Sign inSign up
FRRouting

dhi.io/frr

FRRouting 10.x

CIS
linux/amd64
debian 13
Tags:

10.5, 10.5-debian, 10.5-debian13, 10.5.5, 10.5.5-debian, 10.5.5-debian13

Index digest:

sha256:6e1b4266d86c901aabd377d167ebd8cf1f565d28e770a4d6f8175008d2db0331

Manifest digest:

sha256:c9a964fcd83262179a14b073fb4285c914ffb23b1f17d8fd94255af6d5d1e929

Size

74.55 MB

Last pushed

7 hours ago

Vulnerabilities

0
0
3
1
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/frr:10.5

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/frr:10.5 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/frr@sha256:a964e9032afe23d365b0a8e90ca45afbfff3392051ee3852f55d929785c5f8f3
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/frr@sha256:094f0b96a6e3cfca6a0a677a1b4c3e2842ecaed347422b639f18273c4992abc5
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/frr@sha256:6c39f49acd184cecca8fec05959550fcffbfa60d07a9e1ba999abdd382092bc5
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/frr@sha256:1bb31b67a7b5b9bbaff619c4d517f03ad22147a1d82f0cea43454a0f81cb5a99
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/frr@sha256:249477057df6a9514fe29baff6afb86b0ad08b7779f4dfdca3410b588b7d3472
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/frr@sha256:0112ebf5aa7c74e30c7048776e027f8ea514491b950ecdede3b828dcdf19d8e6
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/frr@sha256:65b652f0844083c3795ad1fd7b6e56047af5d26daec7d67ed62d5854018db779
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/frr@sha256:b12a5a3daadc668af16e74ab15d467a1deacbb0f740928222468a553b0d66ec3
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/frr@sha256:615bd52ae6a877a1892c24bfbab14aca78039755682fd4876b249d35832a143c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/frr@sha256:21f8f2ee412b2d8744008c3f757842ebb2a6c537ec10ccf1e62e65e08314c319
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/frr@sha256:136c8a8904a2346f40dc2a1e44ad8e9b03ad00b5e79e9993c83fdae69b3892a5
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/frr@sha256:d76f6ba337b1583003141ff8c1d32cba35dfd70da582dc46e5559b4d64d744fe
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/frr@sha256:e1549881841f7080b99c8c149516503c9507e826d20d9af2c1f801b2d98ac88a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/frr@sha256:a7a31bded6364b8a04c03489253a0a8e950b0a39571197b573105a4383ea4176
SPDX SBOMhttps://spdx.dev/Documentdhi.io/frr@sha256:357ac341212b4f84c5219d4f9c30f5605ced629d69561c5b04658cf22f9ecf9e