dhi.io/blackbox-exporter
0-alpine-fips, 0-alpine3.24-fips, 0.28-alpine-fips, 0.28-alpine3.24-fips, 0.28.0-alpine-fips, 0.28.0-alpine3.24-fips
sha256:f579b18125c6f0ec58c5b26bbe4c216ed96d51fe91b938ef24c6c9efe10d0d87
Manifest digest:sha256:e2451046f23c42faa99c53ded5699edf46307d4fd31c90421c70fb109225ac4a
Size
11.62 MB
Last pushed
3 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/blackbox-exporter:0-alpine-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/blackbox-exporter:0-alpine-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/blackbox-exporter@sha256:77cda211390b62f271505c8dd45d0f3091ea57c9763c64dca8a589485d24a076 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/blackbox-exporter@sha256:baa900579fd3a6d353f64a1496ab0f860fc72d80c3121eb562c3b93b626ce015 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/blackbox-exporter@sha256:5c99b5bc88c5a0697559e3b16a8e36d1003bbac790720180534283db6be8bc8d |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/blackbox-exporter@sha256:517812aeff8dc5237659402719f5847a2167cf5fc5601531cd1f076e5caa6f61 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/blackbox-exporter@sha256:56848583dc872432ea7463ae3ea3aeb0a73d3f8505ded442cbad3b5829ddb2f6 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/blackbox-exporter@sha256:14e7c6a5c93612116714e4c46fd63923b8bb223bed3fb46c0139a970b04ae212 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/blackbox-exporter@sha256:ed296bc4e2c81bd15bec9175aef9bc42474bf19a5f71e7a41aa18a314155ba00 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/blackbox-exporter@sha256:1d39668a872e2dfebed19694e086861cb02e1b00dbc3c30d64ce2ecb15ebf67f |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/blackbox-exporter@sha256:5157ae9d0749e28fad5b9a3a21e5d421a082870f1b634e9c4e4894da40b5c08c |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/blackbox-exporter@sha256:270348aa0df402fb41d0c34589dc24ca40ceab7798fa71c7fb34a9208254e071 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/blackbox-exporter@sha256:a5d4bb5268b7c2d2f7c5ca05859a610de24a6706f096d09b9c2e2f5a70524823 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/blackbox-exporter@sha256:af5011146d915e52b5de8e337a9de0c661fcab4dae3c940b082b2a51e429137f |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/blackbox-exporter@sha256:a0110fc3635fa583ec9ed6e21a13c16c86eee557dbe22f03ff66ca80873599b8 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/blackbox-exporter@sha256:00664532fa672dfef9f434699e29e4f92f42c4466825475074488baddaf9facf |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/blackbox-exporter@sha256:cb6f43e9e46d9cc71d42a159ac82315309fdd261096615b108a49729a723e3ab |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/blackbox-exporter@sha256:61b24326a963640ca3f295b56cf6269a89a9a35cbbfc144287a6fbbb51a4f829 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/blackbox-exporter@sha256:f8ec0508ac81a199be11954445bd487cbda22cd0d0868b4f82a5f07c91b45cdc |