Sign inSign up
Prometheus Pushgateway

dhi.io/pushgateway

Prometheus Pushgateway 1.x (fips, dev)

CIS
FIPS
STIG
linux/arm64
alpine 3.23
Tags:

1-alpine3.23-fips-dev, 1.11-alpine3.23-fips-dev, 1.11.3-alpine3.23-fips-dev

Index digest:

sha256:840ce2812f9434b0777eefbf6270c995947f3ea68ac392a5397180d32ca55f8d

Manifest digest:

sha256:8fe5f62faa9444fbb7319d19efb32b2ea2ad0e4534a06bcdfb5e74bd751f2a8f

Size

14.74 MB

Last pushed

14 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pushgateway:1-alpine3.23-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pushgateway:1-alpine3.23-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pushgateway@sha256:a34b4acc3be10574b99f8f77ad76c20dc256bbcf231659fbb3fdf139158174bd
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pushgateway@sha256:7df733a2d2694558ebad115b3e069877b98ab064cc53c9badd89f8a792e2b51f
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/pushgateway@sha256:7bbf8462bd88b32903e5bea83cf41d3b63cab521da0786c029b52f5f92554400
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pushgateway@sha256:acbea1365e77fd9502013aa0a30761cc500c254bf40b60c7e6806653a21c5d48
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/pushgateway@sha256:886ef71367278683213c5e586de603298a9ad10107567908285ba7b313fe77c3
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pushgateway@sha256:5dac0cfa3bbf770ad48756434ad06339dafbd969bd61edb6e5465e89ff7416ae
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pushgateway@sha256:9b886144d427a86f0681a53501bdf88e2e4f6f6f86873e38494f752e302302c6
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pushgateway@sha256:772c96c9b024229a1c08cc9f425bf3f8506d056f85789a119b7e690d0e7c2591
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pushgateway@sha256:ac962a2b3f75de89c78859eab5af02c040d67919e6c7254a2d83b6e2294ac857
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pushgateway@sha256:5e4ea7a2ef65909eeb83e0bb9cb779168653a24d69438a5c7852d33990056a1b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pushgateway@sha256:1df33e2ae4bee7ba719f695c024f41ccca7dd873d75e6dcce8c54c9461443496
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pushgateway@sha256:7244807f835be7deee93a53cc4ba8da905988120372a84e646159870ff857a73
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pushgateway@sha256:2697f9a942cefded4f0fbc0fb004414371ff526d4f4255ab06c20b4bf62beb7f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pushgateway@sha256:1bee9c535cc29bb9d9e13c8f29b8b0b5d5d19896adc563800a56c83df1f42446
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pushgateway@sha256:1186641ac283f896a9ae2df0fd482e9bdafee25b84d665cef7c784602d60904d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pushgateway@sha256:ca70a0e25b4a4c415fab4b9f8098ef58ec748ff1a7acbc33a0551a847afbb3b3
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pushgateway@sha256:97c4aa448f23c0a5d0e6dc198b7f58ed28b3abb086eeb635d3fdffb64f472f8e