Sign inSign up
FRRouting

dhi.io/frr

FRRouting 10.x (dev)

CIS
linux/amd64
debian 13
Tags:

10.3-debian-dev, 10.3-debian13-dev, 10.3-dev, 10.3.4-debian-dev, 10.3.4-debian13-dev, 10.3.4-dev

Index digest:

sha256:13dc6bbaf586226dc7e1ea2a67eb50737913dcb788179f716588bdcef984bc49

Manifest digest:

sha256:61d92126b14f75807c6b83ec33701ff03a274e42fe40443e5bd6b7a784bb4de9

Size

80.81 MB

Last pushed

7 hours ago

Vulnerabilities

0
0
3
2
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/frr:10.3-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/frr:10.3-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/frr@sha256:b6f9943ae31c5d72985ed1f843b3d85d49313abe232cf9ba8a006bb2fdd208c8
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/frr@sha256:6ac852e8394ba49ed75acd4778cb7a9dbc751be09b7d947f45b72c074bb25988
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/frr@sha256:fa2c416f3189b24d799bf5fabacf282ec19195a0c1815fbd750bdfd971fca03a
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/frr@sha256:04e48f636d1c216b0afa1acc6ecbd440b3233a134b0a43b66813fd147f504c31
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/frr@sha256:bd7f7056566b3c8d10482d71e9a4b5a136faefa893504a11a3c8384b68b817ef
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/frr@sha256:f85490ddc3f62311c3b2dbb8380a45852909ee92f1ad5e04ca3849e7a1a361ce
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/frr@sha256:1a3ada6edeea6cff9f07aaf1efe2cc81b7736a0dfea6239663507b8def5e2dfa
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/frr@sha256:2eeb82a5eef7b4bd20a16d9af902cc67756fbf30188aa9f0baf2e94468ec9f40
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/frr@sha256:1f881e4895c9b954eb815e58864a5548eaceab2ad0cd80abfcef7e3babf2773a
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/frr@sha256:e9e4e3b8de0f734aca86d92a81d65bb5c857a1c2a23447c1d061e79b70ed8178
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/frr@sha256:6caa7c2b7a08cdfdec2ba70f20d0fb6a95c350fe97df96d82df6c24d4257c32a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/frr@sha256:5b586b56c0e296a898ccefb037e2924490cb6cd0d17181b035d0ef59eb4e3358
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/frr@sha256:6fa1e67d042c8fcfc5817ae5b030094ba331b4c0f2cda66b18e15e515633dd82
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/frr@sha256:f758c6c8bb326b77e436750c371d3d55484b55fa06c97d5b510c4c108a802944
SPDX SBOMhttps://spdx.dev/Documentdhi.io/frr@sha256:304db47c85d00eaabfec40b4f1e5a3703b37bcdd305deccc62f08e6a3f468ccb