Sign inSign up
Certbot

dhi.io/certbot

Certbot 5.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

5-debian-fips, 5-debian13-fips, 5-fips, 5.8-debian-fips, 5.8-debian13-fips, 5.8-fips, 5.8.0-debian-fips, 5.8.0-debian13-fips, 5.8.0-fips

Index digest:

sha256:dd13432990040f461c43d04c8e1be04a69cb1f20e0e1b2372d0e246c9a292809

Manifest digest:

sha256:06065e96496efb67dbf7320ffdd49bef4f5e00b792638c944aee7354f6b99852

Size

25.34 MB

Last pushed

3 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/certbot:5-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/certbot:5-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/certbot@sha256:88105d925d762ba2a4cec4a1cf7c06d09c71dc2f2ec8ffb6f4d72cbbaa95ead3
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/certbot@sha256:884798956d8259440c02665600c72b68af93966a6948e309aff9460231ea2f59
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/certbot@sha256:16e193f32ae9b6a5f14ca0b0c34ebf0c24700ae31860d52b81443e30486557cb
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/certbot@sha256:3c671f4d6bbbf75149e9800583d43d25f30c956c892fbaae4b21a516e679c62e
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/certbot@sha256:e22d982d753c3221e90579a4dc94c8cf1263082561e467ca60a0747729d75c43
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/certbot@sha256:73798986274915101d41cbb044f9aef32f2c1a8d6ae8b72d07982e08fbc265eb
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/certbot@sha256:67a547f731bc9db1e2648c3b8f15d53904b60a5efa004c860aad61e4b309e7f0
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/certbot@sha256:0f098b19f6f35d242393974ccadbc5c4b62678f2bb149af0f554e3f594488ce7
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/certbot@sha256:f3a787ddb4727222f3cd0b72d109d89eb41a77fdd666fdbd4d4c963ce14c041c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/certbot@sha256:34d2067cfc3f8da683bf094c0fc9fce7f76cc5c8089ed61c0ff5582336bd54a7
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/certbot@sha256:beccda26010200215ec6e0b5583cf32f8b96ba538e74946e695cc72a1f7c636e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/certbot@sha256:c3b1aec9d2eb8e5472a004735b5271ea16b06638d8ba05321d95884ba26bbb8f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/certbot@sha256:ebe980d2b7bb309f6be3db8b46759805519a86d85f10e1f01ea606159538bb75
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/certbot@sha256:e11cdf7927cb2e45386e65b1cf855e457cd708e2e37149c45b22495670336a0f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/certbot@sha256:b17f6e8832ec599b0ab289fb81188e7697d7e057ba61ec009866e7d12698924b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/certbot@sha256:6d3fb2cfc4fda9d47f47b04357eb44a3e7b15fa67818349576a9aeb3033b03a8
SPDX SBOMhttps://spdx.dev/Documentdhi.io/certbot@sha256:60c630ebcc7148b8fc930d69db22b8cc45b8fc0b0c2918afc73875d6675af922