Sign inSign up
Redis

dhi.io/redis

Redis 8.6.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

8.6-alpine3.23-fips-dev, 8.6.7-alpine3.23-fips-dev

Index digest:

sha256:4bc094f64e3428a2848f128dcdd652545d1a2c1f4cf774d6e0e1ae784d22e8e0

Manifest digest:

sha256:8725e024c1dc2fc3b97d820ec40f7030f0a9716589c3dad1f43e37637f3ac326

Size

26.59 MB

Last pushed

16 days ago

Vulnerabilities

0
1
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/redis:8.6-alpine3.23-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/redis:8.6-alpine3.23-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/redis@sha256:2fcda672aaf066803e7a611eff7efda5508ee9a82f4fe71ecd7b2633335a34cf
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/redis@sha256:f84cfcc042d7c060e174d10d22e12006c6179ee9940b667fa5127fe9ee024c14
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/redis@sha256:876cd69d52c49931b2b454ae2a33b1ab768fdbe62bbd772d571a8c4e547e88d9
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/redis@sha256:290e696e9e0740216bbd4f200d282a2024a17422c234d346b216d3042bfbf9f9
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/redis@sha256:30313be5bbbb01655a5ba5082791d68f4b340be69f38fcaa992764847f867482
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/redis@sha256:5d3677f75902711d04d73ccb639c5c925f91dccfcf7bbb2acbb75495c82fa855
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/redis@sha256:c8b23302ef8adf8150717830908ec55cdad0b147556d0ab4c22cf8cd34400fef
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/redis@sha256:50360be6a6c92400b24e51ffee3ff355d7b22f0886261bac9b8ddf2b8fd2eb08
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/redis@sha256:090046e56be13b8d722dc845419d6bb16888d8c2b5c28484545bdb0d659d8360
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/redis@sha256:ea9a54a4d4cc7be940eaf0310f1889a02ec1b21231735da4b4671fedcb0fdedd
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/redis@sha256:d9fa2459d399e5d74410dd173dee908f492d665ad0c86dd9959919169f51904e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/redis@sha256:7a4bda007c85f18fd16d5b7b74660e19e45e2864407474cdadd5af5fb0e9e70a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/redis@sha256:87c1b41bca3e1a39d8fc6533ea770d02f6648de966a379519fa295e48948083a
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/redis@sha256:e8e1990b5b0e5cdf6d2146e6c8c4ab18be43708144ad68fcf655717973fbdcda
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/redis@sha256:6c5675c64fb91b9f2b166ad6b0e339b2349e23d1f6f4789b60870237531cfde4
SPDX SBOMhttps://spdx.dev/Documentdhi.io/redis@sha256:479c2933c0af7488b7f6bf3683f77b9b4be6a173312cc5a25d4138731af7c32a