Sign inSign up
FRRouting

dhi.io/frr

FRRouting 10.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

10.4-debian-fips-dev, 10.4-debian13-fips-dev, 10.4-fips-dev, 10.4.5-debian-fips-dev, 10.4.5-debian13-fips-dev, 10.4.5-fips-dev

Index digest:

sha256:bd0c7e5168dda73592005218ca15121c07e927cb75f96898099e1d0c6a9ed21e

Manifest digest:

sha256:02ff0d00df270d22df2bd7cb14474e15ad44905fce14d70706ccc1640a23e30f

Size

81.79 MB

Last pushed

3 hours ago

Vulnerabilities

0
0
3
2
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/frr:10.4-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/frr:10.4-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/frr@sha256:eb5e3bd441e958c972e94838536d09147d178c8df5d4ea9fe1129a80a64fa674
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/frr@sha256:16a331e854e87ead4c203ad0ea070a9764b61809edb09155a946416497a8d7e5
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/frr@sha256:7f7d01dd0becd486da9efa4370d598b4e0571bd899b4855ff933ff44f773b077
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/frr@sha256:42e31bd0e929104b0ea11b92b143d24571bdf75fac92064fc304eb687cef783d
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/frr@sha256:53e84078aeafcd731dfe21ff2a4ce0a0697599b3b96266cedc3b2aaf0d5fdd70
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/frr@sha256:860547d40bf0eb43b7ae26f90b52b75649e4a5d0be5da69a2464b3c541541c81
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/frr@sha256:b11e032e18cf348ede55395da890a4dc06af859d3f135b1b3c9c86e2a40282ee
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/frr@sha256:584d1ffa8519078a690e3b7170fbbd485a3f331ba3e05325cedb085ff3257841
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/frr@sha256:4843154cac004acaf903a81e60f5023da9a03794276c6b0c1aafcd5bdf85955c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/frr@sha256:d9729949a4661d740dbe92c4cbce161a5d1b4063b02bd843ffd3a301aaa51c40
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/frr@sha256:fa45b83d69d4153e9823f7228d4398a99ce71908ff1e1e9e7307e0120bfe14d0
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/frr@sha256:35549f559215fa843808bca6db1881765a1fddde1f8d96c54a74d9ff6f82ca3e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/frr@sha256:91d8d8b3dc164342dfe86ba1999c456cd27c7a506ad3f36ea3bf379d7bd6c2d1
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/frr@sha256:a320f62e159f7bd3803a3b5cfb6c9825eaa886df10a7996428f5507de22a7236
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/frr@sha256:d909b5fa5ce30e9a5411e086ecf4f45f8f4d4d8205511a6d2426647e3955bc7e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/frr@sha256:8aaea36ad66977e70b1ac11fa6af907964d025aa8e0119030fdbd1456f5638ca
SPDX SBOMhttps://spdx.dev/Documentdhi.io/frr@sha256:9b10849198908e01bf48a71ddab6d60d7505b336807ba3f6023c19f98514ec55