Sign inSign up
Certbot

dhi.io/certbot

Certbot 5.x

CIS
linux/amd64
debian 13
Tags:

5, 5-debian, 5-debian13, 5.8, 5.8-debian, 5.8-debian13, 5.8.0, 5.8.0-debian, 5.8.0-debian13

Index digest:

sha256:66c3c3ae65a1f1e4e31dcd68a54f4729430fe1edd29566f1d55cee630c2f2e6e

Manifest digest:

sha256:aae3861ccab2fc4e76f81aab075fbe007fa882a6617006d87017acd4f43dee13

Size

24.56 MB

Last pushed

8 hours ago

Vulnerabilities

0
0
1
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/certbot:5

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/certbot:5 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/certbot@sha256:8fcc26c505589b187ac6554f2c7d5a853c659d6cebcc1a72d8fe19bada30b318
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/certbot@sha256:169039cae07fdb35c843f14134687cf8a55773b76d4afde4815b190f7618ed3e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/certbot@sha256:e9a8dc09e83d5ccc209a8cc177d1f759c5414b535ef7cae8d476bb4273a95607
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/certbot@sha256:588f8d4ba3e7a6b6394ddde7a9232695f4b362974259409ec0e4c54f4ce1f891
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/certbot@sha256:61abb8ec65b5c9014d4c87ddb776a443effd1768df32dfa9f6fcd753ec606e04
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/certbot@sha256:151a35f58c42cad05b7b09bd102857651ce212c46413ecdb2d305d93ab984121
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/certbot@sha256:83279e458ecd0382c1a5046d1c065dd1fdd396b2f4b8ed959a386b621d402ef2
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/certbot@sha256:02696c541c961bd304759ec6d1019ede37e69670bac26e3613e378fb56e33123
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/certbot@sha256:2cb571a2b31ffaa8a8fde7403fb3e5136e50f3b4795ae0c28d019d32968d9059
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/certbot@sha256:e1d5eb978ac13966adb341e79998fbb3171f2b01d02f81e7781f167a3285973a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/certbot@sha256:181be9286b25c3c7e5fed29268fdb2b7c2d8b07538fb2938cd1a9558c1c8a5db
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/certbot@sha256:f5fac5d13c9bf288f9d04a884ea5c6081a3e01f5d1d032131c333b5fc7f4df01
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/certbot@sha256:b36b7dbf9a02883867e3d4b0a49b222a7cbe23fc50263431d94e361ecf460c82
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/certbot@sha256:5396500a50630966ce6a48ef8ddaecdc7c5819c45b9b8f1d82aaef0f329a9a93
SPDX SBOMhttps://spdx.dev/Documentdhi.io/certbot@sha256:b7b8cdeaf6e52abb4e6f562ecd8955d2ea8d466a2f036537be16833dfe1e6f18