Sign inSign up
FRRouting

dhi.io/frr

FRRouting 10.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

10.3-debian-fips-dev, 10.3-debian13-fips-dev, 10.3-fips-dev, 10.3.4-debian-fips-dev, 10.3.4-debian13-fips-dev, 10.3.4-fips-dev

Index digest:

sha256:09787a9610053a63b827a74f3da4fd217e338a0ed705e0b5dd14ebf82f7ca5fa

Manifest digest:

sha256:88fbe476b4eab358cabc68ab3b90c0191d58df10b8d41b04f2b9310b5b2e44d4

Size

81.60 MB

Last pushed

9 hours ago

Vulnerabilities

0
2
4
3
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/frr:10.3-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/frr:10.3-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/frr@sha256:2c11e6aead863eee25f5bf84599efe5cee399db63be19654194dd8bdb05c466e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/frr@sha256:6d0f62610661d208e0176d34f956d0a86af291b9f786b4dcaddc74b98aea041c
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/frr@sha256:150d4fd5233079637f247d718bd5a95ac29db093876ed171c16c9da7bf5bb8de
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/frr@sha256:4e6400fd7d7f253da993618a407e0f1e2ca5bd5f42df0eeedcf2a129cf2ac289
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/frr@sha256:9cb7641ec7aec5fa135bbd492ef8ad374cd0102251051928d8994e4dbf54b1a4
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/frr@sha256:4d52183237de29ba8af7a50311274f0a6d741a4df702eaba04eb1665122ce3ab
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/frr@sha256:28c414c4846c6c560969f2e2460a8dccb1d2b58471c77175c7b5b583cb9817ce
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/frr@sha256:077668f0e737ffc2403cd563e29674d96803728b68c66096fad7a6b0be93e856
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/frr@sha256:9a2dc666fbe4c9025e3484ca46e37b461563cba0ed6212daa1ff43cf7e5909db
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/frr@sha256:6415776c83cce0cea33691da75e36ee0c2fa6c93e2a80fd678f6baaaf2d73846
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/frr@sha256:6bda651f676bf71955b57b27d07f4c1024e6572179b97deb3fc13521d77b40e0
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/frr@sha256:546f436359b19318fcb71f99fcd0878949f5593d495cfa709dbffaf9ab21e763
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/frr@sha256:a7b669515dbdba22ba132dd8bd912f247d74005f4b9a2a8e68903f28f042249c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/frr@sha256:51cf2eef61bfb79fa2ed51a74ec0e0cd73b33523b948429fc372eb0538c4cad9
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/frr@sha256:3abd309eaebe04e9c3c7d372da9738587b874b3de93e2f31b132480f38a098d8
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/frr@sha256:894030362281bbda1a90e9f1f2ea972d85fc19bddc34be71556e3520e6443752
SPDX SBOMhttps://spdx.dev/Documentdhi.io/frr@sha256:5e2c6f60f475c5451bbd928f5b97a63fa63411593544d5e8e8f4ce5a281d9d6a