Sign inSign up
Prometheus Alertmanager

dhi.io/alertmanager

Alertmanager 0.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

0-alpine3.23-fips-dev, 0.34-alpine3.23-fips-dev, 0.34.1-alpine3.23-fips-dev

Index digest:

sha256:326d003f380e1be0558e3f56b7bdaf73660586962af041e3944cd5efec60f56e

Manifest digest:

sha256:069e42b003b19e45ceecc138fa3be1bf90ef4593f429b737f86047b61a815869

Size

22.49 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/alertmanager:0-alpine3.23-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/alertmanager:0-alpine3.23-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/alertmanager@sha256:700ba3f36048786431b341bd0f65c6d511da8231ab1ca6c7c8ea275e62a6ad7e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/alertmanager@sha256:8621ac128f43d0d31be8b4c64ea587d21f6ae8df07613b86fe9a98cf5001d550
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/alertmanager@sha256:4bafbce71cd18a7ef76fa090868e26d6c7dca6e6730992747561d6c5f3c56540
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/alertmanager@sha256:e6634a0a98a9226e454e1f0167d00407e980d21cd87413603a2bd9f8ccbcbce9
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/alertmanager@sha256:ce9d538dd75cdd5fe77d70af4ff567081d5ec051466ba1b8bc989a55b27488c1
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/alertmanager@sha256:8370b913cc49c4e37ba8f739f172641ddf306d4b2343eb401221afd25c562436
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/alertmanager@sha256:f8c2eb5a06d8b5e1ad0725cf253a8aff2dc60b2cf9c99e113a99c1d997f5e2af
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/alertmanager@sha256:b7b46983fe4246254be3b0f39f3fb52eb40175ab8b6a1771bcda6e82d4e4a0a2
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/alertmanager@sha256:3dd4c89c2613c4880a3b6deb2345094ab299e718a5b0dff5b6d1728fe5e92bd9
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/alertmanager@sha256:b3ee5a7194ed9205b98cb503ab65b36e6e5d2632502234fd549f2d11b45f8c00
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/alertmanager@sha256:39bb5c5f30ed67e8dcf21d86a86a21b3b04bc1b7e2981174c13badc95d47379d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/alertmanager@sha256:832c0611ecf76ea622ba62b258c43a9b905cb197f6729fa9181fe8cde4f10be2
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/alertmanager@sha256:3e503fb8519b205b8d0cab49a7227f4fed7d7ea8022de11db1f3124c2105d326
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/alertmanager@sha256:c49759d4d4261cb0a0037b36c105b838d7f48b4fdee60b51f3c511ac0629ee79
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/alertmanager@sha256:925fda06f81828918ad68427d86464534f948ff6c7617f5a5f6f3096d0772a95
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/alertmanager@sha256:dad3d56f703cc95401930ef3a7eca1b0262d5220e88f362bddd8db95be398e2b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/alertmanager@sha256:a47c530ae015103e0e88989601d2d02170a0526840f0536b04b3e285246152f3