Sign inSign up
FRRouting

dhi.io/frr

FRRouting 10.x (dev)

CIS
linux/amd64
debian 13
Tags:

10.6-debian-dev, 10.6-debian13-dev, 10.6-dev, 10.6.2-debian-dev, 10.6.2-debian13-dev, 10.6.2-dev

Index digest:

sha256:d93ebb0c27f81c933898d33e44f7b393047c5f0b5c17cf719a716fb6d3f00ead

Manifest digest:

sha256:32653baa844cab13bed7c96bed3b4894005a7787a4e3487565af19d11c57a51a

Size

81.61 MB

Last pushed

3 days ago

Vulnerabilities

0
3
7
4
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/frr:10.6-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/frr:10.6-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/frr@sha256:c6e12fd9b8e0aab7b0d20218ee3c239e3d84a8c0ad03b32a59c533a3ebf0bc78
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/frr@sha256:4b177f37da810e022dba7385fb1aa37a3451ce9169890a0fe73e26c8233d392e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/frr@sha256:f88a9c870bc98b06ee4fb6ee02758a71cfd923414a11b893fea8d425f70cf7ce
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/frr@sha256:14a49dae2968f7518326993e6133e2b07cada63ddf48f03a3dd2e9b8bf244699
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/frr@sha256:a08b449541bad6efbe4ed397f075e8c14e21ecc5f564df5249281dccba5a76eb
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/frr@sha256:7c5be17a43c1c27ebf7db643f937338bb50461f6547bdf57992d7188353ae5ac
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/frr@sha256:454a5d1c03f29a85ce1538794f8d1fb12728ec47a63479e42d6a201a1331deae
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/frr@sha256:2666d3f36ba752c5524be6362f4ffcf21ee66dc9d81f7c4e067969b27ca92c3c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/frr@sha256:35c6f96b09812ddc69054ac6f28058ef93041d4b6108eaec911d1cd9dfd60fde
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/frr@sha256:c66d4f6d5146cdf92c1726b9084c7f648737b0be668424bf9baa0957b0801951
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/frr@sha256:7d5a12279451cd690010f4ebd6ca76b13337a1b75f7c693190579660de968cb1
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/frr@sha256:64874293715f7f9170a3a021ec49c4a59a22d25e141344d9343bf23946a9198e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/frr@sha256:a22254d78e242d2d48005784f71220f4f6b6b65f4af1fd20283621b0de993685
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/frr@sha256:e41d0c3450c76e38db014474b9a3761cebd7c9df44c0048bd5fdf533b8840646
SPDX SBOMhttps://spdx.dev/Documentdhi.io/frr@sha256:bd6afcd5c1e914f697f5a4687246d28a68660b37d86998507c0f7504d8637fd2