Redis

dhi.io/redis

Redis 8.10.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

8-debian-fips, 8-debian13-fips, 8-fips, 8.10-debian-fips, 8.10-debian13-fips, 8.10-fips, 8.10.1-debian-fips, 8.10.1-debian13-fips, 8.10.1-fips

Index digest:

sha256:235c16fa050d79cb4d4b7f700d2fb221642a78425af7cc3b52436f53e025f5de

Manifest digest:

sha256:c06970ff1ac2681fdcbc466d00b00b3594c565d2d34ecc0557b3158af9cfe5b8

Size

30.36 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/redis:8-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/redis:8-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/redis@sha256:505d5baedac3e5466baedefa8c9ae54db2fd45dee5486defafb0a7b5404ecb72
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/redis@sha256:92f9326412aff19c1d41be03440cc173b5984f4aa7ac23afed0dcb6898a3ec5f
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/redis@sha256:2abef235102c89354072bd8f59a3c427f789f9eadff73b909993db67af369d3d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/redis@sha256:184fd5f311b440d2d8194c3598301df7db66ecc1aead556d98ca1db356d7d32c
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/redis@sha256:36917d16632cfa0990c8136f84e2a615d1508203e811057868b0747003222532
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/redis@sha256:f39d7baa80f4d6769dcbc24e99af5c825c975d63f4a40c8044dd37808c4d6799
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/redis@sha256:2191ab63be67159e1cb50d235f708454207e54850583073b931dd986cba80c0f
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/redis@sha256:4f6f22eef856e6a79a3103c28944c28863abdb9e3c2298683f81de3efdb1cf48
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/redis@sha256:5d95da5304e9f93c0518f632c7714731f6277bbb43c6cbc8517613d62f5552e9
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/redis@sha256:f292d4480fe6d4760db7467f551873ca2443b96cb1c346db0d72000b28517940
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/redis@sha256:2357ee4599c3bddd6bbad0b94e92c8ad24cb6d9995d67d57f740ef38d93f09ee
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/redis@sha256:bc51e45f6a86c7e0a43f22160a53cbfc67ab7d7e6740b5b2511ed61e0fc87f95
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/redis@sha256:ab22743c54c85c8cdf4077f6fd0182b4a4cd382e290cc2264f68ab9a021725c5
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/redis@sha256:32e7c99f03636316ec76d0e4d3cb2028fc3ccb3b1dfa682fc356188f104951bc
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/redis@sha256:be0c9d6b1f3a9753fc81789341fbf03066c85fe13113fa178e39bd44b348ec0c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/redis@sha256:76dea488fe58b441653a3ac0b898220ec798ab1382c460160c67d185ca7ea7ea
SPDX SBOMhttps://spdx.dev/Documentdhi.io/redis@sha256:f2f07df58f666b532baccabf4daa94fa53ec560ca6f4d2b51c829802de79eaee