Sign inSign up
FRRouting

dhi.io/frr

FRRouting 10.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

10-debian-fips, 10-debian13-fips, 10-fips, 10.7-debian-fips, 10.7-debian13-fips, 10.7-fips, 10.7.1-debian-fips, 10.7.1-debian13-fips, 10.7.1-fips

Index digest:

sha256:091383f0a85fdf91b0a42c4732ce135b75be90b86a89b7b6c6b29ac65b025635

Manifest digest:

sha256:72d3a3fa31dc1635f046ce459faabb80b768e3350e75a68f794968f2e6585bba

Size

76.47 MB

Last pushed

1 day ago

Vulnerabilities

0
2
4
2
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/frr:10-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/frr:10-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/frr@sha256:76975249eff58688efcc4c23149ab283370dc9cb520bd5c516f5dfe4375edf1d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/frr@sha256:15d632d968335087ca6516634ca94fcf7a0355efbc2f4ba3c4b9f46bc2a6a1f9
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/frr@sha256:078bb3a2d32c5d6f9f847494cc493e67dcf8cc9f9efc603bab450b1b60dd2deb
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/frr@sha256:2363ff0a9a782558749649bfe1800ddd22ab84a3cdc2562a5b5451a9ca050b70
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/frr@sha256:45f5c2ce2f635f80c847424df9e05f201a602e0be32ac334303b76d8b7e27ee0
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/frr@sha256:c92a9fc3d998dff1252ac3b70a0b31d72fc5c9ceca68e66d1b9504f62f920590
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/frr@sha256:14bc7cff8f055e92ec26ac82b5bbe8696c27238c2e3d7fba1cdf2da8ec14d1b9
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/frr@sha256:bdc471c6ece740b91c0f1ae75bae43905b36b546b4aae78c41d80d8ee750cf31
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/frr@sha256:193886fbac85a9e35df50d5e58d8d66099916dd4499f6c6a7f39b0b200f2c309
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/frr@sha256:90a83a675709007d1069de3c77f0098b4666b07834e409f7b99b07c30e49fb52
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/frr@sha256:845c239615eb4d3e26cca16184535fc94ac82a1ff1308a6e92a4121b9687eeeb
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/frr@sha256:5deeb47733443bedcacdf74b06ba5ae2cee76b721326e94a98f9a8209ac44e41
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/frr@sha256:6d7c9b75e7847a5611b1d263cb7c01e0ad1ce4cdd44b157564f37f1612707765
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/frr@sha256:861b2225b4baff04530a00292f16449077b89071280cb7b3080ea35c8bb1f0bb
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/frr@sha256:bfc1a55748b0042df7f8865e8dc055e48d064a0b52b3ffae554dab608c3e558a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/frr@sha256:78542481be2c81642f4b31d8191cab4abe833c2a96b9684b8eacba98fd4fd135
SPDX SBOMhttps://spdx.dev/Documentdhi.io/frr@sha256:f54775b7e73d3dfd6fb826f365b3df85b80a7550fea1d67e3737df4dad8502c7