Sign inSign up
Redis

dhi.io/redis

Redis 8.8.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

8.8-debian-fips, 8.8-debian13-fips, 8.8-fips, 8.8.3-debian-fips, 8.8.3-debian13-fips, 8.8.3-fips

Index digest:

sha256:7866bba712d2b3339e2761b77e3221f2863f82d578a6cb64aec1974171021dde

Manifest digest:

sha256:3c618ddcc05385ed478ab9b42d54558a3bceb58dd98ba9b128e72b4de7a1c4fe

Size

29.63 MB

Last pushed

8 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/redis:8.8-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/redis:8.8-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/redis@sha256:57db365fd7eaccd3847947a4f06b3362a5336cbfd869c5ed3c604326e8b5f1d2
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/redis@sha256:c182dd739f4bad3e5d3c0df6a053c1f0e71a757d2013b9040128fa29bcccc714
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/redis@sha256:21eb93d5edd9b3d649573a6971e5e32749f706eca231199f2dcbd93075a8c6d9
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/redis@sha256:30eb9ce6b43721c878eae5e63da47548a506a83b77d705e4bf9d3bfc41ec10f5
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/redis@sha256:e7bc90018d65e26ad28ce6cecb84915189850fcccae2cabbc8a33e79d989bced
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/redis@sha256:f7cb86acd1fd198aac909b903301a23d932c0f4a36f0dbdfd3e84e65a2f08372
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/redis@sha256:8ea6c886bf1ddfbcf9b5c5ce661ef714d10b6f523ecb2df8ba86a71a07577ad6
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/redis@sha256:081918d56995a4f3255795f28edf357277b8fc410406cd943c509c82b5912f4e
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/redis@sha256:c311ca3873b1d22f8c47a2adbacf6763870c0b272b730aa1839b9028568e296e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/redis@sha256:7e6e9f8494d74ba01cdeb0c1c20fbf0940621308af530e7a599605cfd4f0f876
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/redis@sha256:7a4f498bf076e945b46c8ec37ca36b807dceb51800eed1983a76cd771bfb46e9
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/redis@sha256:8a510c433ff85f55c84b35773d1046b31d3406dc586ed81847205f67afe1ce0d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/redis@sha256:237b080b6977077c4937c2115ef57d66732a141db15211b587b783ba38d8a63b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/redis@sha256:fd24657aa3fb2ecfd11a7ff13588ea4ce5bbb4b00459dbe5a2cf0e1484b10530
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/redis@sha256:b4234e07fa87a20f87d91bc24d8651ce74e97bf97372224ffc700129d8505aaf
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/redis@sha256:51e573d7aba28d8316a48a958b741884af3bdea70d73c4c68497f835cd2c2ebf
SPDX SBOMhttps://spdx.dev/Documentdhi.io/redis@sha256:19089858a4544ff685910a5639cc01909635a721553c595667cce968afa9602e