Sign inSign up
FRRouting

dhi.io/frr

FRRouting 10.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

10-debian-fips-dev, 10-debian13-fips-dev, 10-fips-dev, 10.7-debian-fips-dev, 10.7-debian13-fips-dev, 10.7-fips-dev, 10.7.1-debian-fips-dev, 10.7.1-debian13-fips-dev, 10.7.1-fips-dev

Index digest:

sha256:500316276db4a4f080df458c64d3404cea31d38a99b6bd600b90be516f2a5aac

Manifest digest:

sha256:b9c334eeb59133bcd7fc7151817ca020e529b71cd56b6879fa41730e71d3f79c

Size

83.18 MB

Last pushed

12 hours ago

Vulnerabilities

0
0
3
3
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/frr:10-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/frr:10-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/frr@sha256:87dd8166ed8b183e45d0f2f039ee1ae93101d37d5fe5352619d081d51befe95b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/frr@sha256:af619d4a6a2a5891f53fe31123a4657fb87d1ee4ada74e38e9238e4e31e7e69d
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/frr@sha256:290c73ef6a6a48bf54d8d746cf38096b955c1f7242937b1a50ab9a4ce365e8ba
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/frr@sha256:f10b54ff56c529ee3e5bc46aba7ac66271005a4df07130849fc391b01cf68f8d
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/frr@sha256:a90fad5d7b1a84e5d866e49966b706b4df21e2546855494d171f47e329b05808
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/frr@sha256:fc9521bc9e325886683983554d0d51bc5ebc0feec638bbeca6c2a91283c5fa02
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/frr@sha256:7ae7ea88b400ebc6546e67c43dc4485bf5cc1eea17c8b8308418c1adc08662e0
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/frr@sha256:3b4169f35b1afe1796fb320cbe8da9f812a117914146031eaf0c84e91ab878f7
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/frr@sha256:ecac29d38f7e3b48c34352139a5379093d6ec0513d4c932384ebe3b8f3a53360
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/frr@sha256:e3fe684237bca8e4fec65291ea61d64af67786c18debac22ed68b8a8a3099897
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/frr@sha256:040bd2060416d4be493e1e9e145ee05e2dc0f1eda5dfef16727f994b38f485e8
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/frr@sha256:f479a067a00f163f4d0a9469972d13a62f12133403fad4e7ee1b98d62aab096e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/frr@sha256:c8184482e5c9f54012f55a63e319ef1517de55d3b92187df4241d4c9ab671c3b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/frr@sha256:40577772613224baa7e1fe03c0bad40dceeace61c10340730041f3a306efb25c
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/frr@sha256:679dc6650d7afd82064c010a9e8b9c5f3efa3152d18b32183618ea64455e9a42
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/frr@sha256:74b8171afc52b5ab5da3a2bfb77e5b6e4d524bc0ad0e22e018dcce0ba68101d4
SPDX SBOMhttps://spdx.dev/Documentdhi.io/frr@sha256:0b3508fb752c7d4e183e4be2b0660706b028d021e73e4e8e02d1705764ff578b