Sign inSign up
FRRouting

dhi.io/frr

FRRouting 10.x

CIS
linux/amd64
debian 13
Tags:

10.5, 10.5-debian, 10.5-debian13, 10.5.5, 10.5.5-debian, 10.5.5-debian13

Index digest:

sha256:9cf1216f6d214cd91c6de795f4f1243c56441c3245153ed65d19430da0cf142b

Manifest digest:

sha256:0ecdf00b27663e08f084c85c759bfdde95895cec990496bb9750acc72cc459b7

Size

74.55 MB

Last pushed

18 hours ago

Vulnerabilities

0
0
3
2
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/frr:10.5

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/frr:10.5 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/frr@sha256:59aff4ee8429d965bb51ca4b4ab4651253c759cbb92d1d8c14fa05c9b19416e8
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/frr@sha256:8ac39dda479bc39693e6978c7bee1f4c9629f4ade40c02dce6b8bdb82ce20d85
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/frr@sha256:1b2c7b0d2bd5d994f8ef74550f9b106ff3ddc8f7114ede0461e484bbf7bf4439
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/frr@sha256:27555acc5ace86af999acbd2be2534bd3622b60a7a2348ddea9d66d2bafc05b6
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/frr@sha256:3238870e6d16d8d12d2ce4de02a7c3f696baf1a42e4951e7dc7329ffd118fd7a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/frr@sha256:f283fbba1500dd61cf7f0fcc2fbef27fb81f4f7adb808fc7cb1d0702bc91c664
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/frr@sha256:73ef04030e86528c7aaa18e4670fa7c61279c88e61cba3d649dbd59c64bda387
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/frr@sha256:76ad8826e66b9f7778094ef9894fd05fec62669caf128d641d1984df0e79a51b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/frr@sha256:e11ad59fe709803aa24cfed5c4a68772658992f4858d487a2f0acf9490ace7ad
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/frr@sha256:ef95b50732360c2652ac5ce2c3489aad645c0beaa6903527bced128b454f0000
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/frr@sha256:b5eaf958c594572d4995c97888e4f024d22eae2e9a116ffc5139dd9399cab72d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/frr@sha256:75fcd2818f40e8320e1c35e3d133b7a6aa9a944a49aaf80580e54e3ef992ba2d
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/frr@sha256:50b5e8753d88e173669bd5a04f9652261ac06dbe213f8860ab35e590e0f6c6cf
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/frr@sha256:0d1d22932e2ad04120e431b91ab0ba2fa02fc462ffb93efef0eaf0d8528477fd
SPDX SBOMhttps://spdx.dev/Documentdhi.io/frr@sha256:bcf45c8ad78177a3095093cf95730f87650bb572698c46f03f3b61553c04a071