Redis

dhi.io/redis

Redis 8.8.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

8-alpine3.23-fips-dev, 8.8-alpine3.23-fips-dev, 8.8.1-alpine3.23-fips-dev

Index digest:

sha256:6c1b9617ef2fcc40e74484e2bfcc7e1ff63d93222378e1fd1babe79210a0d250

Manifest digest:

sha256:86dd6932f40fd9769057c815d47692e2cb59002ebe8398a04fbb86c3752cae39

Size

27.05 MB

Last pushed

7 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/redis:8-alpine3.23-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/redis:8-alpine3.23-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/redis@sha256:ced6165237505e3177c6e4728be978177f9c0ef9e30d65df8bd54759a370e507
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/redis@sha256:22c99a48c928fea2d8e2fb7f2fe42f3af78f347debefb0b0a6f0bf8b478fcc93
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/redis@sha256:43eeafbdddb3990c803a7124bcf691e0a165b7b10eb87084e09e8923f9066a9e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/redis@sha256:f022ec1aab6dba4f4cc3f3406569813e6a243bca9ebb67abd3ed00d3898d1987
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/redis@sha256:19481ef14d79cc8a89bae34606cb7fe1f332aebf1aa663ba48ed26daaaffa58b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/redis@sha256:646623d23f4a081cf4b00a00f0bc0bfd48ecad8845a5696324313301541177da
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/redis@sha256:3b3e441850073dffb04e01328a1dded9f63b7f0bf181a0ddc92d7138443e79da
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/redis@sha256:89703a19a429e5b155cea1215eda9cd6b195ca4bf62f5964b26fa7a1a868cda9
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/redis@sha256:9d04635d1123478e1390475865efe631460aa33b6d68d2c722b22f7cc4f855d0
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/redis@sha256:1f62668134e16bfa7e075a0912faf862e1af9bf82e9c782b56fd52e0c8033755
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/redis@sha256:dc6b411173b5193ff962701a1aa45fdffba3ba9ef359584b477b1f7e74ffabe4
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/redis@sha256:b79e0ad2064ffe56f3e6bf7699cf7d5acdc092c1c4c16d7381e79a59867225a5
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/redis@sha256:20ab8c290883128c76c50d37517065420dd08833f09410d0f3ff08cefdc6f2ba
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/redis@sha256:b8b09d06a5bd8b775776eed577b56f120a315da1c53c4602442a91b822eeefdd
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/redis@sha256:5fc59f992e4f7ebfc9d36749d820ad95bbadd661baffd240e2dafeab30f66855
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/redis@sha256:3820d0f64f2f34d60aaf2d907be988b2748604a4a266bccace749c69365efa6b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/redis@sha256:10b909f00efeaeae787a368d0cebd6d368d9622f873548c136d4a87dfce8df8f