Sign inSign up
FRRouting

dhi.io/frr

FRRouting 10.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

10.6-debian-fips-dev, 10.6-debian13-fips-dev, 10.6-fips-dev, 10.6.2-debian-fips-dev, 10.6.2-debian13-fips-dev, 10.6.2-fips-dev

Index digest:

sha256:6ed8ec81750912db93a2305a11163ea8009878076bf8d656632a965e98586b47

Manifest digest:

sha256:f0bdf0931bbf462b334afc4e48bc7839307d1732fa91553c424725a84f71c5d4

Size

82.39 MB

Last pushed

6 hours ago

Vulnerabilities

0
2
4
3
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/frr:10.6-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/frr:10.6-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/frr@sha256:98765470279e8cce0f55890e1582a436825703a4646f598ef2b2359039711c88
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/frr@sha256:73dfbb222c57ab033d951d8b7e178356c5326fb95611e25fa894ed259622c875
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/frr@sha256:b9405619fa0b27c6bf4721b9bb2bcc8e772d80b683e0a38c18b2fafa1224fc3f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/frr@sha256:c2a25ff6220d0fdd42089c972756550f3c7e9d72db44096eb07d4120f314cf5b
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/frr@sha256:a842c6c9a1f1710c11bfb72980ba18a82d1d81e5fcf69e6a3eaaf04bd3af2e84
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/frr@sha256:7545b3f8b68d24efaa68de7da7907e8782663dbfd0dc9c6d878a30322da85854
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/frr@sha256:8bb195ac03fa14cdcbfcca6dffd94feb591d3780404428ca3e5e31c7dd8e2718
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/frr@sha256:9ea89ab45d22f4e788d6fce9d4a81a8f42a52415be81036644c09c4bd9483615
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/frr@sha256:12f0013943315665623bbbb15e0c80dbc6aee5db97051f37d74e68bbc97386b0
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/frr@sha256:a11150221727da24f5abfa7edd625a3591096bf8b628795d99b9266c1b27e1e1
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/frr@sha256:fecec771bf81be62db0de7205292f0c07190c0e8e3f93d719c34f1016e366c81
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/frr@sha256:c79e5d17eabef28613bd4fd777a3338c30018ebaa31cf24f1d7613d50fcee0c9
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/frr@sha256:ce81bbf9088fc31679b62e2f4dfcafe1f25f7f7a72c5875dd13ae4a943a1768f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/frr@sha256:d11b5fece9a9a6095826ead2efa3935fbf38fe964c653022e7c3a28e9017109a
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/frr@sha256:11108ac3e16fa6eacc302f311830d49ac6d906237a7fdaba88a0d507a97ebbce
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/frr@sha256:6bf07e94199796dbca90fff7bdb0d236e92aa77c8c7cf39709b32aebedb3f65a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/frr@sha256:c5ce520c614427f0718fb67255520bbddd1d0eeea49c63605eba6ed7fbc19e88