Sign inSign up
FRRouting

dhi.io/frr

FRRouting 10.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

10.6-debian-fips, 10.6-debian13-fips, 10.6-fips, 10.6.2-debian-fips, 10.6.2-debian13-fips, 10.6.2-fips

Index digest:

sha256:ef84dd8a62312793f3c00fac35859ce1d8262b6d2e5c6cd199e11684eec25391

Manifest digest:

sha256:690589163da96dbe939a3c49c901d653ae2a457af8d012c22ec2f2f648d27226

Size

75.63 MB

Last pushed

5 hours ago

Vulnerabilities

0
0
3
1
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/frr:10.6-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/frr:10.6-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/frr@sha256:9f5838710b179d49ad00a65240f98397ebc587d36822a2849838b0cef36e7a68
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/frr@sha256:e31e73436a0ee87f2a86f3a2c2f22ae51222fb937dc194c3ee1863ab36ad4bb5
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/frr@sha256:8f78dd41562c7ef6b5589a8d6fa26e43746035aa6d187291938b4dca92d70e7a
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/frr@sha256:818d56f2ada9884670a3a798cd4624c61bd4caf0cd981e007ef2e24e60e61aa6
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/frr@sha256:266f5d36a598fb3eee87e45e0975cd8bdf0d4522c610b9c26acd26f5bbae3ba2
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/frr@sha256:c14f846227a85a73a74441eb80bc9333800c50b8bd4d09a60a432c98465ae857
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/frr@sha256:4bb62e0b144d6dc44e407d42129b91fe09cf04c82b2283c9dc7619ab79f0b5dc
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/frr@sha256:501957c516b1f5a305ef55118f5760eb29d704688a74d454b931b228aaa9c793
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/frr@sha256:1817cf6b82979d5139f46c3e01eea7ad314b59ae0125a03ebd1f086c148e9363
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/frr@sha256:9f91f4b87590846138bcd660e45651a0a9f1e6429fdfdbd55277ed8179246764
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/frr@sha256:ecab86bf2ece95dbd2ad5e24e6e1ed59ae32b17fe1ad3e79afb2f8d17abfaf60
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/frr@sha256:0a8b1be0ecec8f02a4226c47cd8f686d8b58de310e8d3ae713afa675e2d11484
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/frr@sha256:83cbd00d1c2df24fa66cf2bfdea69b33c452a467d33b8d192f782a270de99a6c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/frr@sha256:bca17f4993bcec8820c823b4f885287539f45d16c56d5f0f37138b48c3d13d3a
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/frr@sha256:54d05f881bb49741959380f1faf789f7cd36736c31d8d20c35090926adc12bfc
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/frr@sha256:e75aae8982e8a890ce811edea2dd2cf193c1531996542d5cd442dc2c844b9d7e
SPDX SBOMhttps://spdx.dev/Documentdhi.io/frr@sha256:7dde625bb61d0ee04b058db0965fd5ad3a37ec218e300d74baf4eb216ae7da78