Sign inSign up
Valkey Bundle

dhi.io/valkey-bundle

Valkey Bundle 9.1.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

9-debian-fips, 9-debian13-fips, 9-fips, 9.1-debian-fips, 9.1-debian13-fips, 9.1-fips, 9.1.2-debian-fips, 9.1.2-debian13-fips, 9.1.2-fips

Index digest:

sha256:15e3660801b2c141c377e77a635b523d828149b31b8a1016c06c5b8fa31c0a92

Manifest digest:

sha256:d1df49da8c3f33b77e7685ffb720bc6668f12e99eea95272255afea969bd7a7e

Size

68.01 MB

Last pushed

6 days ago

Vulnerabilities

0
0
1
1
0

Support

Active until Oct 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/valkey-bundle:9-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/valkey-bundle:9-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/valkey-bundle@sha256:550030c773229a20f6d294169db581d1e5265ddc8fad3e575c62e24b54c73494
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/valkey-bundle@sha256:6d5e31269e7be5cdd518f1a43a5cfd97168410a30f64b77dd4980b895bffa08b
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/valkey-bundle@sha256:b6e1138ae6c42d19b04a3e0957c51a303f3f0873166aa99b9ac67d21cb1ba39c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/valkey-bundle@sha256:a3f1df01c31bc3084e2a250ead9c51fb560b044f0a307df131426a74d0548eac
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/valkey-bundle@sha256:94106c9b3af8f4d29aa7a59c5b0d79e6338c69cb2fa90974476b5e8e1d5c651e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/valkey-bundle@sha256:ee313ca3ecb0543ba0ece6c309836ada6220e0815f61ac5d7d4d58575c2f8241
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/valkey-bundle@sha256:9344b03878ef32df180a0ee9a460199f131c39a3b2fb470ffb3ac51584487a03
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/valkey-bundle@sha256:37d4db57a17a86626ea6833ae95192481a82ca38a03cdef11f811bbde707c1d3
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/valkey-bundle@sha256:1711ba0d5e74437b2de6adc86e4a841a7fcc525babd843a0365ce7fa72424894
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/valkey-bundle@sha256:d31b799261a1dc15222ec4f66a10fa8ae95b3f5fe61a6200ad8c059a012c41cd
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/valkey-bundle@sha256:afbb255a03bde00383350257bc9c0856a832499dd40356edfbbf0eacae6da3ce
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/valkey-bundle@sha256:70f9079631a0ebf81eab715836baf85e4c57e8b17993d88982f9130f7a44b92e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/valkey-bundle@sha256:ee381b91b678b09f6bae2d56c492d560669a1325b3baf94c8de0a71a37289805
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/valkey-bundle@sha256:5371989d7aeb77aaf48f1e8979d7ae4f00190d9dd1913833ff1134d233545637
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/valkey-bundle@sha256:4f484bbd760b3da032f37795741dd9f952333ff1170414aecf65feb19ac4fe20
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/valkey-bundle@sha256:e036482517308c319e12d679f9ba3d6b85f26ebaddb5c896d8043637b9ab4477
SPDX SBOMhttps://spdx.dev/Documentdhi.io/valkey-bundle@sha256:8fab35ea941c6c37e664af27230a9766f78b28cb97a7854fa22efa6139d415e7