Sign inSign up
FRRouting

dhi.io/frr

FRRouting 10.x (dev)

CIS
linux/amd64
debian 13
Tags:

10.2-debian-dev, 10.2-debian13-dev, 10.2-dev, 10.2.6-debian-dev, 10.2.6-debian13-dev, 10.2.6-dev

Index digest:

sha256:619e8e3bf6e36355d2320ff1ef062e224c5d41c9ad9a1e14e47bfd867478f2e8

Manifest digest:

sha256:2f8614acd042fdf979cb09cb3d00ea81fede6d1595bf58a0db1ae0c5a6ffe67b

Size

79.70 MB

Last pushed

2 days ago

Vulnerabilities

0
0
3
3
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/frr:10.2-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/frr:10.2-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/frr@sha256:7f11547f66d1ebd4f7c3cb723b1098d878f7a276e79f9ed2dd86340efc66bc7a
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/frr@sha256:3c4cddb770f7d31fc2b09a6dbfef3c8a01afdf2392ff842e03b2711f68452441
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/frr@sha256:e205c7cea8541dec239b1b55f4a94f5cf97515dc8e2bcae36a21b533f3cc31fd
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/frr@sha256:500c82b7d153039872137e4acc2a134d422b48c5b3f44a049b552fc2819c2c8c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/frr@sha256:1b2a71459efcff64632f021a06b27c95f204b796e12ae2dab2ecb12b81434eb7
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/frr@sha256:e6da03bc870d638ba23f007fe3bccdb7d60cc9f8e5f1373a26da393e09d18d7c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/frr@sha256:f510a0f4d255a9a545ddd917e470b57372e275bcadd8469fa842377e06bfbdcb
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/frr@sha256:a94410812ec704bbc4947336fc508534e1bfe0e000017ed470db41a99ffe581a
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/frr@sha256:63b20c04eedfbae8bd7654392dc4935622fdaa425b8e9d2365d136df48d5df2a
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/frr@sha256:5d460c3cd3dc9a234c20898a0c7ec4cd7021cf924221d78797bed301cb7b6b6f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/frr@sha256:e58b9be88ae14e4e07dbcca24dfa946404e70fa6c55a2b05d820f3f752a215c4
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/frr@sha256:46df724d1f0c2db7701110e927ceb3169f3450bc452c7a67752d526e957a3f91
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/frr@sha256:908dd20c135d62fbc26b39a2276c8d85370d0a3b90e56e6eecf523713c43c10c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/frr@sha256:69ef078bbb3e51df463b4f272b02a932402413760c40409e8832343e6f0c0a93
SPDX SBOMhttps://spdx.dev/Documentdhi.io/frr@sha256:34021e97254b3f840b68e7e7dc10b99570c2cb2674a358f8df7d1459e9d86d4c