Redis

dhi.io/redis

Redis 8.6.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

8.6-debian-fips-dev, 8.6-debian13-fips-dev, 8.6-fips-dev, 8.6.5-debian-fips-dev, 8.6.5-debian13-fips-dev, 8.6.5-fips-dev

Index digest:

sha256:ca29b0c30567cf6bc7f1cbe49e8ae7591b2680e1a9ea89adfbe10bed3c1abac8

Manifest digest:

sha256:95952cd4fe032dbe6ced85a18b5f4d61e7088439cbd0eebd6cab5c02329528d1

Size

42.35 MB

Last pushed

9 days ago

Vulnerabilities

0
0
2
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/redis:8.6-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/redis:8.6-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/redis@sha256:4e710c0e73e06c237ef5883fa0ee138dd065e74638db9f168994940877d385ab
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/redis@sha256:52aadce7db205f499c2c2a757baf400174a7c445aa1646a64be24466e6e263ca
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/redis@sha256:e6eac23a48e0379cc4f58e64d592c930a711818b92eefbef0308bc94986bfcad
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/redis@sha256:572c2b94579f774925cbb2c81604112adab62fea00a975fc95dbd1b903a584aa
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/redis@sha256:eb0c985ee8fc10b1029f7d3f0f8577c3cad78162f0022ff9b875f8e21315aeea
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/redis@sha256:2a8a8e04972d7755cf6d0a8035c5a52fa22d8e575a754e28e06c942fc68e7bb8
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/redis@sha256:3644492bec017a3a7e43f3186cb4cdfc2934c101e05ab53fb4ac6477ddec0863
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/redis@sha256:b9ab900d8c0c3209e899b25a0580f6cfc016f73d8eb6c1c9e91bc607c66c9c31
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/redis@sha256:a79265ccdf4fa5662696bb644181dd3b6846a821e86c9e976756c55e049a27b7
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/redis@sha256:8ceec84a461d181041681010288e11b963684c1541cfe6495ad25eb8d3ff2f0a
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/redis@sha256:05c3e953d0329c7404663fd69c6209739fe8466a3b4dade12b267334554e84cd
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/redis@sha256:02d04757260514048f6e27e38a47f07f02dfa8b004a7e61ecb72a6368296c648
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/redis@sha256:229552b962ae45dd31e0c35b1517632ced5dba8909495d69197163d032fe32c1
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/redis@sha256:d1a623f51bf115fc249912a07aca5b9cb16a4b8694c2f944ba7028007c177bf2
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/redis@sha256:a77a5cb7cf5346b8eea5a3a53eba0ae0198f31d675c9e721ee1dd038aaa92099
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/redis@sha256:25115b8e4e08f202f3e9691b6920949f9093e405c899747d89f595d6138aa35c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/redis@sha256:50f211d141f14a3a2d97edf2f80aeac73329d5b914a30166e8cb46d9fcb09770