dhi.io/frr
10-debian-fips, 10-debian13-fips, 10-fips, 10.7-debian-fips, 10.7-debian13-fips, 10.7-fips, 10.7.1-debian-fips, 10.7.1-debian13-fips, 10.7.1-fips
sha256:88e8e90520563b65910a9b3dd46bd44a8cccb1bc3e11d96936a20dddf2f9220e
Manifest digest:sha256:c6f4ae9611da8230bc2ec21060afccd520aad204e1f3e7bde3999d6e680ce393
Size
76.46 MB
Last pushed
7 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/frr:10-debian-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/frr:10-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/frr@sha256:38c458f315c217a89b5631be22671c3de2dc0740214c99290e799a4d472825ad |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/frr@sha256:dc16c8d80747f5663dfee9c1385024f197b56c303557a66ea91b27c6a7625556 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/frr@sha256:a56898516a28e771a2239c6475ae3f69c981fccc7a3e3ed4fa1cdbcf4dd0c407 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/frr@sha256:6f23f5f4ca3787812a08b64b5cb006d45a2095e9d3c6050d2aabd4e2cab4860c |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/frr@sha256:108238299d1a2fed83cecfd7d52cb030b8faa6544257ce5fd2a8226ceb2dce07 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/frr@sha256:d7b8107c376eb62f3589b0c8df24dd0b2fac6a1745b1a06ae161675ee79fef00 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/frr@sha256:5929ed7473e8f0819dc45719f2fac6726ebcd3daabef7780b267d9744d258809 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/frr@sha256:7787d8c2339797498885244f00ef7f38d5f6a4fdaf197aaefc96ac4842e49984 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/frr@sha256:6849ef2b4ed1088881636d64bf388fc727630ddaec9f47bb1bebe63b248898b1 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/frr@sha256:49b141417fe37b5119820f93189b4a86856fb55f483729b74d64cc2d6d435447 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/frr@sha256:88387b750846d55bb07a9499e4b2f520771349f8a27a9385d1919fa857addfb2 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/frr@sha256:fd69e54b122958db996cd0a17f570348d8d6317037f6452cda8730cba2ca8318 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/frr@sha256:2d11ef1fb8805303e1add52af1b297f94878de60442597a41d2e174212a50c4a |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/frr@sha256:64e03ef10606acd93bba273f1495f166fa258133837e2db469e6c263da7b3d21 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/frr@sha256:2c384890054d54bf7ca83b734318ad91779eedeb04327eaba5bb96b3634d43fb |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/frr@sha256:8327abe0754e603b4c1189da562d050128db420b78ed85baf39c47b65d26e07f |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/frr@sha256:7247ae1c6b915c16273a1bda9aa2dbf203c1b6e8d52bd62bcd62bf3b6fad6643 |