Sign inSign up
Prometheus Node Exporter

dhi.io/node-exporter

node-exporter 1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

1-alpine-fips-dev, 1-alpine3.24-fips-dev, 1.12-alpine-fips-dev, 1.12-alpine3.24-fips-dev, 1.12.1-alpine-fips-dev, 1.12.1-alpine3.24-fips-dev

Index digest:

sha256:e91026ec4df1101984e0ad7a8a7b4a5c350c5b24c549a97979673555dd4eb9c1

Manifest digest:

sha256:5cb27900735414c364e32bb152cd18e29dbaed5ed33625bf36c3585b10579ea4

Size

15.63 MB

Last pushed

17 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/node-exporter:1-alpine-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/node-exporter:1-alpine-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/node-exporter@sha256:a878cd3d5121917dde545697505ef6b27a65cb7a08777f64663922b772c188c1
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/node-exporter@sha256:2a6127a2b8dfd5ca7543a435d6c734aa5f6ea9e87bee433679b3602dc09398cd
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/node-exporter@sha256:4deff9208c8a4cd7a6dec667f8f7de13f39f413a1d01ac433ee3d733bad23d71
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/node-exporter@sha256:cc5032f474567ae1e15edf8d6788c9312192dd9497d08f577d91e262a872c7df
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/node-exporter@sha256:0370189268fe21c8808ea4c9ddc6c35848f66a9499f833ef2188873539ecdca7
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/node-exporter@sha256:1ff57305838f90f32691bbd9f8021f80cb64562a215eb25bb69e790cc514f203
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/node-exporter@sha256:441f0550a195bfd35a64c639b7d79e642676f8858ec2b1d9be7454141eaa3f24
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/node-exporter@sha256:d5728df253dab0aba7e69d95bb22c654ecd124438fb9040b344af7c58533d416
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/node-exporter@sha256:9652ab5071fdc7a252a603a17d5e3b3c816e2c8d8221cd7c8a8a816879e67ff7
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/node-exporter@sha256:85c6cefff10f5a6d4b05aeb1b927e4c113ae0dcb0fa74d8f8c4ef2e53c4298bc
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/node-exporter@sha256:dec5bf630fd1153729ec6d2086af73fd0e727b663ff968ca77de2a960c57d7c3
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/node-exporter@sha256:4ccf4e564bd67a6721f995099825873ac5ae21b7e1e2c52be409aed07b4fb41f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/node-exporter@sha256:74bff4d65e2af24b8e9a29ec4988d9d7c07f9545a9c3aa9802b38217bb0c3f62
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/node-exporter@sha256:083352403b79a6329efc881634cef3ff6ba0c0aaa75773534a5e397d6b338ecb
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/node-exporter@sha256:3a6ac4a7a5bebd71fa3753c466115c02bbafb15bf4b4844dc361620756b65a4e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/node-exporter@sha256:be2e08ec79d17a4aca38b8d3ba354bb5e5e85acbeae2b5c0f8793d46d36ab0ba
SPDX SBOMhttps://spdx.dev/Documentdhi.io/node-exporter@sha256:c0386a93857384b00ddcc375dd43f9e357bbb06a78cfd73435f34d7e139935cb