Sign inSign up
Prometheus Alertmanager

dhi.io/alertmanager

Alertmanager 0.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

0-alpine3.23-fips-dev, 0.34-alpine3.23-fips-dev, 0.34.1-alpine3.23-fips-dev

Index digest:

sha256:51a4084e061265dc818708a55125c6f42f1149831513fca0095aa84e3fa40347

Manifest digest:

sha256:1c616c65e5fee4977fbdf09af8028f3a562d852c99727d3d6922bb9724f788e8

Size

22.56 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/alertmanager:0-alpine3.23-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/alertmanager:0-alpine3.23-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/alertmanager@sha256:c6d5fe0500f28bebfad3afccb1cde2c45cf4c4afb4e3f6971f9d16353b433bee
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/alertmanager@sha256:8c619214dc16eee88709f3999301d85b6dde9cd91c4da3db9d9cb9d523b2f7f4
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/alertmanager@sha256:59746aa8877b2ab4a6871aba6d489c7e47339e0117c7caec2cb7e39781c653e0
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/alertmanager@sha256:c4409c390dadc09f6665948e303c3403ba629233528f030e7ad8d2928972867b
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/alertmanager@sha256:a01b35af7437782af744b8db685a0ef76d4c3f561926a03f92f5492caeb945f3
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/alertmanager@sha256:41a677564af30534138ed123a134789d9eabab4e3f219f1d758a62dd07c783d6
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/alertmanager@sha256:dee17e8ab54d3e4607f0b80523493fc07761aef1247cea667aee0bec93b34df1
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/alertmanager@sha256:662377e1f7597e8c97a139efdf6567140e5b157ea75ad45f5aab5f82656597f1
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/alertmanager@sha256:8b672e6edded0266d447acb6eb2b7224624d4bdabc1cc31eaf04c4392728de0b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/alertmanager@sha256:d3951903092ffdc894256b943bb66d737d51199eb99d044c1e225f26b577154a
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/alertmanager@sha256:17a4f1045b9e9d3c0fa45c9a0129ad02a6f394c5b51277b6814837216d5baddf
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/alertmanager@sha256:4406d5ea9840f2ee67a16cc393ee8c17b3ecdc6337e57bf5a37934526fc637e0
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/alertmanager@sha256:5b1704740cc1c09ca08773bfb1eeb47986e0285957df458d6cd2bb386c967b52
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/alertmanager@sha256:746567057034b093c5dfb86df6012b23970d361eaaab315d691e8d355f90e3d8
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/alertmanager@sha256:cc3f4734c51e0a52884d4fa1593ecfa970c37b71a91bbe19af79f332daf41e8d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/alertmanager@sha256:73efb4dc96bb03de8c5ef7f4b9c7c7cf985f46010f9cf7b0f7e016a580b67b28
SPDX SBOMhttps://spdx.dev/Documentdhi.io/alertmanager@sha256:9fbdb8a816dfb1481112a6231be40aaa6a71c64644dd0f31f6e6675c550e8488