Sign inSign up
FRRouting

dhi.io/frr

FRRouting 10.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

10.6-debian-fips, 10.6-debian13-fips, 10.6-fips, 10.6.2-debian-fips, 10.6.2-debian13-fips, 10.6.2-fips

Index digest:

sha256:79d0f10af067a2f054d6e2140ff45cce0ebbc3c1dabd39e171e8de0304bcbe3e

Manifest digest:

sha256:28f5eae45125f15a03efad94de9cf3fc407b68d084069ed6e4d8f220017d1eb2

Size

75.64 MB

Last pushed

12 hours ago

Vulnerabilities

0
2
4
2
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/frr:10.6-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/frr:10.6-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/frr@sha256:7ede7a1f714740a35b7396cb87c650979072a9bf6372fbb92edbd786ef6e94db
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/frr@sha256:4d7402e7f4c8deed7295fb86a95381af24cfc5d63248557631a4ad51a3977490
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/frr@sha256:b32dce790ccf3c939fb06b928fde897db9391598a3d7912f3dd5cc7901bd8e25
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/frr@sha256:f2c7906627eef4a3ed34e5eb6e1b96e2384f1320a1d2aad05031c614d7a67a4b
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/frr@sha256:07134837fd76035f9a189427e764fd8ff2a9061953adbcb8cad0dbf0da04b7ef
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/frr@sha256:cfd801ad4c0faeb39952b52cbecbee22efe04ef5d2d6d38e84529b94e2cb12c7
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/frr@sha256:6eeb00e70b1714c5aceeebb5773e4b92eb111e3443b0d7e9c214f8f9c69e64e3
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/frr@sha256:f669e22a5a043ec1f14c82bd27386807c1fb037f6a6d27f27959e1f3ec15878a
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/frr@sha256:42ea131f1e8ebc64fbe6d09f5beb1896ae0d49427ae041304cb3ed71d42c4183
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/frr@sha256:4335d0bba371bdcea4f03af9e1c40d3995f36b7b0b2f80fa86e47cdcea08ed63
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/frr@sha256:676e65fcf6c1235911f2ce93c795fafd33383e11bad29022946f8906e9983b0b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/frr@sha256:c567b37834b2cff0ca041a704c34e4b5925748b1105527794ecda971359e3091
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/frr@sha256:20ce98db63e531f5a9862ba4835aa884763b6113812244b1481195dc0c15a27d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/frr@sha256:e29c9582b104f03c5640253c346792dd81d78d91fc2045af2e7587c15764c517
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/frr@sha256:77f7fe217423adc0510c56c00258197fab69b31f9a1d4d977f8734ec9b1f0a1f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/frr@sha256:3d53bd0bbd030c1b163adf5d615a7b3edb58680fb86e3247d70bbf76808f97f6
SPDX SBOMhttps://spdx.dev/Documentdhi.io/frr@sha256:b31de98435579591fb97c496b8c51c7a93080de0466b83a0c48c89a08ed8f2dc