dhi.io/frr
10.2-debian-dev, 10.2-debian13-dev, 10.2-dev, 10.2.6-debian-dev, 10.2.6-debian13-dev, 10.2.6-dev
sha256:619e8e3bf6e36355d2320ff1ef062e224c5d41c9ad9a1e14e47bfd867478f2e8
Manifest digest:sha256:2f8614acd042fdf979cb09cb3d00ea81fede6d1595bf58a0db1ae0c5a6ffe67b
Size
79.70 MB
Last pushed
2 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/frr:10.2-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/frr:10.2-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/frr@sha256:7f11547f66d1ebd4f7c3cb723b1098d878f7a276e79f9ed2dd86340efc66bc7a |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/frr@sha256:3c4cddb770f7d31fc2b09a6dbfef3c8a01afdf2392ff842e03b2711f68452441 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/frr@sha256:e205c7cea8541dec239b1b55f4a94f5cf97515dc8e2bcae36a21b533f3cc31fd |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/frr@sha256:500c82b7d153039872137e4acc2a134d422b48c5b3f44a049b552fc2819c2c8c |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/frr@sha256:1b2a71459efcff64632f021a06b27c95f204b796e12ae2dab2ecb12b81434eb7 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/frr@sha256:e6da03bc870d638ba23f007fe3bccdb7d60cc9f8e5f1373a26da393e09d18d7c |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/frr@sha256:f510a0f4d255a9a545ddd917e470b57372e275bcadd8469fa842377e06bfbdcb |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/frr@sha256:a94410812ec704bbc4947336fc508534e1bfe0e000017ed470db41a99ffe581a |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/frr@sha256:63b20c04eedfbae8bd7654392dc4935622fdaa425b8e9d2365d136df48d5df2a |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/frr@sha256:5d460c3cd3dc9a234c20898a0c7ec4cd7021cf924221d78797bed301cb7b6b6f |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/frr@sha256:e58b9be88ae14e4e07dbcca24dfa946404e70fa6c55a2b05d820f3f752a215c4 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/frr@sha256:46df724d1f0c2db7701110e927ceb3169f3450bc452c7a67752d526e957a3f91 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/frr@sha256:908dd20c135d62fbc26b39a2276c8d85370d0a3b90e56e6eecf523713c43c10c |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/frr@sha256:69ef078bbb3e51df463b4f272b02a932402413760c40409e8832343e6f0c0a93 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/frr@sha256:34021e97254b3f840b68e7e7dc10b99570c2cb2674a358f8df7d1459e9d86d4c |