Sign inSign up
FRRouting

dhi.io/frr

FRRouting 10.x

CIS
linux/amd64
debian 13
Tags:

10.5, 10.5-debian, 10.5-debian13, 10.5.5, 10.5.5-debian, 10.5.5-debian13

Index digest:

sha256:cdbda63163ba623c42473aad9e86492f41ac761150cac071cbaf2f8147bc1fe9

Manifest digest:

sha256:dca2327347db37e95909068fbc9f90e710d34075ba3d136d9686ef396f3c1fed

Size

74.55 MB

Last pushed

10 hours ago

Vulnerabilities

0
0
3
1
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/frr:10.5

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/frr:10.5 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/frr@sha256:e052dcf676439f5e31a6bbc4b1a8bafbcf9a3b24e4d8f17ea569ff9176dd193f
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/frr@sha256:1233cc9b626b9f8d446d7a5a9c408dee2a7475ab0aefadf6af766ff948259729
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/frr@sha256:497bf8d3c766c3018a9d6ea3d5ab1876628618eb43a6a8a2332117e37d8ed7af
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/frr@sha256:8cccbdc9e4e262724162e0541c32877feefbc0832b6cac8419121942cf304e71
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/frr@sha256:c8032a171c59a0270ade738043a4f6890439564bf9482f55a1c10ede45740a29
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/frr@sha256:8c991f48be25d0449ff096dbcb0acecb954981f4f3e56e49a06a1260b22775de
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/frr@sha256:e040d9325bee37ede25a8a1c9e28bd21e8746e60c709af5ce2673ae76cd9a4ec
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/frr@sha256:d409deacf4ba5ce3bd1f54e036da091a8efda235e3e84335e3e7a30980f2d3da
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/frr@sha256:b9ec02db21f80c8dd95e6d9ef36eb40b61f76efbbd68e83f756b10c2fe815b91
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/frr@sha256:5e2613b9a97d7ce1265e84c1733026c9348c50ac0448ea49c2d81021d79fef44
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/frr@sha256:36681c3eeafa3f12b4e0c4e277f78adae107a4e915f0f7605c01ed28166283ac
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/frr@sha256:5c46ad47f6431bfde7135097cbc8bf935bb1ab71bc6e516b69ff54caba9df47e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/frr@sha256:262b9958f1b105a0dcfc55d9460d3b95a8d8c22fa5f8f64f1ee9f5a1dfa0ef9c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/frr@sha256:558b2f31ea1f0e74b111ce79bbd802ca1ec937590f077837986fd8a7f4219125
SPDX SBOMhttps://spdx.dev/Documentdhi.io/frr@sha256:c0eed489344363c9e644ca745c5f2c96d591e1c66435a4e08a6b3c724bd4707a