Sign inSign up
Valkey Bundle

dhi.io/valkey-bundle

Valkey Bundle 9.1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

9-alpine-fips-dev, 9-alpine3.24-fips-dev, 9.1-alpine-fips-dev, 9.1-alpine3.24-fips-dev, 9.1.2-alpine-fips-dev, 9.1.2-alpine3.24-fips-dev

Index digest:

sha256:25077ec0b0cd8d29e1bd2f05fddf1d2478887bf485c762afa4e166cc5e9df918

Manifest digest:

sha256:f57e4bd7b4552b384ffa4e702f1d7a80bfc6c5f75283243c593aa2b43f55c879

Size

61.52 MB

Last pushed

6 days ago

Vulnerabilities

0
0
0
0
0

Support

Active until Oct 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/valkey-bundle:9-alpine-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/valkey-bundle:9-alpine-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/valkey-bundle@sha256:9c778f10de26235575f17290f29c4899c7b452bc0ed96a3c0229803287aac2ac
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/valkey-bundle@sha256:551ac66cbe3a3e8b18e0d765a903d70763fcc15ecd3a7ee16ddc958083b8ae88
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/valkey-bundle@sha256:53d643d9f857e5470a4ff45f064e77a46f0b93c4702b8ff58bd05240f7f1dbec
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/valkey-bundle@sha256:d394277d0f0a6fff288f0e65bbc8400581c7ca3bcdefc877333cdd71e80becb0
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/valkey-bundle@sha256:43517c1fc496e4371db912e59400d4add88611c9b51ddf943011c4106b40ffe2
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/valkey-bundle@sha256:2bc3bd194a6ab97f291ec8e8aa1c84ee7905f9f424172161ce24f0098ad77b39
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/valkey-bundle@sha256:a1487b548391e4da1bf2da5b17fa406f4d2f83e481f93cb0f0f6dde0a7e016a3
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/valkey-bundle@sha256:00741994f7fc2aa7e448bbf6520812d01c73b368161989bdbfe76019df8d1588
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/valkey-bundle@sha256:a30bd8fd19fab8be709509c25f7e239d663a41466047ab7fa91e25578dffe699
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/valkey-bundle@sha256:49b7c4cb960ba1f5f8505390c7acdc2288021d220acfb0296ce0b1e412bc6fea
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/valkey-bundle@sha256:0889514e0e4376e47443435498efc733fe5ad168d91fde52272802cb20f3bd08
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/valkey-bundle@sha256:e68ee52d4fa6f241db8965c0b6f3994e099398b67d3038cab7bb0da15d8fa484
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/valkey-bundle@sha256:e8f2c971a6e48a57f17360bcf38edb91797f17e556aa23a0765caf2325cd022b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/valkey-bundle@sha256:91d03840fd41bca82e8e117f525dde1975d0cbec07af68f7ad2d78f98612be0e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/valkey-bundle@sha256:15179b11dc36a6c1f0937f2310f34ec96f20cc7fec9ce87448690d72a118eeff
SPDX SBOMhttps://spdx.dev/Documentdhi.io/valkey-bundle@sha256:1bc1edbe127c621e228335dd5b3cd137080fe3fb6eb1d91bb753f07df4a038d0