Sign inSign up
FRRouting

dhi.io/frr

FRRouting 10.x

CIS
linux/amd64
debian 13
Tags:

10.6, 10.6-debian, 10.6-debian13, 10.6.2, 10.6.2-debian, 10.6.2-debian13

Index digest:

sha256:5eb1b7227201ac605bc50df469d6d83c9dbb7e5a502cb53c359b814ba06a3963

Manifest digest:

sha256:92a6ab85bcf2ab2e7feec3a7f23b1a0a55342e2f75f0fea034a30599480f745c

Size

74.86 MB

Last pushed

3 hours ago

Vulnerabilities

0
0
3
2
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/frr:10.6

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/frr:10.6 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/frr@sha256:4e748b8fbda5b4c95a7e1261ede8ee109e261268c92d26b3b6a2f10f6e8ae6ad
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/frr@sha256:1592c583c95fdbb9d91789849e6ecd436821e7aeb9e8e37106bd12829a522d94
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/frr@sha256:41698e0d08593b55bb6ec618f1cab719a74077387354bebaac8c5111bc158b7d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/frr@sha256:bef8bc64fa9b8f98993d396acf933d40169e00b559e7ac3bb92a436e2b0e7fac
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/frr@sha256:40865e4f4a303faedd00c96f773a8e043424b059df48c9f1e48ab9bc999b13da
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/frr@sha256:dbb596c453ac404391d7db4d0c639e2fd93e290bc07f288e662b6e6059ac138f
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/frr@sha256:5b8097d6815bce4c2c235ed94c5095c831b70207554ee78ae7d0d0d89b74f829
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/frr@sha256:a2a077340c168d889f086a2862324a67c29523cb364f239e06ce76f704e792e2
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/frr@sha256:7cc7861f3af8b8c62c31f344d8a5b748baa563a3e1a33553de43a04ae5e58337
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/frr@sha256:8e42a2699b7ee57a0aba34b2bd64ea86fdec6ddb055e75f72b387ece73d02436
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/frr@sha256:a5bbbbbab82ad8e764b8421575947dfb057e2cc016276db01a2144410a5be98c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/frr@sha256:02e14976d91f2077b9348ad65544818de3f3dd5521da130fab5fee5416afa3b6
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/frr@sha256:07a9f7dff2ca7c097a17023bd8bde5be5032d892d2f0b41462d66e1c93375e87
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/frr@sha256:c354db1871ad5686ae1efa9ee39c8a30c2e287ee33416e20585d0884bdd6c399
SPDX SBOMhttps://spdx.dev/Documentdhi.io/frr@sha256:2cdb8333bca6abfd323572c4cc6736f75a7ff512eda641706a280e46351976c5