Sign inSign up
FRRouting

dhi.io/frr

FRRouting 10.x (dev)

CIS
linux/amd64
debian 13
Tags:

10.4-debian-dev, 10.4-debian13-dev, 10.4-dev, 10.4.5-debian-dev, 10.4.5-debian13-dev, 10.4.5-dev

Index digest:

sha256:b2499a80fe860b5eaa362dc9ab408e54fa64c6b997d2d88de44cf8f2db399cb2

Manifest digest:

sha256:3bc17e85a5ca6933eb14dc0a81bedf040cc647c448bba5c6bc2a0cb44e62b441

Size

81.04 MB

Last pushed

15 hours ago

Vulnerabilities

0
0
3
2
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/frr:10.4-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/frr:10.4-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/frr@sha256:5d05149626e7b770b069dc5b985316e4bc493d25607948b7395f5e14993b2990
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/frr@sha256:3ede937d42a191da03b35dc5c6ca2069003d5a73fa0a2c68c5fd27308e59a49a
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/frr@sha256:f80397c790dca609b5a9f2e4ba7a704c9f78e8d37baa1002a4af9b06ca7309b9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/frr@sha256:60d786381f677298a0b9ca37dd609f54d918315e9184e6b6218e04acd5637e9d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/frr@sha256:373a091d4cd82d4ee746ca7fd8a77ec307f4e0300f8d542c1eb948a5c3321375
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/frr@sha256:fe64d19710b303cc05544cb6283069b567f58b19e1bf4b6b0f1e89efa1375a80
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/frr@sha256:1c59729307f114d11bd69ba988293427571b2f4f86e8168a7c58d19ad2ad4482
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/frr@sha256:0daff607ec9c0d9c735987a642f654fc43a36a5e861f0119e5b61c769b1d56a0
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/frr@sha256:ff74e7ffab391510b576fd9e1c3783cdc761716b852525185e55a7acb3209776
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/frr@sha256:7f71483bfa1b8d6c0f3d0d082245883729432b7674687e7a3ec59a6a92dce79d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/frr@sha256:2418d6bc85135bc54104d5c01178e92ac61a4ff39a4a928724aaef74fa2c5baf
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/frr@sha256:8c6b0d1395c6a658e7b20d6eb28719e2edff7fbbcb7ea37b4986f24b1dfdca0d
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/frr@sha256:c05e9f5f2c9848fd0200cbf0a73af681b5d9f408a6ef9cba539bfaf58e8f019c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/frr@sha256:9f80f74e6bb24f3ca893b82aaf50997570356d55a184b2a0f1e7b76d30c97a56
SPDX SBOMhttps://spdx.dev/Documentdhi.io/frr@sha256:919adf1f683bca441dc83df0f3998e9b3d9f10735ee5ac391b47b6d31351c1ce