Sign inSign up
Prometheus Node Exporter

dhi.io/node-exporter

node-exporter 1.x (fips)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

1-alpine-fips, 1-alpine3.24-fips, 1.12-alpine-fips, 1.12-alpine3.24-fips, 1.12.1-alpine-fips, 1.12.1-alpine3.24-fips

Index digest:

sha256:a495bf60dc0c97bca3b4619db88752857f7fa500e4e6d566db160e6bdb715bf2

Manifest digest:

sha256:91f476ec6e69802de1889e3b47199fd99c4e8c62b665e54232a0dbc1081bec24

Size

9.44 MB

Last pushed

18 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/node-exporter:1-alpine-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/node-exporter:1-alpine-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/node-exporter@sha256:07a8f2db99d9e8313837f211f7a565d2ae44b443c174cb944eaf9f2b419556e9
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/node-exporter@sha256:64a6cd40d13798f9886bb91759f16e340738220e08f085bcf57457b9dd26d17f
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/node-exporter@sha256:843cc167b5f4627ad7f808c0c44ca19e4a5da5fb9867903b79eec6171d688b7a
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/node-exporter@sha256:a00a84344349c55a3a059045c1fe600365270dffea5de31a148af708a5b3ae20
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/node-exporter@sha256:361957ac85b2527d501600d0c7940c2136cd7be49b7613905d019b95da9b5454
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/node-exporter@sha256:5729b1f2c528e0babd2e021cf57d1feb0e04fe0fda9b6cb1b054bee290b42491
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/node-exporter@sha256:5c795d6688a975b7faf7f66fb33b5bfd1e5fca39a2af1d6cb827abe4382c0430
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/node-exporter@sha256:7b9282cf217a8dc9164100e35326e4a99fd1d413224c779fbbd6e371b1a38838
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/node-exporter@sha256:6cc64c0d787853500a9ead6d33cbf54cfe1692d9051392a0bea6f8d73da5d252
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/node-exporter@sha256:524b0e2fc0fcb3f260994dca5c6e97ee26ac10a1f25d0fb4352e9ac0a76536b5
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/node-exporter@sha256:ace737b89ac88ff3fda1de445343bf67ad467302dc2a0e44cb339001052b773b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/node-exporter@sha256:f0afc6959abd687f0ef131e948b75ac8b38008b4607f49e34e8daed9b44e533a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/node-exporter@sha256:b822e9c00dc00fdabc8c39823128c6f466fe170769539b4a6ad54ee8a7802ad4
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/node-exporter@sha256:e377ff3534fcde91e3f5db1d104a97523ce890049f72c63f25c4f7c9997b9f21
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/node-exporter@sha256:fc66a81910772c3e3df2de243c18a44f358694be7dc1ca147b1da0ac4f4e73a1
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/node-exporter@sha256:65f88fe7cb1042ad213203d2d2a9ea9e34041e651f88a85a6ed7890a464ce63e
SPDX SBOMhttps://spdx.dev/Documentdhi.io/node-exporter@sha256:daacac25b8f8790ae02640e3dff9886d1f06cdd9da526a28b4ea77010ea7df03