Sign inSign up
Cert-manager-webhook

dhi.io/cert-manager-webhook

cert-manager webhook 1.20.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.20-debian-dev, 1.20-debian13-dev, 1.20-dev, 1.20.4-debian-dev, 1.20.4-debian13-dev, 1.20.4-dev

Index digest:

sha256:22ab73ae257206f2f62267007f594a964026bd5f96fd075e28c3e781f798b2aa

Manifest digest:

sha256:79922b84b9ac44180f051e93cdd626439a85954104cc1742d5c628300cb85da9

Size

55.58 MB

Last pushed

21 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/cert-manager-webhook:1.20-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/cert-manager-webhook:1.20-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/cert-manager-webhook@sha256:be7d1fbe762aa985f26f9947f5edf77feabd46e88d7d99d0ce8dd1da1c35beae
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/cert-manager-webhook@sha256:616b7780e132583a43f557e0dad6b783d7f23492e16c45d63f6c7e362da4d802
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/cert-manager-webhook@sha256:fa377be171f14a844892eb1afb7ff6a3a55a520d24421f4d2be9ab36af5e6625
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/cert-manager-webhook@sha256:0e011eb21435a7fe1bd12c2c424db1da6daa62c2d3390b69e92618b9bdaed24a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/cert-manager-webhook@sha256:9dffbeccfca61e8b0928f8c0d9c2f2ff3d6d634524cc7639f1e1f6ed1a801d6f
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/cert-manager-webhook@sha256:37e041f5a577b50e2834266b273d21e4fd8457ee82bb06120d26418832ea2a9b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/cert-manager-webhook@sha256:a84a7dfbaad15e1b6ef570741a8be583e7e19c4fce929483f4ab6d9550fce732
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/cert-manager-webhook@sha256:8fd6ecf6a6a36f888a29aaa5e65a614c7963bce6136a30dd1807b835a521a0de
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/cert-manager-webhook@sha256:83582c25e3fabb1a3cc436559cd7b89ce64698b07358fbc6262c5b4ed02a308c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/cert-manager-webhook@sha256:d5898a50154a6b71decfa1be3833d03450444206468903de2344269b3b15ac35
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/cert-manager-webhook@sha256:851d71269ac99a94cdc4d681e3faac43b36d2b31146c8957f879946e671a2c74
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/cert-manager-webhook@sha256:8b89d18f9b056f56a86620c9a77c6b34ab8b8cb48fdb30ababde703f33504b12
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/cert-manager-webhook@sha256:2b5e825eab868d971b0a80515aaf93c7057470bedf8abfc1fc3f31e020390a27
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/cert-manager-webhook@sha256:4b00886264c9142ae3a1ec4ac9e4bf57e12bfcc0d1afa08b6c85d2c71d28536a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/cert-manager-webhook@sha256:0952b21551fd982da4a396ba9700a977afab2091851d3acaa95bb545f3a846ad