dhi.io/frr
10.5-debian-fips, 10.5-debian13-fips, 10.5-fips, 10.5.5-debian-fips, 10.5.5-debian13-fips, 10.5.5-fips
sha256:ddd685491318e27bddeec4a262c9d1c81e8f60b537bdabbcdc77efadb2faca0a
Manifest digest:sha256:52bd128be46a02f6a5376b001c5e30231dda156aacd7579a719af94845b045cb
Size
75.33 MB
Last pushed
7 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/frr:10.5-debian-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/frr:10.5-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/frr@sha256:e2dc36cb105ae7d3edf2a1ba662c180e7377012efe3e8d5330d00794501f9040 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/frr@sha256:c36503e67d176e25b6ca60391d535fc1e31d91f65a07250b1d90daa06de06db6 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/frr@sha256:799dad83f76a29f09e3f81992b333dcd62c6dfcc4eb40114971b88eb76bf33f6 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/frr@sha256:499c9cb3609116352880f99c15a01107c138441520f27b65b0f2e062e79f12fe |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/frr@sha256:59b6eaf72302e009a71f50b6a71776779322dd8056f4324e48a34e5e1e56f80e |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/frr@sha256:2f21b02d140b19308a10c58e3675f10122a88aee0fbca668a14448f25f4f3e20 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/frr@sha256:b6778695bf48b91cc2f978221b761b6b32e739895ed933751802d8585c666b96 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/frr@sha256:a13f9c75a3cf4eef48d3e4bdbac6251cd3aae88baea3c7c599cf2a8d208b48f2 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/frr@sha256:d9f548c52330190df7d3e5fbd44b8b329ae45e02ae48d6e4ccc1b0fdd2784a51 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/frr@sha256:a7e547842f7a30292a8d657abb5049769ef2b54f2dd2559cce4d5a607adee263 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/frr@sha256:ca176a89ca045a1d414f32ac3ce610bb72ac6ab6a5f56a05984b2255e4350ae6 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/frr@sha256:39ba6c49a856cb536c69ebc8b11b858b4db37f09be5415fc885c343f72caa2fb |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/frr@sha256:c7a8cb94c5a389f0302dc34b0894270f4a1ccb2d15629ad1930080949af391a7 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/frr@sha256:9bbb77633eeca26f09e6dc53057a63a8d930f5a1c7883db29a64c68083b11979 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/frr@sha256:bdc7b62b3176e061075d6b107266bf295a6e9ee54e38b58b8af6b0ebc277c06b |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/frr@sha256:29575926a7d5c7f4decfc1c472734a7ec8dea77bcab77c84536bfc1fdb267474 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/frr@sha256:b394489b02bad7f08f6e807aeb6fbbbf2a00e48fc5286f1a824fd4b214859ea0 |