Sign inSign up
Prometheus Alertmanager

dhi.io/alertmanager

Alertmanager 0.x (fips)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

0-alpine-fips, 0-alpine3.24-fips, 0.34-alpine-fips, 0.34-alpine3.24-fips, 0.34.0-alpine-fips, 0.34.0-alpine3.24-fips

Index digest:

sha256:65857776bf990bb272323179b9b1a0bfbbba4a102e3e80256d5fd6914dde0d7c

Manifest digest:

sha256:1ab0840502de86e564597310c148f84ec9dc6f93adbdc131474d5ac5679a55e1

Size

21.49 MB

Last pushed

12 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/alertmanager:0-alpine-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/alertmanager:0-alpine-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/alertmanager@sha256:679c81f1d289a0d79ab77c52af8bf91a9ac40c205e08d40ce2560f431a4ff633
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/alertmanager@sha256:890740083af67b1f6b6be54b2aa20258c1daeada3aa31df72048e18401d6d2b7
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/alertmanager@sha256:129c4ed468454d988ce1c4aac92aba04ba2d60a4d14cb2fe52c7eaec96bf9f66
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/alertmanager@sha256:10764060afa2fb13d864781399785907ae5882878ec1a4d207049ec496288520
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/alertmanager@sha256:c64057469c9d20c8299efcd56aa2c779e67ade61e5026db659c336fe67a2ddb3
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/alertmanager@sha256:98651b947dc9cef25baf4e54fbdae0b62b8ceb00dfb12eb5b370c213edcb7908
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/alertmanager@sha256:a02a43fa88d7d812cd35cee9b2af4cdac72627068a41e22246000248a5fcf2e2
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/alertmanager@sha256:0e61da5fb84c07a4cfb1c9656da19451ce7712f6f13251294d13e6952bd55f06
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/alertmanager@sha256:9cf4a094bc06510fa7378f1fbdb7b85d258a8383cdd06db1971026a8b527fe55
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/alertmanager@sha256:e471702fde76990092488c9f413c8f8c46c09d93367a2dbb35d8d49388d8eddd
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/alertmanager@sha256:faf5d1c65137643c67e743d75cb9b044a6d3b0c0799e3fbc3c8dc3dc27c24f8e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/alertmanager@sha256:52b2e337951bacb62fb1529c5ea0f364402a5db7ff28cba0e53c5a4f81c325be
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/alertmanager@sha256:7e7ee04e26c15f00a96e5d735c728610e8fdf80a2372b25aea441a2db8138c59
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/alertmanager@sha256:9f5b29a3fe6345753e36ff92d217a8291824f0e8d55fea02d831078bf02ff749
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/alertmanager@sha256:4eba336485dc94a1de4a72679a16781f0164fc77c1f113607d96ae956c1b22ff
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/alertmanager@sha256:32d524068b880fa41e1c56d12fe91f0dfb9defa0d404cb483a9d34d1de62b59f
SPDX SBOMhttps://spdx.dev/Documentdhi.io/alertmanager@sha256:fe07c810453d95ec60b444e8ab53032a4458c46c254ad5000f5b7c77b2fc39b1