Sign inSign up
Prometheus Alertmanager

dhi.io/alertmanager

Alertmanager 0.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

0-alpine3.23-fips-dev, 0.34-alpine3.23-fips-dev, 0.34.1-alpine3.23-fips-dev

Index digest:

sha256:26161bc8e9f814ab31c89feb1c840ee7a2c337a3a23401bf2d1bbae079d311a9

Manifest digest:

sha256:b45d34010d05bfb62bf85881fddeadb225921ef0d2656c9d988e79036ef4feed

Size

22.56 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/alertmanager:0-alpine3.23-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/alertmanager:0-alpine3.23-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/alertmanager@sha256:3d397148c5b81fc79b9a57aad2ea56bfd7cc071d19b98fee41610442c00b6288
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/alertmanager@sha256:38306a14e2d5d85ca1a92b36e18d1e5b13a2969d86261e9f38372f17c8962ddf
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/alertmanager@sha256:892e2124bd5c8a02bc5fb7e20122c566aa28c78430dfb93388f24fdbd5841410
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/alertmanager@sha256:09a06ed4987f6161942a4dd00238764834ca3782e34cdbb8d2acc3630ea3ea73
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/alertmanager@sha256:7172b97ade0454b1d5419e71edff7a8b3ab02e5682ceaed668f4ec9f399db3df
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/alertmanager@sha256:8adeebdde63d245fc20449f023edd59d5c779b6cc09642822f130f85ea162ea5
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/alertmanager@sha256:8fae5e335b55b235390b0236829bb1a0bb9e54afa5f5e356fa1bb13d88d88c5e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/alertmanager@sha256:79579903ce3785c9de4ff1a11f8be9efa27e1af740a1df23ee0db2f3cf7cee34
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/alertmanager@sha256:c49aefaa1d231429b1b13cc28f68894f5c1e4f66affb1229315d9e9e7548a302
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/alertmanager@sha256:dfe293463c87eac4dec5d3b47dbf0e3de9c3aecf055067554502088f208db66b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/alertmanager@sha256:8cfbba4026dae452d7bab3cd7f4eecc732a06251c4a672070da8a6aa45167ed6
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/alertmanager@sha256:ead9bb918d301632a4081bd7eb58f3e3e522f01bcc8d218161c62088a56f7a4d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/alertmanager@sha256:2e6c9f221d34fcb7e8c0404ef49ee83649988fbc051d606aa99e2ccbc78878b9
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/alertmanager@sha256:29327702f76621937053616380f9ef564cd1374689a1ef92a26dfbc8ad5aa0a6
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/alertmanager@sha256:27a61cc67ab2f5d08aad3d3f8f12bb8b4a7331e32b8c8f99a1e07693f6419ef3
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/alertmanager@sha256:9efdc745ba69e3cf8476249765da08a3e73f0bde40eb9fb37164b7bcc5b3a15f
SPDX SBOMhttps://spdx.dev/Documentdhi.io/alertmanager@sha256:eee22205b5acf14a459de3d321058e1b1edf18834c42eff562f2935414b7a141