Sign inSign up
FRRouting

dhi.io/frr

FRRouting 10.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

10-debian-fips, 10-debian13-fips, 10-fips, 10.7-debian-fips, 10.7-debian13-fips, 10.7-fips, 10.7.1-debian-fips, 10.7.1-debian13-fips, 10.7.1-fips

Index digest:

sha256:c38b7f770ef6430f2e43854fdb5fd33c489c430e07539231341abe9d2c311229

Manifest digest:

sha256:691c71b2ce1ca0f6c86f607161c4900adaa548f001e00fb159ed55183cd39e43

Size

76.45 MB

Last pushed

16 hours ago

Vulnerabilities

0
0
3
2
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/frr:10-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/frr:10-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/frr@sha256:c89218204207400eb32bfb008fd3f90fb807aaed43a5332ab5acb72c246751de
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/frr@sha256:a3d4811b0f6e8a61355be22375378d3ce5a288b1a556d2064286e29a17640832
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/frr@sha256:688389a2ae2d63644966611395ccac062b300adc11569ad6df66d45251fede0e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/frr@sha256:65e6607e80b12f6c70e7075259ac5b1e1d7ca640069604c791e875aac47b9e65
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/frr@sha256:2699de4c729fc84c146b674d6201f85c5f88f6548b7a2a1515540be5ccfa80b9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/frr@sha256:879fba20e5114ca0586bcb78806bdd1cf5a171268160cbc8ed5fab1eaea84a19
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/frr@sha256:4295e3df34127bc5f44781bc7da0b13160a0a5c8bb803fc2006861ed34d6e033
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/frr@sha256:a4388a8615af886122bd2e8b3c7b5491e5fd06cdfffe11ef24927135d894c293
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/frr@sha256:f41f918eaef3d11800a4a76b346e58f79f16eaa75cf4c2b312a13fa42c1a55a0
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/frr@sha256:b30fc178c0a18861ea8fe885d272e0bccd14bd071d3313e4107557d8d1f630c2
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/frr@sha256:a0e5fdf98f788fbba1ab74064f6508358f37a1b7b00b9e015cda5fbcefedd9fe
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/frr@sha256:75bb44f7853accb8ca5f36c95848108505cc2fd1a6234aa44eb0d862c689e1b7
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/frr@sha256:5527543cf0fe46a129e82bfcd5dc00f7b57077a49997eb273c5a5465170d4df8
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/frr@sha256:486de9b39f6c9b241f4b32f82195271e0cff2cba0c7521b5c59ebb3393be9097
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/frr@sha256:94894610b8870e461c00b4604d777b30db63ce06c778ffef76cf0972985b6d8f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/frr@sha256:ed81811e73edc8aa7867b7e239b1897e8a534dc19d0528b3fc1e7e6200ee2586
SPDX SBOMhttps://spdx.dev/Documentdhi.io/frr@sha256:ff6d3f03bee2fb2c770d63d7aa2de0558f9430dbf3904e5edb7af767a4a4c50c