Sign inSign up
Prometheus Pushgateway

dhi.io/pushgateway

Prometheus Pushgateway 1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips-dev, 1-debian13-fips-dev, 1-fips-dev, 1.11-debian-fips-dev, 1.11-debian13-fips-dev, 1.11-fips-dev, 1.11.4-debian-fips-dev, 1.11.4-debian13-fips-dev, 1.11.4-fips-dev

Index digest:

sha256:32b43d8aefd7fd1b32c9b50ba2f4d07a420c1cf4962995bc77a459a340459600

Manifest digest:

sha256:b14442bcb911fa85035605f71c17063a4f51eb87d251fae4d5ef99dfef64a81d

Size

34.68 MB

Last pushed

18 hours ago

Vulnerabilities

2
8
0
1
3

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pushgateway:1-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pushgateway:1-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pushgateway@sha256:5dcda3f4f348ca7e3253d5b4f9376c1a838b479451c3b084d8ebb3130da2abc8
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pushgateway@sha256:5d1438fbfc4f3c3d78476c9db13e47b522314f0799fe09f3779daff8cc20b138
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/pushgateway@sha256:f148f17982268cffcdb7537ac9b681ae383cb28c56dc742e4aab2ba2922b7bbd
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pushgateway@sha256:88d5c0549a1b293267a86c7ee01df2e4b9e963be7c0c2908cba01bb2a08ab5dd
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/pushgateway@sha256:f1526605fa338e3572c6f09cd7466d1937186506dc1e5abf398319e2010a5897
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pushgateway@sha256:e5375bb81fb501826874a54e168ec0a4fbb26e15af4e5017a9df7a93461c01ba
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pushgateway@sha256:5074f2afce2c9598025087fcd24833c443a55de9290ff5bc672e807f27658df1
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pushgateway@sha256:cb148c6a10766b0742dd9316bea915bf79236515eb9b2e46c9f8a21ad2eb8582
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pushgateway@sha256:ac4ebe142194473a71eb63ddbfa0b29a002cbc013553b53f617e8a630168284f
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pushgateway@sha256:74932509657626f4064ab11c11b4fe0c3631744c5d3b8e6c249769a45dc2bd9d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pushgateway@sha256:8efdf9a989d77242bfa04a837c4b9a6c3563bed9ed0737475ca0938b894b00ce
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pushgateway@sha256:0ecde1d6a416cabe0c576016cca09383c1a46f149db8e03b17f7ce5783f7a7d1
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pushgateway@sha256:ac75b1caf096347ffba533152759ff0d879637831c8a37e6bdbcccf98d7458e5
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pushgateway@sha256:99bc86e9e862f9e0f240e4851a6f4cf63feab84b8cdff849bac663a89e0c5c0f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pushgateway@sha256:43549e37d1ba9962cf2dbd0ecab4909e062e338ac8b43c33ae393dc2af245c8a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pushgateway@sha256:b137531e0377722e46117c7db907294740d3cde9a709a6d91a3dc27e8adf0341
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pushgateway@sha256:c3434c1a629bb66e8127941e3c4d0481b041cad4255657f0dc7d7b1deb56b7ca