Redis

dhi.io/redis

Redis 8.6.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

8.6-alpine3.23-fips-dev, 8.6.5-alpine3.23-fips-dev

Index digest:

sha256:3f254ffcc1994b28a93ccff4ac5c659517ee203a855656b7419bdb045c38ae49

Manifest digest:

sha256:2fa0322cd6c277efcf61e2f6c0c371779426c1c9cbceed2476b2115d37c1f32c

Size

26.47 MB

Last pushed

8 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/redis:8.6-alpine3.23-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/redis:8.6-alpine3.23-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/redis@sha256:7b3d87863a445439eb2f80e3e6ef3895e1c3e2737183bccac1d568d2c5cb9dd2
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/redis@sha256:05afaec8f9289e11e10cd3dc4964aafb855627af77af85be8fe814661d23da6f
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/redis@sha256:145c99391fdbf051445ad5ab5f53e2aac3439776a05089aee756dec0c0ba41d4
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/redis@sha256:187041eb3500a54c4540c9b3def060f6a1823eab1f4fc1db229533f2bfc000ac
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/redis@sha256:35a9b4aaf9879965d34a3af03db1a992f3391b6cec84bd7a537ba4f5f5a5ff51
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/redis@sha256:217c685301ef55edd1dc676c836b8993b0cbdb71ea0acaccb14265a18f0f261b
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/redis@sha256:75109dc57a81cd8f326547a3a29c4467f17ecdc62b5a6bbda7104be1425ed3fb
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/redis@sha256:24dc45531d20b701f051899cbba3d0877c42e3c39c4f14c03e0c5e455bbca17c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/redis@sha256:097db822fde14792aff8e3a80a6d091324a4664abb9b8ffb84201b06e7bd0044
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/redis@sha256:85eb7969f17299e0884cc4f086827915ad868a3067f8aa5f9e55afd5e9e3b011
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/redis@sha256:5d0b230279afbef724d3a9b792179ee286dab77b961963cf3dd08ca6237ba138
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/redis@sha256:d8624bdd25d08754056a2f10881e10638d21eead3723b75f65ffe9fda50d07ae
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/redis@sha256:f97412d23b61520a23224bf02fb99788f5d6e2a048b361d0f0f12a96bb1f2b92
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/redis@sha256:5a6185223a50cdf74ec9b116b2cebabd2bdd10d84d084525b30cceb9e74e08b7
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/redis@sha256:6f6e01e6351c8df241259e6530e427fac30f9a9fc088a8312f507223c14f2ddc
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/redis@sha256:d7cd375299e0657bacc660b3ad9b399269ff60424810cf3c0eeeb698fe8bb0b2
SPDX SBOMhttps://spdx.dev/Documentdhi.io/redis@sha256:43f2134c9fadc2486e8f3d820321259ddaf130589f3c1a462ba644da8c78e42a