Sign inSign up
Certbot

dhi.io/certbot

Certbot 5.x

CIS
linux/amd64
debian 13
Tags:

5, 5-debian, 5-debian13, 5.8, 5.8-debian, 5.8-debian13, 5.8.0, 5.8.0-debian, 5.8.0-debian13

Index digest:

sha256:8cf9924b583b4f6648d8973242a234307d9919d18ad77452c07bcecf711f9239

Manifest digest:

sha256:4ff6f4f9f9712d9172d38da0177d73671233121afba6718bc47ede140d9fbc31

Size

24.56 MB

Last pushed

6 days ago

Vulnerabilities

0
1
2
9
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/certbot:5

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/certbot:5 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/certbot@sha256:000eb6b58187789502feaf93b6215c18fe22a26d7c9fefd3aaca5c69ced27437
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/certbot@sha256:08aa5e74ac6603c49ae00b3bc2ef7d32fc4af1ce94476961b51a25ec8c4b2932
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/certbot@sha256:2dfc2347aee4a5ebadbbfdc4a76b05fb6eb0ffbb68b9e7b427d9e088ccf514eb
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/certbot@sha256:007d18978e6e998b895532c85c844beddf7f12143adea2fae57ff4f7a54012d4
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/certbot@sha256:251d5de7a46b37ac3528a0b4bf29d2aa26753f6d23c4e1ffe11b6384da2fc614
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/certbot@sha256:ded1a2adc9318550711051aae68b91b0ad11ed202ca4d3a5ffe17a89859e7d9f
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/certbot@sha256:728b77aee4b2409fd98cf41fef7a255123a6173fd960305d4ff32b3d45c68a0b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/certbot@sha256:9fce1620af0ab48f7090b26e509c5d70b3ad52e1b1cd7dbb9b3a4c060d902bf3
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/certbot@sha256:f909a477603335e4a414f2923be72c51ca6a03c531f0d61cf6d14df8f19b8133
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/certbot@sha256:cb844e8199814a4818d40e69efab4a09594b2ef51055eeca22496e17a789ac9b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/certbot@sha256:9149aa675154eec4e29c5de5eeab7d9e6561036ec972411109a69551a30e32b7
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/certbot@sha256:831449f5c838d9b5085560a627707992f5c4d0f8b3362780b33fcd7a2fed8afe
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/certbot@sha256:1284d97568f7e2038d79094bf50f6188575f75f28582f14060f6bbb204db737c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/certbot@sha256:cbe9c3b1585a9c436ed5b25aa88fa175fe01ba6b0b64883c16103c0da24b859f
SPDX SBOMhttps://spdx.dev/Documentdhi.io/certbot@sha256:fd3b5bb7fb8494ac1ac7c48c4716b1c921bcc2dad609229bc5b2c7c80b92da9e