Sign inSign up
FRRouting

dhi.io/frr

FRRouting 10.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

10.6-debian-fips-dev, 10.6-debian13-fips-dev, 10.6-fips-dev, 10.6.2-debian-fips-dev, 10.6.2-debian13-fips-dev, 10.6.2-fips-dev

Index digest:

sha256:cdcf196626ddc46670d7b29e0d67d21083e1c4642d522d6e4bd547d4852c9312

Manifest digest:

sha256:872e6b98de1ae6eef31de85617b6ca7a1cbea5f2294c0ffe0f334a1a96cf8dbe

Size

82.37 MB

Last pushed

17 hours ago

Vulnerabilities

0
3
4
4
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/frr:10.6-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/frr:10.6-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/frr@sha256:dbcbeeabea654b336ab7f4572f1cd62825ae44be3a9420f6f70e18033e74b761
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/frr@sha256:46fef79f3351b367d3186fd29c9d882c35864a7a0d479cdacf1b71ceb7f7a6a3
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/frr@sha256:eae3ee7aeff58b694bc0811ca175f81b59260faf8d53d40420d54ce1478db6af
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/frr@sha256:58149e155ae2cf62d9c83747be769b0071583f2fa1301ff97f4d3b8957f5873a
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/frr@sha256:a06656bfec902fb17932a69138b8d62ab553835cb9efb213ea9915ac8d82ffba
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/frr@sha256:b8749a406537929653b3363c4508aa80ea95699c9d9512ea8461cacdf04d2464
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/frr@sha256:42d9a3ba4d8f939e5aa0674993ab1bd17f859cdfcb01e8e577470a720371e256
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/frr@sha256:acb604680f38f75ad57d369d3b1fc627a65fe4acdfa17204227e8e7f39f40253
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/frr@sha256:ef1965aef9693f6a376836599c6e60109332cc452590c60b2d6d1ee027f655cd
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/frr@sha256:ddb86d5aa9eb3ea018ec969d521a77596b5797fcd56e2d702a3218b84f95c955
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/frr@sha256:8fae222813de41527b48370e7c9e8882cace753549f6fb08787aa90b986c9c68
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/frr@sha256:66a609cde346f5b9f39e74cd7f7215511cbf4f0d733d736fc8cb77608e8bc25a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/frr@sha256:4b27593a719f6a0647067375b4964a4b24f7ebc6dccf5243ef8fd2812821d5ea
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/frr@sha256:5c8f189bf0593c59dcbbde5d095b3600d7dd1e041e16abe57b217c5c466c3cba
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/frr@sha256:da3e0e2471241c59dcf4382253d695c3b3e7d5080cd5c5ccffe1a858e9faf6ed
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/frr@sha256:4969d8f7d5e54b75224cdcea0402894c376c44a1ff3ef386c5d04636e065b459
SPDX SBOMhttps://spdx.dev/Documentdhi.io/frr@sha256:451896c989fb32a7c20d4d24d3707c897dc8e0e04bd594bd526d41ed18936125