dhi.io/frr
10.6-debian-fips, 10.6-debian13-fips, 10.6-fips, 10.6.2-debian-fips, 10.6.2-debian13-fips, 10.6.2-fips
sha256:e113f3b06123378613e9a499298ef85c7ddc1d6ef9d19ea24c9a3f85205dbebf
Manifest digest:sha256:3ac9b79ce95903799a6a40f478214add7bddee53f0446d7c94015c66f9bfab9a
Size
75.63 MB
Last pushed
9 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/frr:10.6-debian-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/frr:10.6-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/frr@sha256:3a15a2aaf926346ff00fa1bfb1a29794fb6504b8b2fc814ed4ba94589f6ad02b |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/frr@sha256:0dedd56707f47ba95e23095ab9c3074f05f9d87ea73566ede5fcb974ae29909c |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/frr@sha256:0e2de7616b44b2dbdc06d81de10b7ae5b34c6851092e4bdd7aea0030d4a7e7d6 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/frr@sha256:70a9c6f3ceada2321a89cf4299c7c36a64686872a48273dca6efae28b2889a67 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/frr@sha256:b883c0f45a1da6c80222b4222dfbeb55fd393e375af50798aa701c3043a9cb76 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/frr@sha256:68ca562e22a98c5d079442db49918a38c85011782dde83597eddb8a0690e6f8e |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/frr@sha256:84306edd63c10306aad5b3738597a6a0a77abea76098f37971f6e8fc851f5fd9 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/frr@sha256:575b2e17116548e76c7b56d9f6ce9dbcaa8250d183259720ab6f614dbd7eb65b |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/frr@sha256:c2dbc6246d61bd81ec322c695cf86679f6b3c21477b8edad1582ca94fe732eeb |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/frr@sha256:64ad2c62d1b1d59f459f617d9787d3ca6701f2161f6e3aecde1f2d65f06f4e06 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/frr@sha256:dfd933a5d2f4ae61bb025e58f1ea9df4d898d8f236490742dee5da9bd6d8e9e2 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/frr@sha256:435434d9c8212a6e5a37030185e0bfda4f0b04f0aff9179291933f23b6bff282 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/frr@sha256:6cf6890af8110d96c04b7f74fdf3e453a6aa8f3a856aebd7698972085989e605 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/frr@sha256:2541413fcbffc7fcb083567b2d61c257d5ae34a056d9da1e596b2f10a40fb6e4 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/frr@sha256:edafc85da0de856ad344c2599691b816c12c336aded78b33de160eff85bb0889 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/frr@sha256:75b04ced703c78b919f605221b5171b280a9b937ef074bbf37d025b70d8fcf70 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/frr@sha256:2380ce567924f992b993b95c9479e3f163877ec1907a698a79254629792c9fda |