Sign inSign up
FRRouting

dhi.io/frr

FRRouting 10.x (dev)

CIS
linux/amd64
debian 13
Tags:

10.2-debian-dev, 10.2-debian13-dev, 10.2-dev, 10.2.6-debian-dev, 10.2.6-debian13-dev, 10.2.6-dev

Index digest:

sha256:eed338f19deda8e2c0d373c17e64cf1d8af92025f97dc6f0e21f5f17bacdcdd2

Manifest digest:

sha256:e16bb2cb4127e19fc63ac2ebe5685412bf06876edf9c6414a17c5697a846a930

Size

79.72 MB

Last pushed

2 days ago

Vulnerabilities

0
3
7
4
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/frr:10.2-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/frr:10.2-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/frr@sha256:27e6cd1e73d89a4a32e4df2fe3fb88daf8838bffe0d680cc6939afe2035fc84b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/frr@sha256:9d145ef58be14db2282062eeeb036a199944fbd9f31ac79708f2c3e60da0b84b
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/frr@sha256:a594caf3b78042b21c0fab1c5b26a51f40cc10ce26829f26c6a4aaba4543ae76
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/frr@sha256:731ea883f3032e44694402eb2080564063becf8b2d7a7951cf0523ba4689a13b
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/frr@sha256:f84aee6572dd483196753cceada69ad501c7523b3f0cb1323027b4a720a98d8d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/frr@sha256:5a6ca1e86b0765d66bf798eacccb659ab8cb194e960eed345d90b650dddf885d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/frr@sha256:5be220464cdc8824763a6f76b8ec396a0e6e1bf58a739a447f84b2d379a0916b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/frr@sha256:c3cd62b29896f29259a0ac9a093e8ca2abcd3dbf39bd4bf611ee153214ba5878
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/frr@sha256:04032989c233cd5fae6d4e07e9e83109afdb87305040567992a1a9a0f42c468e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/frr@sha256:0d935885937bc27f5cec6d76785384a3d83469eacfeca9146fca01fbbf7f62fe
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/frr@sha256:b856bc22b29bf18d765aea6220b99fc5a5c2c971e5652392892da36f2f54f2d3
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/frr@sha256:5e7ba99818461c3209b0e3441699791e1b4289381dc9da42cf1df99e06895f95
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/frr@sha256:7768a612b5ac37982ad6d8f8b30caef2395104eb3599fb2d3bf0c8637667389a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/frr@sha256:7d5c574cb600223c4a3b52e672349b2fecd65e1abd49c1b5624169199bf4529e
SPDX SBOMhttps://spdx.dev/Documentdhi.io/frr@sha256:2a7763b8002b23ca9d6a551fcfec6f0c96119c41f013f130e81680f330245b94