Sign inSign up
FRRouting

dhi.io/frr

FRRouting 10.x (dev)

CIS
linux/amd64
debian 13
Tags:

10.4-debian-dev, 10.4-debian13-dev, 10.4-dev, 10.4.5-debian-dev, 10.4.5-debian13-dev, 10.4.5-dev

Index digest:

sha256:917100c0468842b3b752094f99d3f0f671c529454c7534744b912bfd8c472ece

Manifest digest:

sha256:8fe19c1bb1eafdcb6c1a2c0eea2403566b195005ec29b5fc77e6b35d319e06e5

Size

81.03 MB

Last pushed

2 hours ago

Vulnerabilities

0
0
3
3
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/frr:10.4-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/frr:10.4-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/frr@sha256:ca3fe5b818a7a05466fd5d4358eef63bf423688d6b8fd21767a78b4621a817f7
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/frr@sha256:9f3a252ece0b3a594b096dc8e7c188fc2ed19c053917e7f77ef176abf4fb8f66
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/frr@sha256:8cf47164fe7360463e65f3fd7a030e24b8099675e042d6b3c5898c59f877891e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/frr@sha256:113d37389856bad090a995592ba497f4abaa1751d1fa4fdfb0647b8d19b918fa
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/frr@sha256:db55495979801d88d752f483ecc0ed42716e6ad88624a237c58735e9d14dfe4c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/frr@sha256:28b7b1ab3811d4e1a263407d770a73303823d800eed157ec2af9b3601be5c25d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/frr@sha256:4dbd8fecc485512d6a82618e787eceac4b6062ecc3678d92cd042285fea52575
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/frr@sha256:f2d001e3c915cd4d5860041afef010f854af1f88e585313d15cf1342dbe9b694
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/frr@sha256:e944049f592fe5f2d6f9c3d04f34d29199de13421502eb3a842a9aa93d355480
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/frr@sha256:c90abf5fddda9f5a83cefddb28ec9f42edfa9bc9aeaf40f2f992aa0144a9db97
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/frr@sha256:72cd4f857cdcbe583c7ba0454a6e36571408745748ea27c40b8891af8be3c40c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/frr@sha256:0fad33d94065b9261e28c7016638c5c19c3ee237f1cf9351986b0ec35f2b0151
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/frr@sha256:74fb33b660d3206f39f7c874356520a1a013b290f65d84b58870c406e2a29f98
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/frr@sha256:66e9709c021ae392d84631aa12accde8f390f68f6ccbf39b11afcfdfd1555634
SPDX SBOMhttps://spdx.dev/Documentdhi.io/frr@sha256:73acf1ca8ca2810d001a922c3ab582a1a79cc1377977756e78176f109b065794