Sign inSign up
FRRouting

dhi.io/frr

FRRouting 10.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

10.2-debian-fips-dev, 10.2-debian13-fips-dev, 10.2-fips-dev, 10.2.6-debian-fips-dev, 10.2.6-debian13-fips-dev, 10.2.6-fips-dev

Index digest:

sha256:d3a77dc38b75745df64434b3353839efcdff5b4e5ee8304e96f6dcf0dad3873b

Manifest digest:

sha256:ecf21673b1b72108849564a59a03469d278fddb9ae7988ddce90812cb6e0b885

Size

80.49 MB

Last pushed

1 day ago

Vulnerabilities

0
2
4
3
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/frr:10.2-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/frr:10.2-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/frr@sha256:9507a584bf4e3853a80a512aa2ccf52a0a7fe41315cad38c776d7ffb1bba38cd
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/frr@sha256:4b3c9302fd6ca9c80a0efe29bbc8b4b7a8425c4834d7a8c65ce29cb405969f1c
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/frr@sha256:aecb355c2fadd9330e6ead18dc0278789425673d7f7c5d3e0ce1611fd1739e16
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/frr@sha256:ce105f7534cb2fd77b0c7c413178dfe1d1957725a8ee2f48d6f131367c5fdefa
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/frr@sha256:2e545f58771b27dcd33779ef3fb17e989b196d6b503e06bb39deff9c5def55ab
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/frr@sha256:68da904f8e32bd5f6231c8e31256fc2457620d91c367404c2e53b33fdfef7ec9
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/frr@sha256:c133a60352cc6b7306d569ed86639d79f2bcd96d5808f8a17cea380d8aedaa7b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/frr@sha256:3141ee2ebb7df930060d63f9f87a3c5fe86d7165697040c84ba80318eaeb335a
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/frr@sha256:d47d8e177e91574c5e1cae4e90c151ff8e16681a38d309127faca9eae155d10a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/frr@sha256:94e164283bb71991b8fc1ec6bf35d9c5f76ece86e6a3d38385d9360dd24b4396
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/frr@sha256:db09b19a7a48ec94d7f0b51646b2e85ceb25be92beb7b6bb566b36673cdf10d9
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/frr@sha256:2bd29596cf7b3313fa226d6ebb48a67a8f239165eeba5801f00a5b936df0bcb1
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/frr@sha256:8caf111f4a2a6c988179af2be46ac2d28850b0c8980a397deda15de4433141bf
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/frr@sha256:b955bbc29435c6391a9ce395d9e4ddd10c0e9cbff7fc667771b0c670f4918971
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/frr@sha256:0aba8ca550a1b602285e1ab492708c21f8d029a61facdf835c774596841b4c83
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/frr@sha256:24d15671a7c9ca7baa149bbc5911b07bbf791d5bd8d870835fa68c0bc1ca1295
SPDX SBOMhttps://spdx.dev/Documentdhi.io/frr@sha256:8ea5437a624d593cdb2c9b514d612cc20dc846be45c036497fcf439868436e27