Sign inSign up
Valkey Bundle

dhi.io/valkey-bundle

Valkey Bundle 9.1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

9-debian-fips-dev, 9-debian13-fips-dev, 9-fips-dev, 9.1-debian-fips-dev, 9.1-debian13-fips-dev, 9.1-fips-dev, 9.1.2-debian-fips-dev, 9.1.2-debian13-fips-dev, 9.1.2-fips-dev

Index digest:

sha256:d22995571db947e3b1a8234b61faac05daa198657a53e11f8a5999ea8019c7e6

Manifest digest:

sha256:84a45c2f58879c98b9e7f511641fd0911785acd39d3ba40e48fd3669d26ba95c

Size

77.83 MB

Last pushed

2 days ago

Vulnerabilities

0
0
1
2
0

Support

Active until Oct 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/valkey-bundle:9-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/valkey-bundle:9-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/valkey-bundle@sha256:e47d4a07bd97c404f4d0f88b35b457ab0ac343d1732f3d55965099012f03e217
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/valkey-bundle@sha256:849e8463817f6ce5f912381f8a43a6235291df8c08dba421f57c6b1effbc7c18
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/valkey-bundle@sha256:ded6bdb35156ad8d5fb6d8d5638a43ac6ebfc1e3882952c61b485eaf019e42a1
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/valkey-bundle@sha256:41d06bd22eeb13a51f561604b2807616121b88356fa9ccd821b5618260ef22df
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/valkey-bundle@sha256:470a5b8b7feda45064022af8318b4c240fbd1a7190943314b901d461069af81c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/valkey-bundle@sha256:4c6dad2565b62a85dbdb97ab7b94df0384aa1c23716d16e3626aa17e1aa0bdbb
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/valkey-bundle@sha256:b595a55948feb3d464ba9a08c6a04188d843f7a6ac6379a8d6ed296dfe2de847
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/valkey-bundle@sha256:91a40e22ae7b5d6fe8baa26fbfc4d30e9324ccd0ab553786591ee0dbeb06407c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/valkey-bundle@sha256:bce95870d5ea8cb576b25ac6ef0a093b86c05a18efe0a1e84349b03991026613
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/valkey-bundle@sha256:b880b535f1603a5e25b2ca9f9829ef45f07ef7d7b591c3a681f24e2710010749
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/valkey-bundle@sha256:37c78f59752311fa7e0a608093339bc7c4b30cb7c75be406a3accaaa1833a2fd
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/valkey-bundle@sha256:7f09ea86af46ea91644ca58deef297ef463d66f8e83d8cbde986899152ac05c6
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/valkey-bundle@sha256:d98ac1eaabc8a1b49c107a572a9ed365964c12918c45275930b60801e9806577
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/valkey-bundle@sha256:0504fd4e4b1f8b76ad80ec4f4f29f12a17531d9b9eca7c4b8375a5a28101e018
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/valkey-bundle@sha256:580b316655f491ea4bc37fc2a7e53ee4c7ec4950096170b166ac57a4f4dd40be
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/valkey-bundle@sha256:41fde3b3ae515ddc7b894c2660cf9839c3621ba1b65bad9b43544eb5814199d5
SPDX SBOMhttps://spdx.dev/Documentdhi.io/valkey-bundle@sha256:5b198d6fa2485af2c056cee1cc86f76c69b31b12b3d569d46f9445c15b4bcd28