Redis

dhi.io/redis

Redis 8.8.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

8.8-debian-fips, 8.8-debian13-fips, 8.8-fips, 8.8.1-debian-fips, 8.8.1-debian13-fips, 8.8.1-fips

Index digest:

sha256:e4a975eb3f02b13085108bb4b426d7570c5fd57ca27c7c81007b5a2b63a2a070

Manifest digest:

sha256:87fc10cf60e90172e2272f615808679236d19a32bd4c6f886889428c0473c064

Size

29.48 MB

Last pushed

10 days ago

Vulnerabilities

0
0
1
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/redis:8.8-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/redis:8.8-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/redis@sha256:f8638737f7e11aa253178676edc898a35385d77c0b5368db4e95ae964ef1c174
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/redis@sha256:316b002b9e55a99c3a1055f5a687b39565c73dbfc9557c8b87d0e179075bff9b
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/redis@sha256:b96471c2728b4ff08dab4261982ab0eb70c366c8efd7585430d1fc5e3c7ea884
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/redis@sha256:4a9abcc1ff44af94e306bc46f6c7d0b84d6deea24a912ade41e1a1d6ea34a301
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/redis@sha256:ca07eb4c337f19c66b58285b808e3ff3b6c03e7c0dd8f08c49b5b2fc735d6721
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/redis@sha256:314ff31ce98e1eac67558c8b653af9db78a2276b48dac1d94ee4a9ffd6ba50ea
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/redis@sha256:47cb5220a5b76802c8d41180c84da44604693fca393fa13ec460a3cafa45b582
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/redis@sha256:5b44839e52e81cfe33ad54ea98f353b0e28eb27010f3084201162183a2928aa1
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/redis@sha256:89d720eca3eceb13a2c06342b917e1d949c4c4976db6c6cde4d2a8a23d7caa62
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/redis@sha256:b7cdaa67812797e329dc4403fe3872663eb8e34b606bea922d5a8b727a88a390
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/redis@sha256:f581dce4a0ed41610811f785edb929ec237eee4428df1437d22fd8b2377706da
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/redis@sha256:19f7607887dfddd4b01d37fe865691b687353d7218dc90eef3e7ee08faaf0b03
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/redis@sha256:5e0f4fd2bda149cf24f7f5f7f9fcbe52144e5b81143e6b3e50b949711df1b472
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/redis@sha256:0be540aad96343498ae815f84ee40eed10b9f04d62f2e64ab66d8d3dd73406cd
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/redis@sha256:6fc6773a993295b3a1248c953cfd5d2bd8900556f3fbadee4ffa62cc137c5cc3
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/redis@sha256:781bff5fc9dafbd02d50aaad239fc112db23df02e6c1f5634a2523634bfdfab3
SPDX SBOMhttps://spdx.dev/Documentdhi.io/redis@sha256:64132166cdade4875c607e6ad459f01d38cface50bb613bcb3338746c4cc2359