Sign inSign up
FRRouting

dhi.io/frr

FRRouting 10.x (dev)

CIS
linux/amd64
debian 13
Tags:

10-debian-dev, 10-debian13-dev, 10-dev, 10.7-debian-dev, 10.7-debian13-dev, 10.7-dev, 10.7.1-debian-dev, 10.7.1-debian13-dev, 10.7.1-dev

Index digest:

sha256:5bd5bb5a996d79703c2c92de77e52d02f24c880d47366db01793f4902c8132ef

Manifest digest:

sha256:e789be642d111ab8c48266a9b4d1d7a3d0d428ac62518518f3ef1a1b61b83d31

Size

82.42 MB

Last pushed

14 hours ago

Vulnerabilities

0
0
3
2
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/frr:10-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/frr:10-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/frr@sha256:d20689a28369bb1b072a40f2f31c75bb6690ea073eba7ff8d1962bf035f05ece
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/frr@sha256:b5fb1efb3d3b3334a0a7fc15eba4ed340fd22628095b40b3dfbaefea2a1a8a67
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/frr@sha256:9cf26c679230ee35cb7be8b18cd19b6d76d01646d93517a10edfc7cfd2cf043b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/frr@sha256:f42af6d00141ae2e9cefa6a23bfb6047a37413078aa58d08bf676d6e410a9ed2
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/frr@sha256:dd3793a40bc60b5da9b78ee53f03be2bfd4d3d13cb88d1db9f490d121eb82045
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/frr@sha256:cbf0e7586a0bcf5dcc7110325ba79036aaffd033074b19898f9b21912589ee77
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/frr@sha256:c3f7b8b9e8b7e69692328b81dd4a10c0f611f455ae933801a07c604ba7348fc2
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/frr@sha256:e4e89ed57a818a913a21fb30564fe11add1211dca5c1f0a7e51fc69823b0c6da
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/frr@sha256:5bc06e865fe7a07b60272f7dad98b43b83c8b71ec6eaafff67dd9873ea94762b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/frr@sha256:1a7b0eb47819f57982a31187ca84df653c99e06aa9288d4ed7de84d97dc6e412
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/frr@sha256:0dc643f0d3cdbc55fad20cd08cac05be71fe2055aa8ee4d8cbea7b3f12c4784b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/frr@sha256:f795515385c9b68db9b0a0f7542cd6a6563bb6179af2353343e3d78f90608e9e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/frr@sha256:d04f0c713d87ef61cad5a6e3cc52b2a6514c4aaf511faa7f56c7c90824294d45
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/frr@sha256:e7537719e0a3c04788c0d92b17266d0c15c678fef4e4ba3c3c3619bc71414a5c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/frr@sha256:c24208407940098494b50c840ed769e546c6158f84edf68e31f0ffea7af35b38