Sign inSign up
Certbot

dhi.io/certbot

Certbot 5.x

CIS
linux/amd64
debian 13
Tags:

5, 5-debian, 5-debian13, 5.8, 5.8-debian, 5.8-debian13, 5.8.0, 5.8.0-debian, 5.8.0-debian13

Index digest:

sha256:7792a910a2fe53ee7bfc3a1cf9974e052766f4380d3273f5ec4aa5febf5d34da

Manifest digest:

sha256:723bb06cd94f99339f82bd7298cbff9352fadc1a3a58ccf004aed03841729e4f

Size

24.55 MB

Last pushed

10 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/certbot:5

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/certbot:5 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/certbot@sha256:0ac86ed8f06e4387f11c54104ea69699302f804a5fec9e69b76aa9ae000c1cec
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/certbot@sha256:79d8a46970abe45dc6242c01976f5da0cbfdb68170065beb7e1473f0230765c1
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/certbot@sha256:fff9ececec03744d5bae828c98818f50fcebeb1a863572c4a6ecfc9e7b1058ec
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/certbot@sha256:edf0fe06baf21d75f2214d69f09e3c797437bed35363265a4de082f0a9e04733
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/certbot@sha256:39f57188c8745fdb843717dc3b340091cb6f091c068a7cc38541cac9b8d7f132
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/certbot@sha256:32827a20a522a1da24b4e3099defec26b0ae386f3949664b6f866426e99ede5c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/certbot@sha256:4060142b953b7e13daabc20dfe92426a586a12936432ed318b53a34f9d86eb00
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/certbot@sha256:7e542f92d85505701cbcf7206dae2911f9db3092fe6f50b06735e624477a809b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/certbot@sha256:30a65377f232438fa6ef0014c64d2ff473aaef955f918b4800a871e6cd843637
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/certbot@sha256:d8ebaf36a3a294e80bda353698826c280ca891244133bc7dd5d19797fa176ef1
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/certbot@sha256:01fd602cf74d58d7438fd2a1830d38acd0b1b71b86eae3fd4dc929413605ffdd
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/certbot@sha256:6a40391d0272906860551e6b57734ce0f7dd7fbdc195682f80a6f270aec78750
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/certbot@sha256:50733edc31643dc1ec48be52cf9c0167133040bc33eea6cd732f710002f52c6f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/certbot@sha256:a91ff410ce672c3e2fd7f7200b5013d8f619593e6fb8e8f8d6e5f33491ac2996
SPDX SBOMhttps://spdx.dev/Documentdhi.io/certbot@sha256:a5ea03864a582ea4b4c4dd87e89633efaa945ff5f3624b314d2abf0d4bb442fd