Sign inSign up
Prometheus Alertmanager

dhi.io/alertmanager

Alertmanager 0.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

0-debian-fips-dev, 0-debian13-fips-dev, 0-fips-dev, 0.34-debian-fips-dev, 0.34-debian13-fips-dev, 0.34-fips-dev, 0.34.1-debian-fips-dev, 0.34.1-debian13-fips-dev, 0.34.1-fips-dev

Index digest:

sha256:b9e6e8c64cb0f680806dd8aa074fc54525f0705528b65bb80114b2678cc23574

Manifest digest:

sha256:1bb4a178c00e5740ea9d4e7e5f358bee526fa5bd22d4182eebf86efad5187f27

Size

41.81 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/alertmanager:0-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/alertmanager:0-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/alertmanager@sha256:f56da7c1b2967829a3df65b5d12f16c95ce75dc88c8c87dd2ab1786c29a645f1
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/alertmanager@sha256:31dae1fa7cc9279a46220aa60552bb8d6a8ef5b1b5ccb6b6bfc661bc8b5b145e
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/alertmanager@sha256:dd1b8d854700918df6287ba11d71879bd217f2f38ef9613a56b8d7bf5ace80e1
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/alertmanager@sha256:726de7062b37d35c2a1b62341e660ed872fbbb6d977c67174d73764217bb41d7
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/alertmanager@sha256:a38a0234e1d27b33070e2ba57f15eb286678010b734d0e8797ab2c631fe6c3d6
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/alertmanager@sha256:03d7885e2f1160445ee083a3858bc0131622783fe13f1113d268cdadb001b648
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/alertmanager@sha256:d9108e8d5705eaef908362b52b2e34aed7b514bbb27b55d7c5d32f72a74d990f
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/alertmanager@sha256:36ffe6c3ad5eaf2c5ac8fc45f3d58eb1fa1bc45eab288edb5fb1b31b3a31e00f
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/alertmanager@sha256:b22f80b216aead512019efeee576e9620d852b2dd86ced01231ff9d66ea7ed1b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/alertmanager@sha256:01e60ca8727b7cb6f20258e22d1cd33d9e9179e596af74a446af441d1172d509
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/alertmanager@sha256:b9ae93898423b7b1aade3dc8eff7fa67e2d67805d71b297bc3ef047a152156ef
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/alertmanager@sha256:02efc082334415aef8460adac30c4ec1fe3d5b15dafcd6fd3b57b09a21cc5162
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/alertmanager@sha256:d55f82e2d83d1b248020ee2c5f6cc777f8162b74a710e11c31df683a273f8a4e
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/alertmanager@sha256:11172498b35246e6085e1c72af6ea32a06769c05039733d7c6492d8692cda994
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/alertmanager@sha256:9287432127b61f6b32c40159c369bca17b998750b60a9b5c399248673e105bb7
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/alertmanager@sha256:e1ee8316d03bdad340fe2e862c0017c694ccd8a723f2a5613023b0de70b0b3ed
SPDX SBOMhttps://spdx.dev/Documentdhi.io/alertmanager@sha256:2afd9df5e25041ff6036db50ea1827221dbeffada1d8bbb4b7a93743a38827c0