Sign inSign up
Redis

dhi.io/redis

Redis 8.6.x (fips)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

8.6-alpine-fips, 8.6-alpine3.24-fips, 8.6.7-alpine-fips, 8.6.7-alpine3.24-fips

Index digest:

sha256:b16555e2999e4826deae763b060f58642a005ff073dc7a5d78f9096902294e2f

Manifest digest:

sha256:f441565ac94b81d9d50a0b8062e70b89c9a3b27485584d55ecfd867b5cd5e88f

Size

24.09 MB

Last pushed

6 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/redis:8.6-alpine-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/redis:8.6-alpine-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/redis@sha256:4e7731e99beadd6e33a197e516836bafc805d69237ed1da77e63a441f1311b93
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/redis@sha256:2b7d465dc48c7f614844765d255e9c1a37d29a3a436c5b3e4cecb5dbd66880f8
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/redis@sha256:7fab22671d0fa9d5d28ef9452ffe6b317a023b6efb25f5c6cffe2a289f4d3dd6
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/redis@sha256:db9e9b11e6939c2b1b8f5575f3f4d5c4ee3ced30a4ea5ffc64e1532eda8dd6d4
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/redis@sha256:521aa65461cc9d57fa3afe38516f7c961fa306275ffd0aadddd75adc1bec8baf
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/redis@sha256:3128c1dd4b0a46316e62e387f3b98dd1b4990685fc96addd4d53d1004fca2e5a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/redis@sha256:b47ec9c1c654189c7cec870f5cc80f3ab5d6ba1b0c4a6d0a300b7286ea7b5b87
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/redis@sha256:000b17588ba3fa5aa03d4f9e69a781da8810dfc10233261a24e913f3556e547d
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/redis@sha256:413268fedd0f7e57a7c46b6d82573a1d094557e7b6d78a7f705124ab83a12ef4
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/redis@sha256:a77ab05701c674d7e2a499346f2eac4639da6260d758d3c00c2d7621738e143f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/redis@sha256:0c293a2fb7d7f37790b3c88f7025cd8c519694d6d502dd302c8c89e0281fa4e7
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/redis@sha256:83c7b49cb13d91389e8d883fccdd136dce567cc9e6616635b550a9f2ac260373
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/redis@sha256:4f8c21c34433bced62179661b3a231c9df1fe8a8cd5946197b6e3e2218795a88
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/redis@sha256:02fa49e1045f2cb151b9174ce5017f8d664e9d09c164c7d8e9a2f092d190d0f1
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/redis@sha256:f068fb116a98f921e4461309f018aa9e19663188e0b6bb47a228836ccdd0e093
SPDX SBOMhttps://spdx.dev/Documentdhi.io/redis@sha256:4763d0743494c50db20023dfe88583141c570d16b33de177893c6f1f8bbc9b21