Sign inSign up
Prometheus Alertmanager

dhi.io/alertmanager

Alertmanager 0.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

0-alpine3.23-fips-dev, 0.34-alpine3.23-fips-dev, 0.34.1-alpine3.23-fips-dev

Index digest:

sha256:1f800c4c69aec1e64aeab0826cabe5525c54f74492f3b7325c1cedf09a618c13

Manifest digest:

sha256:5b591889be6487a765d4d86b3c8038dc3ba9f64a5e68a9b2bfb39dde744fa6f4

Size

22.56 MB

Last pushed

7 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/alertmanager:0-alpine3.23-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/alertmanager:0-alpine3.23-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/alertmanager@sha256:d3d7b452b74a0fae3aa9d9f6926bcbae3ce9aff34c8ab5b64e8214fae9349500
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/alertmanager@sha256:edbca65c789c45da3eeb7217693eba12d2ef65359cdab6da14a8316302afb464
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/alertmanager@sha256:6ccaf0cdc4baccdfb3f1b3313953013673f0fac04c6e62068b50abd8bf870136
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/alertmanager@sha256:17f2f6527bea06a229ceaf48e498cfa0f62e3081110b79751374cc4bcc04f86e
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/alertmanager@sha256:1b271d03409f49093e16cb68df89ee831a59514e84c856af920a5dc27c9a24ce
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/alertmanager@sha256:a7623334a56df4a6895944c6124731e2c173b960e9160b3d3e1ae8cefb045300
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/alertmanager@sha256:c9df5a894019f026df94ebb10212e59485aa419dd9919a2d5d8188598fa08300
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/alertmanager@sha256:e8e1d47e277604cb2d44ab192ca4cc918b803c5218dc6dcfb37a1ded3e47fc11
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/alertmanager@sha256:3896b23d516d6094f69a39c1af69f28481569da6a5748b3a50c9bc548c6a097b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/alertmanager@sha256:479002b61a0a3b294e5288a5b5896c9398631e5408103d03cfa2f984229baecf
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/alertmanager@sha256:ab2c5ae2dd58e5f3a6cb73a166ee0b7562274132fb62b473bcbace536ac1df46
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/alertmanager@sha256:a79bba3f8e4cebe90dc92431a1e1a30a45cc503fcfba483d11e54cd430f6552c
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/alertmanager@sha256:3ad6cf4728d826cebf98d1d0553602d032ea4010748cd6d466387e060bafda08
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/alertmanager@sha256:f18ca45613e58451545b860b1e92eb8b985a6bc2dc960603f0fcb86cee7816c9
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/alertmanager@sha256:27a23149d5cf7446965d4dc0e9da6c278fe70fe37af9f90de42effbfd2e60f43
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/alertmanager@sha256:12170bc81a7dc56a2188bf3c6f02317cc923068e54225d0bb7b43e64027e0ff3
SPDX SBOMhttps://spdx.dev/Documentdhi.io/alertmanager@sha256:56f32f23461ab33a6d65817892f198b7d64d80667f44115f7fbeca6d5e981ee8