Sign inSign up
Redis

dhi.io/redis

Redis 8.8.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

8-alpine3.23-fips-dev, 8.8-alpine3.23-fips-dev, 8.8.3-alpine3.23-fips-dev

Index digest:

sha256:d5fc097a8bc5d774fc99d9fd00900260c087daac6736f632875b573ed9089012

Manifest digest:

sha256:40a6c8190e4413f58d118da4d30d60c2b08bee98cc95384560fea053257c8415

Size

27.17 MB

Last pushed

19 days ago

Vulnerabilities

0
1
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/redis:8-alpine3.23-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/redis:8-alpine3.23-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/redis@sha256:70b5f15dbe77a5a9d8c2c4f012e9f51bbc271e47cdc83b6ee83f1f135c5e40e7
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/redis@sha256:60d1f58298e50ceadb0a9d35edf31325f159701b31bed5251591ad2f1d92f4ec
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/redis@sha256:4534e6dfcb9512ec5582215fe6b68f39c3c4d46acbeb7766708790809b8be467
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/redis@sha256:48c8c0f6ef5e51f39995e4c384b7f09629ac3d8e7c1e760649ca65517c435b98
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/redis@sha256:4a8aad708ce346a394ab6e73cdfe3b744f821283b2dc63e6a7182ee3b95833ac
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/redis@sha256:2802e52d8f04eda3666a3fcebb97d27942e52b1f5f36a02cd466231ed923d33f
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/redis@sha256:21563cc8a9c0dfdbb50d6711bbf7bafc0a2bacb23935f30bbd22c97e51bcfff4
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/redis@sha256:b025bac5ef63d3fb87caa4a7d8b98219c26790d7a27546cd4f50bf8921cd13d8
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/redis@sha256:faf4e581c45756274f880efce12f891abfdbd19dd9dc504e50a4e425eba5e34a
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/redis@sha256:a229897caff25bb8cd86e041d738ecc9d45171c95a04aa57c65f51988649270e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/redis@sha256:7474f5b8da66b53b63e0a91af4b7687f9c5a30cd7296562ff20135bd1cd1c1b4
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/redis@sha256:34a5cd88006569ec40580431829bd5e2f05007810562d0818f75d13aad7a7d7b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/redis@sha256:f8ff1c82db4ef08015b1d2ce73a379156fca265dd066732c289859d99504a8b1
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/redis@sha256:ac7ad90ae959d50deeab3077fe791da0a539bb6c60a2dd3a711e04cbfe2e679e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/redis@sha256:41078774028fcdb76b32ada9144abb48047de04a0b6a776bbee6114c4387be1c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/redis@sha256:a613246dca02d445ae49a8314500a81eea8743b235961819b361c72b79617df2