-startupapicheck@sha256:014d0856046f905ebac1e0be1c9f5d8506d1f2b54aa6e47f789c4c7f3ea319a2
SPDX SBOMhttps://spdx.dev/Documentdhi.io/cert-manager-startupapicheck@sha256:d020871e17f5cdee4a6363d4fdb169bee704d83b1aa440d4fc2d36504ab19751