Sign inSign up
Nginx Exporter

dhi.io/nginx-exporter

nginx-exporter 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.5-debian-dev, 1.5-debian13-dev, 1.5-dev, 1.5.3-debian-dev, 1.5.3-debian13-dev, 1.5.3-dev

Index digest:

sha256:93cb9f260d90f291fcd95b751be9cd78757c39501ff42fc3efac63eac563676c

Manifest digest:

sha256:5c8e798b26b40e4d7b3ffaedc51a1a662beff3de355c888f0424eac88a42ffca

Size

32.07 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/nginx-exporter:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/nginx-exporter:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/nginx-exporter@sha256:c96f1367682f74f0d7c2036b621bd1b67a0a7853008f91c5d0a13d6703002904
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/nginx-exporter@sha256:e9d146d3d87b80c0fb53bf94e80b7300fcb44460bded8a7f45bf6ec6e0b60ede
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/nginx-exporter@sha256:b84f8ce97abb66de5d304bb5f6c4d09235cbe8744fc21620308ef330c53ed84b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/nginx-exporter@sha256:a24865c1e2fc91e91ef871b03470f7677de6328b15a4e78e198c22cd32eeae73
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/nginx-exporter@sha256:2c6b2d12a4fa59457217400972146e650ceb07ffaf30d4f1cc721756bcd7ec1c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/nginx-exporter@sha256:b78b33dc8d6c8ac5ddf0605905ceccb78742d374ceb8f1c1c51375ac79f9e354
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/nginx-exporter@sha256:0061d4d9ae20e8a0dbafacd93a066dab8397c4584f77c82eb80c7a52dd23cce2
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/nginx-exporter@sha256:f8fdc67aa9ff1127682cd4fc6081118370123307108f72e4d470019dfe1c7cb5
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/nginx-exporter@sha256:865d489be05140ef155287aa9f4c2450b9c2216d761e124edcc232e6fa774883
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/nginx-exporter@sha256:1af678db101677a78186cae879dfbef5e8180111a06cb5a104a58d23bc1defbb
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/nginx-exporter@sha256:6bd50d5da24ee784dd9b234a75dd81dcaf8f1c3ddbd7cb2d2d380e1e353af7e4
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/nginx-exporter@sha256:6aebb742cb932a0804b31bad0eb7aef4fb5dbaa57559c49d9954f235e06c89ad
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/nginx-exporter@sha256:cfe78f4b36593ed97cfcdf98034c6dbacc9a509e9e862bb7d2fdd847e0b97b88
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/nginx-exporter@sha256:db1014926002fd3b5dad0d3237b0c21cb3c5d15bda6afc8fe1161fb500b80bad
SPDX SBOMhttps://spdx.dev/Documentdhi.io/nginx-exporter@sha256:dc268e8ec5d0914cdcc480d3ed87d689eb34418090db3c8785fa2f8bebfea23e