Sign inSign up
Netdata Agent SD

dhi.io/netdata-agent-sd

Netdata Agent SD 0.2.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

0-alpine3.23-fips-dev, 0.2-alpine3.23-fips-dev, 0.2.10-alpine3.23-fips-dev

Index digest:

sha256:d97fadf6480c0ebb48986e5ed13bf266694c92081a3056d5c790f07b2101efee

Manifest digest:

sha256:f85779c9999d9a3059f83bca854d066f48f4002c8706a2dd8a5920c9245137b0

Size

16.63 MB

Last pushed

17 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/netdata-agent-sd:0-alpine3.23-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/netdata-agent-sd:0-alpine3.23-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/netdata-agent-sd@sha256:58b9115fb4f28a9ad147c60c0c73ce6f4744e4dd8ebfa324e26fbae3f9b8f507
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/netdata-agent-sd@sha256:8972dacab75e77daceaa9167144fff39f1f4d2844ea2f8ff009d9c14e9adca9f
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/netdata-agent-sd@sha256:6c6141cc5ea071eed5a5de2d895e63c79c346afbb3fede2e28f6279c029e0ef3
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/netdata-agent-sd@sha256:3a30fa6b8106e37143445b8d4320a8ba513816a56aabf2fc4b9ff62c3901adac
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/netdata-agent-sd@sha256:8f4154d272e876b06cb1acddaf95fd9528523e323f8baa53d58a9e584fdb4d09
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/netdata-agent-sd@sha256:43411c5368d62c49e2924948e190bcf27693c7d3e8f766ee28148216b76e3150
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/netdata-agent-sd@sha256:e358d1623ec5697bf340132c9bdafce123af2b7510425bdf40e4833e974f6f85
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/netdata-agent-sd@sha256:cd1a8372e87ccd84c7bbf20601baf4423760fa9a5099d5a56fb32a4c706d685b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/netdata-agent-sd@sha256:8957f21eaf0192ee343a6294e7a1b9bf240206f7487444ca9d927a25f3356ce2
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/netdata-agent-sd@sha256:024a686e74c9bd407b6f5d2d48c590c703206fc2aab6c50612b452a3ff652536
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/netdata-agent-sd@sha256:a6d6bf9da946b8746eafb23cf7c29bbaecf0f7f17af2d66919d00b4bb1ca682e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/netdata-agent-sd@sha256:96824d8e2654c00cb1fbe95d3ae934fc5c7e01d678ca17e8588b4f9590fd30e6
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/netdata-agent-sd@sha256:a08ad9199001928451cf1a27f8dca5c33afc42322f5ee520da6879d239e30eea
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/netdata-agent-sd@sha256:9b96eef0f37f31be07b7ae3c95910016679b84bc70fe7f9c51a528df61e0c041
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/netdata-agent-sd@sha256:b2dc14a3dd22a7352a95a241f47342f591758a94dd688c097ba993336571f593
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/netdata-agent-sd@sha256:fa9cba353cd6fc3cbe66974953966f6c4c1d4b07fc354a4a89beaeddd4bf12b0
SPDX SBOMhttps://spdx.dev/Documentdhi.io/netdata-agent-sd@sha256:187578996d7b680ff8fbfc8c4d298aa6851269d4dbdacc7184f406dc135fefd4