dhi.io/frr
10.5-debian-fips-dev, 10.5-debian13-fips-dev, 10.5-fips-dev, 10.5.5-debian-fips-dev, 10.5.5-debian13-fips-dev, 10.5.5-fips-dev
sha256:b7a580d88c4527734c0659763f684f44d5d14f0fb25e2b8446ddcc80baa61494
Manifest digest:sha256:4645e60a0e6810b67ffe70441dbbb2c36974568867943b626761b78657439d0b
Size
82.06 MB
Last pushed
5 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/frr:10.5-debian-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/frr:10.5-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/frr@sha256:98bab6ee7f052a5987eb3f9fe1c3615c52a4e8ef99ac670d1e8e6c3404321435 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/frr@sha256:6c398c74518f7d40ca85e02546fbb589a47e89bc3acf192a9f86fba1bc623c52 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/frr@sha256:d8909cb13dc673ebaa29131a2db037d1b38396f976a7f7fc1000967e64706d23 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/frr@sha256:d9521f5372c29e6f7b90c60ac1e257d12088425e41f8c0e2246a4ad7af74bf3d |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/frr@sha256:1c22b84b1c5d007015397b84c1b2a63a7f2ec2f27228f145d51fddff9234c065 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/frr@sha256:8685be2262e4a7297b784ad54c7faee020730fb72a7b4dfe5a247b73e36d5b8a |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/frr@sha256:e6a8e54fae54e2e457ef278cea570b23f9cb2a554c500cabf0e0dfd167377ecc |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/frr@sha256:1250a42336d3d36dbbe03e9695ed3437fd3111aff5bea1583931c21de6c8ee77 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/frr@sha256:6e627e4ed8a73d6ffb5f24211bd6b85036b57615abf5f14c0a302d87a71fa7a1 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/frr@sha256:8dfd68643385b1c41cbcc8c24ebb90476394b15a4ac9563d9f0ca9e6e494285b |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/frr@sha256:9f3d5f324ba9f256fc538620ad045aa780fba99606141d9e828517bd4a417ef2 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/frr@sha256:359ee6e16a86a03c1ee6e2cfd06e9ff9334f685614c1e7168077095f705f87fa |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/frr@sha256:7f4d53a91a986823a7e851dc4916177471f67c5d86b9b5519c5d6adec5975a60 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/frr@sha256:bb1d06d1ad4a833383cb79d42182f240253b3fa37c8c216de75e58258edb6707 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/frr@sha256:46eff824e487e828814074c744f1097492f8396a2a8498c56c73df620e35ec0c |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/frr@sha256:1c1fc75c2b019655e192f11e110ad2ce92442c928f5b3b299527d7faa716199f |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/frr@sha256:4ba6a6196413e5c701381519ab30e1ff0b3298779ad66beb995cc43627daee74 |