Sign inSign up
Certbot

dhi.io/certbot

Certbot 5.x

CIS
linux/amd64
debian 13
Tags:

5, 5-debian, 5-debian13, 5.8, 5.8-debian, 5.8-debian13, 5.8.0, 5.8.0-debian, 5.8.0-debian13

Index digest:

sha256:4160d1385e10470bfafef77cca17f50d2a904f8e0061d1bf754ca9b53e6faa9e

Manifest digest:

sha256:d2bc251aba7903f9ff828f266aa674d63fb90752486f0b7dccab41d21d137db8

Size

24.57 MB

Last pushed

1 hour ago

Vulnerabilities

0
3
1
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/certbot:5

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/certbot:5 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/certbot@sha256:841177f2c5354ffc8b603d38ab2605c831f0c180e7c8fcf386b0f081a306ff28
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/certbot@sha256:45e64b0173c0554329f01165213abdd2d8351b3700254e93e6f203df9ea04de9
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/certbot@sha256:bfcebded54039e304637a41bafaeb6bf074729329cc4f433cdbd56d0d5275d91
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/certbot@sha256:77166f726c053dba1e897094a3a1b9a758ca9b7ff5fb56d44332584fc991ce05
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/certbot@sha256:67d8d676ec29b08444c031012062f1e901ca624413126855f4db7956906a0155
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/certbot@sha256:3048610f19a55cb36c06b6df80fcf0a750f8f4941962ba5dd519188bd0aa0bbc
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/certbot@sha256:255c23ceebc836622f1480bd3024e238a5bbccff512177b0bc9d3a94b6335d4c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/certbot@sha256:09c867869b96d7444f7136362df90f8b8adfb6a901858c966e4192fae3fbad3e
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/certbot@sha256:9a9a4c57798bc4090ce195da1b3a35074a8efcccd38e5669cfbcd86ff817d1bb
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/certbot@sha256:087f7420dcb1049062a5659d4dfb7ecb456cc1eba373b762158445266aa700a7
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/certbot@sha256:35853db65b322e6ab55fe1275aa22913cbdb0ac96c273d3c0114321d13f556e3
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/certbot@sha256:a55e4abbe8848de6b6bfe80f2c7a6f3d9cf48f1778e9e531c95a3120b0dc622e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/certbot@sha256:9dc9b718044e740d3ffbe868f03927204c613b2200d6d860d788d33b357c7bde
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/certbot@sha256:85b8c1997d913c77152502e148c1c85f668791e9c1fd25da2221f743d693948b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/certbot@sha256:1dff19092c33924cd6d9d22a346d7f5a837897cbedbd78c38081269f0e56090b