Sign inSign up
Nginx Exporter

dhi.io/nginx-exporter

nginx-exporter 1.x

CIS
linux/amd64
debian 13
Tags:

1, 1-debian, 1-debian13, 1.5, 1.5-debian, 1.5-debian13, 1.5.3, 1.5.3-debian, 1.5.3-debian13

Index digest:

sha256:44d1286e3ca59fb7226bbe9c56e0830ff255ece3de48d97d55b3bae7cd1daffc

Manifest digest:

sha256:b0cbfe49739e1bba4354de7e5db2421902df2fd5f1df7b14acb1ca8b21c60ba3

Size

5.22 MB

Last pushed

3 hours ago

Vulnerabilities

2
8
0
0
3

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/nginx-exporter:1

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/nginx-exporter:1 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/nginx-exporter@sha256:1aa117c22eee42af60d389772c9dc6453b0f407f97603eb528469abac7bf5ea1
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/nginx-exporter@sha256:0d1a28c6e25d3a57632942b2744d9de71821ae70aa4ee4db51ec3e6e7eb979bd
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/nginx-exporter@sha256:58473c3a7aac657c38276a9e3accdd7b90e5f51bcc201f8c50220d4a7403dbd1
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/nginx-exporter@sha256:056642baa8bf0af59253b8a630500f4f915e3c354d8558ca94df436c1b444110
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/nginx-exporter@sha256:0df352812e5f1ced1b1912a21a845004a4a336e18718cf432f5c3c197056f84c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/nginx-exporter@sha256:16eea0c929d912210c1d9605314e4e585840e4101eda17be814da6d586b33979
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/nginx-exporter@sha256:c2c4218038506a9e47a29a43965c585a283a633c4ad2998d35721d8b1def4609
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/nginx-exporter@sha256:569b1020b514b37171ee19ed26236fc7cb27cf794631f14d34ed4c7dc858acdc
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/nginx-exporter@sha256:decf7f2b10de222336f0e6385e97f026bbed3e5b51e5f9322dfea67b12809097
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/nginx-exporter@sha256:109af951ed0071c94139cf1adfc9d5a040828fa376797674093598fc09f7bde5
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/nginx-exporter@sha256:7a3f509710ccf4b63e848aa45b38308ea563e56144d813e75010ec069c56924d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/nginx-exporter@sha256:12c32afdc24620c0f5facad53ef954dea6775c9b1980688a3de8f7158d5b4931
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/nginx-exporter@sha256:8bf58330f7388d764d6f2b1e5d3d0b32d39d91a8dcf36b0e82c6f63f22e717f1
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/nginx-exporter@sha256:745e9b898c25d43fd9d3ddac641dfe3d1aea6c6930325486487751456ebffe7e
SPDX SBOMhttps://spdx.dev/Documentdhi.io/nginx-exporter@sha256:4a7830aca6e5f87e3c4090187b71ca6a0f47f342acb015eedde5683970b37dd6