Sign inSign up
Prometheus Node Exporter

dhi.io/node-exporter

node-exporter 1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

1-alpine-fips-dev, 1-alpine3.24-fips-dev, 1.12-alpine-fips-dev, 1.12-alpine3.24-fips-dev, 1.12.1-alpine-fips-dev, 1.12.1-alpine3.24-fips-dev

Index digest:

sha256:64723b89808c3afcfeed9740a53c62deb6cc94bec4435989b44a63a7e177acd4

Manifest digest:

sha256:442bb067dd4bcabeafab7210065d521c109e042cfa5d7be3de52ebc0fb7009ef

Size

15.63 MB

Last pushed

12 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/node-exporter:1-alpine-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/node-exporter:1-alpine-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/node-exporter@sha256:16f504680f8fb83e6c32e091a55f7bf2a00cd59ab380bcdbd61aff59f97769fd
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/node-exporter@sha256:ae88fcf5a19fdc5c51ae3a5d73034249dc2a2138a712c039630934c5f520b3f9
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/node-exporter@sha256:d68a1c2dfbd7177fe71591a34f6cf093721b2f52119ea26c85034f754f9c629b
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/node-exporter@sha256:d4b285e7bd2faa513ebaa9d5b7c2af8d5a7f61d1fb4f3c9b2eff5bad529518f1
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/node-exporter@sha256:e4a185025b4cf5e6c8efb70ec241db62f1c0672c6a3a837287b7baa37827f543
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/node-exporter@sha256:a099f6fa8137f51406b99919629c76101aa98e525f6f369df0f57bfa76d94d3a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/node-exporter@sha256:f05012ad4f1fd233c30332453af9d882d4e6d2771a93df315d17ff6f99f96e93
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/node-exporter@sha256:0eb906a16fe6bc6b4dd6721c3181baecaec097ed728a97588712cb19aa41dfe9
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/node-exporter@sha256:138717f6d649db62d6e8adc8686607f0723e4e53b8b4aa63ee4635cea0e120e3
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/node-exporter@sha256:b753a8ddd89f00a56c8511d76f5703fb028167db9ceb73f230e83aacdab3277e
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/node-exporter@sha256:1d83ebd45bd23920edd55bd95c9157a91b9f3c0100d1b3c105013a6250d30f5d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/node-exporter@sha256:3b6028d379cfab839b0a056ffc5c822b10d746055b4910ecc8eb85f69ed5c38b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/node-exporter@sha256:08f8983d40beb330154dc40e0c06f8643d4f2d9147b6bc4cc78901b8e5d996a1
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/node-exporter@sha256:9098c2044a1a6f34818d276d5f4e63525949047db146391dd9ade064ddcc3f03
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/node-exporter@sha256:8226dbe8d3b1c7af8f23b04e0c984d614cbe0f4e88bfa6a5d6c6c3c9c732506b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/node-exporter@sha256:d01b7665bf50ec644297c5f713d406f3186105b85b1950855212b3a5071fa1ed
SPDX SBOMhttps://spdx.dev/Documentdhi.io/node-exporter@sha256:de41911e4644690837738136a91770a9ad00072d1d96976b51628d48f4caea41