Sign inSign up
FRRouting

dhi.io/frr

FRRouting 10.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

10.5-debian-fips-dev, 10.5-debian13-fips-dev, 10.5-fips-dev, 10.5.5-debian-fips-dev, 10.5.5-debian13-fips-dev, 10.5.5-fips-dev

Index digest:

sha256:36cb439fdafa08f4207611ebbd7089e54654a8ff75dc730b0dd9203b2b2e3eaa

Manifest digest:

sha256:3d834da7619aaee647df24512fa98c1ada7c3a88ba3fa68e92c0df6bdb68639c

Size

82.08 MB

Last pushed

6 hours ago

Vulnerabilities

0
2
4
3
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/frr:10.5-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/frr:10.5-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/frr@sha256:01969c45f3d96740e17894fbc7331adf4c92907c8c2eb506bfed0da4bd122183
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/frr@sha256:bc599240d549e67b0d1d1f98bf5b27ea376dfc5f58c641467910208d70ec70d6
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/frr@sha256:e84a39c709f7386acd76de77784ee5a8ee169d1f4791002a91a1ece6f0967d97
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/frr@sha256:28b580a883dc55b6fca2dd876e7bf7ef25ad4e61dacad88858566c6b6c9f6121
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/frr@sha256:9bcc2b69969653954d03ee03e24509d9a1e2b37e5d106d05fad82387dd0b8ffe
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/frr@sha256:9cc909983fb96b27999e847fc5d3e0101e86773bdd80928d675390f5ce8948ba
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/frr@sha256:3bf4465382a872baa74672ed24c543476496c9f31882eff99bc8330ade3c2066
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/frr@sha256:1f413cedb7224e10e49818df2ff74cc1fc3403414590571fdb8db7bdd9b1f2df
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/frr@sha256:a0e90059d29417c11f1642cedab713df01de831f2668eed5f75b1a1693c1a4f1
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/frr@sha256:c82cc538b498fffad5b0b13909c9794fb81e3383f18db8836d4cfa742aa3c4e2
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/frr@sha256:76757da9c9af75625fa80cb40b7bd948a3fb5b2db07f3bca7dbfbb3d5e8815df
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/frr@sha256:76f260222bee290cbab11b93395dead5677d67b7ee96a35464242e1d58346584
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/frr@sha256:5710678fd29f1880d7ed90bf0128bf871fc53fa40ff6c3f411f4eca971306582
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/frr@sha256:558373be0497303f05820a6f37c662b203cf1b3c039de2a962b25bb2f3275a0c
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/frr@sha256:51d9ca524475fde60d5c469eca28405ca9c1cf4d0fb969b2d72415d9527820a1
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/frr@sha256:01780161c91ab8d0b2d29c28076bdfb580c81c67785291c0c79e7426b6079c33
SPDX SBOMhttps://spdx.dev/Documentdhi.io/frr@sha256:50a045557f520f34df107d6b23c9317c704a49d454ae54837bfdd0afcd9ca430