Sign inSign up
FRRouting

dhi.io/frr

FRRouting 10.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

10.5-debian-fips-dev, 10.5-debian13-fips-dev, 10.5-fips-dev, 10.5.5-debian-fips-dev, 10.5.5-debian13-fips-dev, 10.5.5-fips-dev

Index digest:

sha256:3752bd94255f02ac7f5a32aaad1d26a9b280feab6fb4f3012b84f6d4fd7dd1c6

Manifest digest:

sha256:676510821b8532a07725e226cb6fe417927c21597d1a3afd39650c1b3c953320

Size

82.08 MB

Last pushed

18 hours ago

Vulnerabilities

0
2
4
3
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/frr:10.5-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/frr:10.5-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/frr@sha256:9b37f6e08395f6ca3934f98fe7310d7a906e3255558275e83e35ef1c7d709e03
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/frr@sha256:34f92329ad6cab1263f590ea20ef8acf317a0d9e582c9dc6bba694c94824ee50
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/frr@sha256:3bd07e0150a86fdd2ce8f48ea8c893db4190ee297850a4a83c909ff3da14a40f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/frr@sha256:b74cfdb3a7a350f4e3bdc9f33f21df62c770d2a528d5d61f10c2f20bfea42d38
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/frr@sha256:8165f986c3a4ff8231b399f4191c35525021a89ec4b653156e220545d50db30d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/frr@sha256:ca8251277dd9086d3f6fe7ea9935e194373a0185e0594fcd24732bee56ded4d3
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/frr@sha256:bced766a474651aab29690f2006620e59ab7f0d46725863cd1cda56c28ecb6fa
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/frr@sha256:40f51147da7325e07024b47ab6e6c8eec7a08e426ecc4e6955a513f754c0b2fe
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/frr@sha256:0f25c98a98f931ad7b5abb0ca034fdf824afbde862a35762f6acc93523d2159e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/frr@sha256:dc823f3fa01ce00cab471e88a64eab2f8dcd0cb173a2fc02fcee264c0469e0a6
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/frr@sha256:90e2c1e80ef69e02ab6f5c8f1afd24fec16afe1f58317f2dd627a8e4c990fedc
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/frr@sha256:5569e4ddfe68fb700195e2c6f49857ed6fb31b499042d2320d1029b025b9bbf2
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/frr@sha256:4e024ba2d2eab59220debeac267f6e15318ca473b93f5a3a4eae71d5d1317306
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/frr@sha256:ff2313374a1a10b43c0be2f4be65b9a4ad47d0d1f750aae757ef7b378b5e167f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/frr@sha256:63fd1956ae86b6f6827963a501452ad823f0d1bc413a5c6ff67f4c5d5f18abec
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/frr@sha256:635a5f57162c19559ce9fbaebe6395c6430184e6cb761b6f9a899e3e2a808ce2
SPDX SBOMhttps://spdx.dev/Documentdhi.io/frr@sha256:f702a3c05ef2f77715d757c5f90d5b74c30236687525655fb8c7ac423ea4a032