Sign inSign up
Prometheus Node Exporter

dhi.io/node-exporter

node-exporter 1.x (fips)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

1-alpine-fips, 1-alpine3.24-fips, 1.12-alpine-fips, 1.12-alpine3.24-fips, 1.12.1-alpine-fips, 1.12.1-alpine3.24-fips

Index digest:

sha256:67d4754906830a3fce0038f93161484272a66e3427c32321de64ea33a5c8899d

Manifest digest:

sha256:1eebed423ba16738e51f9356e5b1d078032fd528c56587cf2ebf7f9131e58cb9

Size

9.44 MB

Last pushed

18 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/node-exporter:1-alpine-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/node-exporter:1-alpine-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/node-exporter@sha256:c5462a822a3671e21e8a3a77cec03f9a7892212bb837130f2d2287dacaecd0eb
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/node-exporter@sha256:451bdf2f882ebb170645aeac493c6bfb1e2a3e4016c6d1a35d0fda8ac0c4874a
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/node-exporter@sha256:ef1fd430edd8e64859e359d5e63956e7ea84699e32d641f56a9e006889a6fa87
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/node-exporter@sha256:c9464e5e8691dce20518cd72e4e46fcea6e60199aa2242cf82e20177b3c5c3d6
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/node-exporter@sha256:4fbc82195331863ac77b83b742bd4cb02d108c2703fe4b12454595b242bde7b5
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/node-exporter@sha256:d993f5b9b7c5e9443c1738e02a4e0d71d07904c1513a5b31f60313dec59681fa
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/node-exporter@sha256:94533ea295add281766450a7ef16d9f519d5d4fbf803ab63427449492692422d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/node-exporter@sha256:bdca80666b6abf9a0d2793751b577d2c96db7de610d736236cde9cbf1ebd0c62
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/node-exporter@sha256:ec0787d832204e9b31ceab9f533ed19b06136daf7a66449f86b22cd15fb85f86
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/node-exporter@sha256:dc0e0f4ae9dfb430281a60e6e7cc55d19921ccd9cc4a8d83416eaa96c188915c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/node-exporter@sha256:1d888c664bdeb896039a7863dc2e4d707c81223520cf5d36562e8bfec06ad56e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/node-exporter@sha256:fe907e4f97ca4d6d6149f1d38248a2d8c5bf6884559d5959f644bf44a93b27c5
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/node-exporter@sha256:2911571ae96c530049edc3f31296981cd1f9a08d885a242615044566def4124f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/node-exporter@sha256:cc69fdd0ed83c4446d8700a5e4ae80fcd9292c2becb63e6544328b5736ff46fe
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/node-exporter@sha256:0f63ace50571357ebf6f1e4943e8a99e313c270018e5b663d9c088409a0bb1ba
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/node-exporter@sha256:0b925a95e908983c2bc7be489c2c359b4e7b1f3d581bfbaedaa1f8c74f681f71
SPDX SBOMhttps://spdx.dev/Documentdhi.io/node-exporter@sha256:72c9666e6ac08b00822187bda510cbf1f128424e0be6e60eba3a5deed6a99e4b