Sign inSign up
Kube Webhook Certgen

dhi.io/kube-webhook-certgen

Kube Webhook Certgen 1.x (fips)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

1-alpine3.23-fips, 1.8-alpine3.23-fips, 1.8.9-alpine3.23-fips

Index digest:

sha256:d3d8fc7f9cd94f1fe9a0b846f6838e8d7e3e3dfd652e8e06705f57853e7228fb

Manifest digest:

sha256:01e8b56acd6e0d6fa7f4deb5e414908dc1239e05ed0b027c2d08444c3f1e02ed

Size

10.97 MB

Last pushed

1 hour ago

Vulnerabilities

1
3
0
0
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kube-webhook-certgen:1-alpine3.23-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kube-webhook-certgen:1-alpine3.23-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kube-webhook-certgen@sha256:c7b8fe3c972c0fdd1b218a982142f3ca5f20653088ef6b45c0b86bddab996ec2
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kube-webhook-certgen@sha256:4ac76f8b9b35fd7b1bef93a15a8daa6eb8ec7262f949e13f4915caa03bf92bd9
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/kube-webhook-certgen@sha256:b330f4e4742a97df1b45fbbb261166db89cc2f30cc391e616a80623cfc4477e8
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kube-webhook-certgen@sha256:ac28f75bfc9189ba3f928f3483bfe481738162c29a366db3e42e9e8f3945efe5
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/kube-webhook-certgen@sha256:52e37e6ed008b6b260a57feb51612d839845fd007fe556a72be0508a2b830f39
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kube-webhook-certgen@sha256:696f9fb657052d1ff2c61737f4da5ecb79f1df4db872f3bf176377f85f69fbf2
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kube-webhook-certgen@sha256:5680f5351ce7932dc2f47548fb265de6a20f7a887376d207c47c3ddeb739292d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kube-webhook-certgen@sha256:df591ea7fe8efcd372104e14f19101f4f431e134ad4dcc71577d4411074bb1b5
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kube-webhook-certgen@sha256:b110b9b8000ad1165bc19f9ebac6c9276b30fbabf8185bbd5d3bfc6c288e2d2c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kube-webhook-certgen@sha256:2211e12d1acecf1e11e0a55e9492bb964063b6d9fc10bd4c9b92d7cdab2f7a3e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kube-webhook-certgen@sha256:96fa90f63115288fd923d66d150bad86d8b767da8905028497b9d6b70e60a3c4
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kube-webhook-certgen@sha256:22c27912683e64899806740fc543e43f36894aaddd81b45e6688c8843663870e
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kube-webhook-certgen@sha256:6f9247839350d2d936a2a5c527dbbc317bed74b013fc24ef04d4cc2149403c39
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kube-webhook-certgen@sha256:4b09ebd23a9e26672815e9b220203da688239484b80962ab157d6589f16f65fa
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kube-webhook-certgen@sha256:14b144fdf800c5cf451d373084147fe55889025bf4faca601894e74f398c54e4
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kube-webhook-certgen@sha256:28c5a21e0f2b478e494746ce04ba88a5a55606cbc3edab6d837187dc7d800ee9