Sign inSign up
Prometheus Node Exporter

dhi.io/node-exporter

node-exporter 1.x

CIS
linux/amd64
alpine 3.24
Tags:

1-alpine, 1-alpine3.24, 1.12-alpine, 1.12-alpine3.24, 1.12.1-alpine, 1.12.1-alpine3.24

Index digest:

sha256:9abca9855c8933b4d5b24c03db39063f94290b1c2660008f917386a164529ac9

Manifest digest:

sha256:43eb06b2c2949cf5c7dce7c13c0d89076800849a563c3b8a8a024659e5a8979b

Size

6.05 MB

Last pushed

13 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/node-exporter:1-alpine

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/node-exporter:1-alpine --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/node-exporter@sha256:a026f6722a1a663fc31a62422fcf4fef3a62a8ced33a8f237c7215ea876b6422
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/node-exporter@sha256:53ed43f665754e481a20aeeb8bd27e8c477095e444895342d2dc832dc725fdd3
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/node-exporter@sha256:f2a59349b4550f9ad38aeabfecaf8d8a26c8093509ce05c88007bf389249414a
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/node-exporter@sha256:4d77afd3fd97f525da948fa4800f050e84392043acd5a1c67c8b3ce599dd26c9
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/node-exporter@sha256:93f11f1c68bb35cce3b6118afb2a15da6812b94f9d75c45684169a540ccb2ddd
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/node-exporter@sha256:4d22c6b30f69d80ca51135b57d030a1879d7cd72dd4b9c0fff34bf8039ee0f15
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/node-exporter@sha256:3185f58f8ccb63874ffe24bd0694e76e28812dc6f45addedd80c8cb9afe12a92
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/node-exporter@sha256:9bc43c10beee46fd2ccedbcca84d6a5ad4f61150eee1056e87ad18575260609e
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/node-exporter@sha256:61a4aeaa17e539b6cad1739451c0c8466c11a94095102df3d54a48ef750b629d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/node-exporter@sha256:59981dec68fb62847067e1829a80c4394ba872e5255e5b9b94742e34cd909325
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/node-exporter@sha256:a932993f93a4f61e9c4ba229aa99c659b1c265a4dcb48c0524ec189a1fd08277
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/node-exporter@sha256:248389b73dc765c45bf6761bcf9391d0b17fb449fa3977f8c4533d652f5e23ae
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/node-exporter@sha256:b6dbfe037b67e638b92825cf9c0c66722a7ff74d86d461d66193f827002c3668
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/node-exporter@sha256:b7ed3a9a40a5aa91f0c312f14c90eb4cd0c9caf14847565af184ddc50a5a8ce8
SPDX SBOMhttps://spdx.dev/Documentdhi.io/node-exporter@sha256:5ef5aabb7809c66a813764c7714fd62d751309f7bd7e6cb8ff3547bb47260b5c