Redis

dhi.io/redis

Redis 8.8.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

8.8-debian-fips-dev, 8.8-debian13-fips-dev, 8.8-fips-dev, 8.8.1-debian-fips-dev, 8.8.1-debian13-fips-dev, 8.8.1-fips-dev

Index digest:

sha256:466843478c3f69fd4e2186f5252a1e23595f6ce5d7326d116a2d49e1447e0754

Manifest digest:

sha256:d8f5237572f50ffcbb7f2a76b0d417fe52d920a3988407a5e0237425db3ac1da

Size

43.15 MB

Last pushed

9 days ago

Vulnerabilities

0
0
2
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/redis:8.8-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/redis:8.8-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/redis@sha256:1ca913b76f0be821fec0cf660e8e909350153c9d9f6938533b1adde0384e2982
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/redis@sha256:f1d01121a82c8b06a43ac0cf634c300979063921efe991875ff3d7495669588c
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/redis@sha256:7626e1e6a5dade79d57a59efab271c724bfa0c87b48f800defb44e81c69df43d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/redis@sha256:9f4a18cb0484c2ccdce449bfa8a2aa16e715a86d56e4dbe86c840c6fb8cf27e5
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/redis@sha256:d966bd6cf1ca8ba9b116fd5f78f9681ff8ff44d30b8cd971b4a5231e851b3548
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/redis@sha256:b92b9332a7d46d3566cc1e12c4898aaf4440bb7735d1876f164b13c3ac667ee1
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/redis@sha256:02cc66b0efa063b33fa9ab7d6038132e4df3e4dbbb9722dbbb0a10f71c13762a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/redis@sha256:dc4f39cb94309409b22bb4c39b89245b51bfe81819975a1df9717af4d6edeeed
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/redis@sha256:c17ef651ce457a13d3c349bf4a9e4a90367c55ddb0a281658b560ee27478828e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/redis@sha256:4b9197ee08043cbae9642130b8d10c18f54b79f1d57566cf843f31514624668f
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/redis@sha256:8b7aceba5fc717e755fb3e5898d966215f34dc432b71e9d38fc80b7c16b825ed
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/redis@sha256:b2531732749cb3b44524037e6286c2c8bd8293af14d0988e95d39e483038bb3a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/redis@sha256:111ee53711d8ee3a08987769a2eab3e8cee697d64aa30f2b85f048c8d0cab226
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/redis@sha256:f262cd80a568e50ff09fd33edc562d6f9d671b54455309761bbf18c63cc5abff
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/redis@sha256:11a9967a3f1f82a84f58b65062de8f3553b72132db03aa6fa021af29e6780df4
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/redis@sha256:d21649ad8297b5fb89db284ed10ac27bd52bfa64b3a919ba3306e8be86f63e83
SPDX SBOMhttps://spdx.dev/Documentdhi.io/redis@sha256:2f17dc2bcc18782c7d3bc9dca2e3a28ca0766d0b7c8e3d6b90ba2aeba3f9c04e