Sign inSign up
FRRouting

dhi.io/frr

FRRouting 10.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

10.6-debian-fips, 10.6-debian13-fips, 10.6-fips, 10.6.2-debian-fips, 10.6.2-debian13-fips, 10.6.2-fips

Index digest:

sha256:85c8b73ba31523321b0355dfe772b0c55d424f31fed4d07cf9ef8710acb4f563

Manifest digest:

sha256:2cf16d67892f21c9492e8e81bef9a1c1d05701dcbdbefa510c5190700f593e44

Size

75.64 MB

Last pushed

1 day ago

Vulnerabilities

0
2
4
2
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/frr:10.6-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/frr:10.6-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/frr@sha256:90c4a721e1988ea07698fcf085922559980bacfe61244e715ef0635292f9eb9b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/frr@sha256:329850053703894c4b9dbb6a45f161ef8128eb1a21001bf3777b72420d040fb3
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/frr@sha256:04de381a4db21dc1e04c44ce250bc4e0bc415fd1091917aa98e57f1bd06529bb
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/frr@sha256:aec9f4d35a0fcc12b3e24dbebf17b1d6ea73f1575f59d53df87e148f96b9aead
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/frr@sha256:6f61d2e9bf1a400127f28f51e0be4d2d3e2100be10abab4a2666f460446abeb9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/frr@sha256:edcc38414a960e5371b5ee2f1f8a2f01e109ef8c826173ef2525bf29bdf99a0e
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/frr@sha256:6cf520a7abe9b438dd5fa1e6fb951b2c67485419cb2a59bd340d57348ba05dad
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/frr@sha256:b123f40f44f127079b7c8489dbcccf91e3dc392e144c08e19ae00cafd3513166
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/frr@sha256:97e5904aba969b2a3c8be2850f91caa13845b26da6539f10e314bd72695e6c7f
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/frr@sha256:c2192b38135646a249f51ce22b929e7d69a01f384bfdd9e090a0ac74060f3bda
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/frr@sha256:1a7c6f79dcc36b7f1afd2a83e3ac299e644a6598030edc770796e5e64f55bd3b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/frr@sha256:03830ab28357f80b82658ee1665ad61a760bc8bc302b907db8897a91d863cdfe
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/frr@sha256:b473efcfa2594e67fbc6718851265b53622198689da8bcf28d845a85f30d260b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/frr@sha256:3cfe0735b48161a1987241c1b6c2a771a2f5f039baf1bf74b53b90323854caaa
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/frr@sha256:45bb585473b56a10faca290322b94c67f86e5d485cae4905a6ebbef394fae7e4
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/frr@sha256:843dcbe5ce0bf03e4335de5c1175752442173d659f2efa1cd0caee237de93248
SPDX SBOMhttps://spdx.dev/Documentdhi.io/frr@sha256:cc64012c8b13fac9bb6d3a6e1f3be760045b48042c18beee1450de9aad88b587