Sign inSign up
Cert-manager-webhook

dhi.io/cert-manager-webhook

cert-manager webhook 1.21.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.21-debian-dev, 1.21-debian13-dev, 1.21-dev, 1.21.2-debian-dev, 1.21.2-debian13-dev, 1.21.2-dev

Index digest:

sha256:949cd5e07a39d240413cd90d9eb0dd3208081307f06ca13c13edbe23a43d57a9

Manifest digest:

sha256:ff528e6048bada4897cdaabe435cf10b5af953832f62f5e08f3e412b9519a7b9

Size

55.88 MB

Last pushed

12 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/cert-manager-webhook:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/cert-manager-webhook:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/cert-manager-webhook@sha256:300c70f8c98d7a43a146813ad39f9a3f5ed42904d7cbbd1b1641d2e0f9c03e21
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/cert-manager-webhook@sha256:7e1c7396b8be4f21726f026b7ee603ebfb0ac522442f529a857b41076ddecd77
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/cert-manager-webhook@sha256:c9f968eb72113e9432441208c6dafa901833ea5e220a50a3d87d39ddd4126a2d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/cert-manager-webhook@sha256:ae829ad8cf5f06d3d249a011e679db6dcf19f01f7ba761bca26d2975f47ddf93
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/cert-manager-webhook@sha256:6f3bb4b0c3ce0719a6461be43da41c2ebc10c7f92db3c5b488dbd4297e166964
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/cert-manager-webhook@sha256:2ed6737093ec846406c230e1d483646a5cc0d6130fb79d7e7d01f9fea4502bda
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/cert-manager-webhook@sha256:2526a1c00fca8a21d7aaac1b2590a0aec54e555f69212e54f62efe66df77fe11
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/cert-manager-webhook@sha256:f5cffb11b611b2aafd235a7eb953ea63b3bce7d9d06bca3751cdea836b7bf0b6
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/cert-manager-webhook@sha256:371547f6e5bef2836b14f1273e2f1bb175286346a485cf06354549743a06cf25
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/cert-manager-webhook@sha256:ec1337510c7fec5404c61109c236f66e66ebc15019436bc2cbf5e0716e23e44e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/cert-manager-webhook@sha256:588dbf6127662ea7604ace4259e602a056933cb317bedde79136a53f7e9fa20b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/cert-manager-webhook@sha256:444e67ed426c823852a117ccfe3f1ae3af845b3c6f7bedec7db4a2d1ad004a3a
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/cert-manager-webhook@sha256:86ad0265067e320d178add4ad2d8316bea0da256b1ab1c7c4371680406df3202
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/cert-manager-webhook@sha256:13f6adc55d94c34375aaca5b14ac309b70d743e5fa24540ec076c925bc62b9e2
SPDX SBOMhttps://spdx.dev/Documentdhi.io/cert-manager-webhook@sha256:07e4f48709a9665585e143493555057c0a3358c71a206bde865cde6e10b2cbd2