Sign inSign up
FRRouting

dhi.io/frr

FRRouting 10.x (dev)

CIS
linux/amd64
debian 13
Tags:

10.5-debian-dev, 10.5-debian13-dev, 10.5-dev, 10.5.5-debian-dev, 10.5.5-debian13-dev, 10.5.5-dev

Index digest:

sha256:ab0580d51cc38c960135f2ecb82f33aed4ac20ac4e99ab54bbfb51140c9fcd25

Manifest digest:

sha256:0d41a2edaa5918ee03d1a5b6d00e923388bf5a30e9825259d8c0b4d980fcbd18

Size

81.30 MB

Last pushed

2 days ago

Vulnerabilities

0
0
4
3
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/frr:10.5-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/frr:10.5-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/frr@sha256:614ee3bf93834d0ac5c2d9266afcdd5652f408a9a2874cb7310e77bfd1b40334
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/frr@sha256:f6057869bb1da0b034ec439af540e54792266f25869510cd3389947cbd462933
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/frr@sha256:6c7207862f3ae5413728374f964edc1feafae7f8246ed28cf2693076116f6a4f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/frr@sha256:fc030ee615b3800cd6f5f3d341880024fdc09ab5ee316800da0720d7851c807d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/frr@sha256:63a7fdeb75d16ea1e4e8fbbee467fcedc14d7a3dfa40c1c354bac683e0523dc6
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/frr@sha256:55de6b7110be9728d92bad429e07f256f084b1f77854cbd6eca194b436ae724c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/frr@sha256:0f9e62de1a7f32ebe490792d8ebef18b9477b47cf7042fe3841e27e0cc2ce586
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/frr@sha256:37a668c11732a5415e32b7cf5a15ce4d7ac5fc2714c5632f638fe5e23a616a51
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/frr@sha256:4157e349b85ba8d89af1979bf1f41ad2decff3c5cd388adbeaac100eb7841072
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/frr@sha256:5eb5751e0ac6a4f7718efcbd9af7513debc783c27a9ba77564c8a499e312088c
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/frr@sha256:e70b39cb0dcec4a37c773a1c5d8abd5ee0c855149b973a0b890a3b8599740b88
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/frr@sha256:d194d82aca1fadddf25aae77cab3b58dca9b4691076aae1fb208cead43c5b3a4
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/frr@sha256:08af8dbdcf24078fada3b6c7b8eef5e540a5eb74cba2621c393b470baedbe387
SPDX SBOMhttps://spdx.dev/Documentdhi.io/frr@sha256:e0157276406438c1c1e1ea5f5df903b1b5479455322b2896dd002d06ce9b2901