Sign inSign up
Kube Webhook Certgen

dhi.io/kube-webhook-certgen

Kube Webhook Certgen 1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

1-alpine3.23-fips-dev, 1.8-alpine3.23-fips-dev, 1.8.9-alpine3.23-fips-dev

Index digest:

sha256:bbb1e659aa5693d2a9364015c4cf9759957eb68c97bdb53192419ebb49b514d1

Manifest digest:

sha256:74e6e2d4bb71072b5d3eb3ec684d4e7296219f500cdccd1750a9d61d383a10d9

Size

11.79 MB

Last pushed

5 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kube-webhook-certgen:1-alpine3.23-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kube-webhook-certgen:1-alpine3.23-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kube-webhook-certgen@sha256:eccc1293bddcdf2720971c20fcd547f7be0afa6768a127b32b03be29cdd13404
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kube-webhook-certgen@sha256:1268534ab83ba4c56ab4ac650573672be4fc7535c1652599e7fa583ed9694c60
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/kube-webhook-certgen@sha256:31e9cf5464da2e842feeabb000685aee3e9e107258555de6ed4850e29c95dde1
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kube-webhook-certgen@sha256:b90c411c2ab9d89afba69f6f8b4ff4aa2d0a1d6b340e6635b0615f2b028ccd59
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/kube-webhook-certgen@sha256:16d11a908711f48a9a17cb4097f7fdd5d056cff2cc8a4cfef26a72e8a92f230b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kube-webhook-certgen@sha256:bad28e71287805cceb02be6caea9d58e0ea3b6660434da1e5da9590a8a35103a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kube-webhook-certgen@sha256:9f7b54d137904f3e15a6da7af62965cfeb6832a5ca55129f23bfe5a4fde2b251
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kube-webhook-certgen@sha256:cb3f4195c065fe5ae7c9a29d3cf1b5325e441723fa7012bffc50bbf25e25e676
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kube-webhook-certgen@sha256:8038b26aaf9f806fe1f623f2eaa198d54d0e3e8c17edecb6521cfd236c95bf08
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kube-webhook-certgen@sha256:c1d0064fa6f16a4b9720b5a5e89c4c7b82ea4f285065823afba76adf6a3d88f1
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kube-webhook-certgen@sha256:dfc662da276180f2df0c74728c7e313f4bcac60388bce733c5fe62c26ebb1659
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kube-webhook-certgen@sha256:b1521053a69e4e99f14dd08eb352e9e429532c74e2262f9cb442485690cc1549
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kube-webhook-certgen@sha256:6059aba496dd0a337248f3db872d8e14965f1f564565d82f287b38c256f61233
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kube-webhook-certgen@sha256:093d8706cb7cb91edbdec60d5f216eb5aac56038485064f7f225bd13f6d72e8f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kube-webhook-certgen@sha256:92e5dafef8c025866d40b426c942f04e6e924f73fef4f9f926b93a5e6cba9e92
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kube-webhook-certgen@sha256:d7e57c9df0cb06e7858ceb0d1d99177d2f97c02f4067feb5096e4fb6d84bc733