Sign inSign up
FRRouting

dhi.io/frr

FRRouting 10.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

10.3-debian-fips-dev, 10.3-debian13-fips-dev, 10.3-fips-dev, 10.3.4-debian-fips-dev, 10.3.4-debian13-fips-dev, 10.3.4-fips-dev

Index digest:

sha256:2ea4b74d7edc791504911456be2769b2b98847e99a54165d4fca93169ba67880

Manifest digest:

sha256:c9d458c54a8767eed8dcbe5cd31d8cc1fe2298696eb7a846550ef0cbb4562b9b

Size

81.56 MB

Last pushed

2 hours ago

Vulnerabilities

0
1
4
2
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/frr:10.3-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/frr:10.3-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/frr@sha256:16a0f25ea38901a36c09d83838f45cfcd3e5a5b8e4667d9e5f46e8483a0e80c5
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/frr@sha256:66adf1f308eef8538e56c2407290798e403ce5c66a13b62b6c2ec0d38af3a8ea
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/frr@sha256:95e86c7e255542b9bb4fdc11992313f228fc28ed1c8ee59d9165d7ba0fccd18d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/frr@sha256:47ef5576bf70b0dcec55852c5e461539a2c019f5fbaf7459df19b28de64cb409
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/frr@sha256:1ca7b72937abd0f54b9b59303a077d0cab81da84934eb8164749301f38bd42d5
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/frr@sha256:26340fe6444f898594f7f8aab321ff03bb044629a1be85706540b11ca200dce6
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/frr@sha256:65e25d36d83853269cca87377344af8b45c62c8e49bbbb2fa50c0e8336368f90
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/frr@sha256:d1d0cdb99a3daa1fc184dfe6be55bfdb8bf68b539bbd54e6142b5a0dbee1f3e6
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/frr@sha256:c848324ebba4ed17aee209d003a818f03cbc35233097e8103f25959d1aa041e0
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/frr@sha256:d046f887f80184e87414cc0be814192ba88feffb977bf73d08c1a37d429749e1
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/frr@sha256:d0d0f098d63cc8c7472b14567b6d697c91b56e2871aaa3da3975b6abd4ebe33f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/frr@sha256:ba36e3ce18b47e79451f8ec8d5afef9e6e334925247c4fd04922cc4052080110
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/frr@sha256:e923e916213a2a4055c14f8308080c2e2fca25b2227d2d8655befbf9983250ff
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/frr@sha256:ce4c23926902ace5ce50af12aeeac744521f46e13d0caca08aa118556f63b6a3
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/frr@sha256:c2d1a3fda5591c49e81ad311a6e9aeeeea294fdb49dcbfbb6a9f6feda24d4103
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/frr@sha256:6d83e9f16ea02fbe7078ca9c44e9298291e9c33eb1f3d1fdcc23ff1960066198
SPDX SBOMhttps://spdx.dev/Documentdhi.io/frr@sha256:25877aa2ef499d71c197c5c05677ab3aae6bdfb9adc4492c2a300bd45ca48776