dhi.io/frr
10.6-debian-fips, 10.6-debian13-fips, 10.6-fips, 10.6.2-debian-fips, 10.6.2-debian13-fips, 10.6.2-fips
sha256:85c8b73ba31523321b0355dfe772b0c55d424f31fed4d07cf9ef8710acb4f563
Manifest digest:sha256:2cf16d67892f21c9492e8e81bef9a1c1d05701dcbdbefa510c5190700f593e44
Size
75.64 MB
Last pushed
1 day ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/frr:10.6-debian-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/frr:10.6-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/frr@sha256:90c4a721e1988ea07698fcf085922559980bacfe61244e715ef0635292f9eb9b |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/frr@sha256:329850053703894c4b9dbb6a45f161ef8128eb1a21001bf3777b72420d040fb3 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/frr@sha256:04de381a4db21dc1e04c44ce250bc4e0bc415fd1091917aa98e57f1bd06529bb |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/frr@sha256:aec9f4d35a0fcc12b3e24dbebf17b1d6ea73f1575f59d53df87e148f96b9aead |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/frr@sha256:6f61d2e9bf1a400127f28f51e0be4d2d3e2100be10abab4a2666f460446abeb9 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/frr@sha256:edcc38414a960e5371b5ee2f1f8a2f01e109ef8c826173ef2525bf29bdf99a0e |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/frr@sha256:6cf520a7abe9b438dd5fa1e6fb951b2c67485419cb2a59bd340d57348ba05dad |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/frr@sha256:b123f40f44f127079b7c8489dbcccf91e3dc392e144c08e19ae00cafd3513166 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/frr@sha256:97e5904aba969b2a3c8be2850f91caa13845b26da6539f10e314bd72695e6c7f |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/frr@sha256:c2192b38135646a249f51ce22b929e7d69a01f384bfdd9e090a0ac74060f3bda |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/frr@sha256:1a7c6f79dcc36b7f1afd2a83e3ac299e644a6598030edc770796e5e64f55bd3b |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/frr@sha256:03830ab28357f80b82658ee1665ad61a760bc8bc302b907db8897a91d863cdfe |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/frr@sha256:b473efcfa2594e67fbc6718851265b53622198689da8bcf28d845a85f30d260b |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/frr@sha256:3cfe0735b48161a1987241c1b6c2a771a2f5f039baf1bf74b53b90323854caaa |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/frr@sha256:45bb585473b56a10faca290322b94c67f86e5d485cae4905a6ebbef394fae7e4 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/frr@sha256:843dcbe5ce0bf03e4335de5c1175752442173d659f2efa1cd0caee237de93248 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/frr@sha256:cc64012c8b13fac9bb6d3a6e1f3be760045b48042c18beee1450de9aad88b587 |