Sign inSign up
FRRouting

dhi.io/frr

FRRouting 10.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

10.4-debian-fips-dev, 10.4-debian13-fips-dev, 10.4-fips-dev, 10.4.5-debian-fips-dev, 10.4.5-debian13-fips-dev, 10.4.5-fips-dev

Index digest:

sha256:838ff1b40d060ffa4a5bc8444437877c8b4596504e86dbfc1652646660a3c1fd

Manifest digest:

sha256:b4c1b02bd37dd074edd27abf229eaa857027da9f2b79037e79b4082004419ad0

Size

81.82 MB

Last pushed

11 hours ago

Vulnerabilities

0
2
4
3
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/frr:10.4-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/frr:10.4-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/frr@sha256:96973f460ef08c00c8a70db2a02b3adce88d40848703dcdcb95a1f806a63a7a9
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/frr@sha256:32829c0e0f9a7226d140257dd9df4c47764d83096582b130bbec8da8321b0803
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/frr@sha256:75621afc083d7778076933f393e9347208d9af2167df00e39d9cbad9c212fd28
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/frr@sha256:91eeeb5b1419622556dcd3644bb5ba3aea44628d4e53447f8348da4e13567ea4
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/frr@sha256:be0a87ad831a577a6f94df2a93758834c5a8eddb77b9ea6ccdb4b270d530823c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/frr@sha256:caa7e0ca061d0a60c730dae5f07f3ecc0b2ddc15e587000b0cb22d42ff7910b9
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/frr@sha256:434225fbc2e278290821fdc4c771d73df9e4cec260ef6cad716ef42d0fe7290c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/frr@sha256:cb48697b646c09ec7d5d4bfa3fcece0f0c933a72d4e7eb06a48cf816536bff62
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/frr@sha256:2521437dd32f448fc3d6f7fe64c2554e4a3c2e51bec22791ac199cf45be031a2
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/frr@sha256:01ce2775593427f9f55b2698776edebe2038ff7556d9e65e48c09f3b950dc854
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/frr@sha256:748f0417570351822e219e64f7b4a169367accc0470010efe9fed8e8b9f63f67
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/frr@sha256:5a5c4efa7b3c88881f7141b2f1e9660df84a85005f820351b8e4b5cb99f52d2b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/frr@sha256:3a2f4c05bbd0a7a66d9b61b77cf9d27c969c6b7cce873181c8241996d7ceb9a9
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/frr@sha256:ad28df1e51878442770a26c4e5856bcfc270a984aee84f496be558944da1ed11
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/frr@sha256:dc5a042c548a45676e22bd957c9b83b6aa1dc8112ce770ff0ad3386e82749446
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/frr@sha256:aea3c7e9a94858ab012007ee88bcebe98de6bca120889434fa46cd6f96f50612
SPDX SBOMhttps://spdx.dev/Documentdhi.io/frr@sha256:e53d2964551d10b290998d70fdc0adc5459bb04984bb3383d05573788b1a5a52