Sign inSign up
FRRouting

dhi.io/frr

FRRouting 10.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

10.3-debian-fips-dev, 10.3-debian13-fips-dev, 10.3-fips-dev, 10.3.4-debian-fips-dev, 10.3.4-debian13-fips-dev, 10.3.4-fips-dev

Index digest:

sha256:c90c51d53547aabf13eb541f172d6bba7ebb0f9e2ce949d800823558ded14998

Manifest digest:

sha256:2008e4d7cb72ffdb2f246821f3db49273bb5b38558e79ce66bc4b899fde6019c

Size

81.56 MB

Last pushed

13 hours ago

Vulnerabilities

0
0
3
2
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/frr:10.3-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/frr:10.3-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/frr@sha256:f944657705728de38cfbf7c520fb7f91f58ce0ea7a7d5129ca6fe632e0dd275c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/frr@sha256:94695a4b4285017a29df267665c77d18b2f9b2be7eebb7a4165ec649a37b8673
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/frr@sha256:dea7443072ac5f207777b1c3eaf5dd87e360ae7946d2b93d438b091feb1fd81b
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/frr@sha256:ce157023ba9319244a8957674d0789cf5b39a70869899545df72033608c4cb4a
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/frr@sha256:9176958a19ba31120b56598ad72c092d9de63a74ba3e56c2e3fc940706c32d9a
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/frr@sha256:e9cc4662f6a402c40cf38d9724d2f2895192caf9a83b68ab6145cd47aa9f1a5c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/frr@sha256:2c307ca61b80ba2302c40ea5b35f256397c570a35fd2192b53fbafb1fe014f86
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/frr@sha256:cdb84bf60d807966cc8d9b6571d10665b0acf1a116f5e05ba24c27f951a4fd40
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/frr@sha256:b5c825f8116da342300d28aed499cc25772fe7a2915ba3923a2c77ba92711967
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/frr@sha256:62b001bfb58bbf3929488fc26ebcbdc86d45dc2035b23ea7ba94c6462746acb7
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/frr@sha256:de940b1c61a6d6d90cea6c6740ac395170f18a692fcb0673ec4ad4b0ced28a35
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/frr@sha256:73631bb16fbcd1509acb40c77910cb0ab30eca09dc6a18632b05f5770e4b872d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/frr@sha256:19e841fd450b6e4f7ce294b352a622fe6bd44fbcc0b76a5d6d700d696b30db8c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/frr@sha256:714a460b46c93259da107c0e464a660321089b6dd6d72423545e4ef406b75704
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/frr@sha256:6b0ed993910298100312fead001c202c73931e871758ebb8e79f084a96cc56e8
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/frr@sha256:a2675606c123b65b2d8b62d013bb9fa6ac9fe0ae9924de69a8208becd13bd3cb
SPDX SBOMhttps://spdx.dev/Documentdhi.io/frr@sha256:19aa92af40a25e4fc5c53c6c4910e48a60be5b7706d2f0fbda0e3caa983366d8