Sign inSign up
Cert-manager-webhook

dhi.io/cert-manager-webhook

cert-manager webhook 1.20.x

CIS
linux/amd64
debian 13
Tags:

1.20, 1.20-debian, 1.20-debian13, 1.20.4, 1.20.4-debian, 1.20.4-debian13

Index digest:

sha256:89afae41a94b24d89397798fe39fdeb25c7af1579ceeb8b98db590fd8518f064

Manifest digest:

sha256:3e49543692569aa9a9615c634cae3cdd9ee13be445372811d0a142c36bae61fb

Size

16.46 MB

Last pushed

12 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/cert-manager-webhook:1.20

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/cert-manager-webhook:1.20 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/cert-manager-webhook@sha256:a6f99ef2c9a967ce4673a020b5917e1142e87a33b18a9bb00af6923b8ece92c2
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/cert-manager-webhook@sha256:4a3123f50e6024251bba06f0644f7a42c8a3548cabfb9006da32d974b65993ba
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/cert-manager-webhook@sha256:3d9c5f83e31b418d068ec9cea33fc05db35bb19e9d0a0190747a758e51eb04a3
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/cert-manager-webhook@sha256:9f0ca9ec9e82e32493723272882265e6e25c4a5e7ee4a12e411028e934f7948c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/cert-manager-webhook@sha256:a48e4940bc1868a73e83e810809a3098bc0fff2fb65bb7a1dced36d4c7450ee5
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/cert-manager-webhook@sha256:a9ecf3c725a11869294d4d9ff7a7fefdd25317e34965aa1c22616c52cc274a2b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/cert-manager-webhook@sha256:1bf1c24329a9994374bb2e63fd8bfa6b0aad4d8c19049868c9696b4a869f6439
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/cert-manager-webhook@sha256:a39bc8cecc9d4b0d1f80fc66b12448cca78021187c5e888b60ef9d506a327dbd
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/cert-manager-webhook@sha256:6574c9e703a5f6bfe26cee6bf31a0469c3d9374e903eefdb1b207b9cfbcab3ae
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/cert-manager-webhook@sha256:efb92c302b78b9722d21e933f1855f33905da5d8b1c9f98f20788b52740837e9
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/cert-manager-webhook@sha256:c2ce2fc97930827e2a64bb5cf2e5858ffd64658e6a500d5a9c1407c76cda47d1
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/cert-manager-webhook@sha256:c863a1091397ddc91d120daa03ad7945d6009790d6fbaf7c6f00811c9f70fa75
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/cert-manager-webhook@sha256:e063431aa362de80f7968e33c6e1dcbb185947814c475f162383ea6508f77139
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/cert-manager-webhook@sha256:c0333821c9860acda36d7c4ff8924a9dc6ed3b00a08dc50e56b658a4699a8f50
SPDX SBOMhttps://spdx.dev/Documentdhi.io/cert-manager-webhook@sha256:e05fe26dfc11e24c9b04df713d3edeb52cbb623c183860101ca2409c3d40158b