Sign inSign up
Redis

dhi.io/redis

Redis 8.8.x (fips)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

8-alpine-fips, 8-alpine3.24-fips, 8.8-alpine-fips, 8.8-alpine3.24-fips, 8.8.3-alpine-fips, 8.8.3-alpine3.24-fips

Index digest:

sha256:742c4ff824acca6648a9b256f5ee23cdb3ebd0842c03a0ad09f2f2cf49f6a271

Manifest digest:

sha256:104cc0270e2995c3556ad137f4ac498e20ce89c337ea4cc9a10f7cec486b8080

Size

24.67 MB

Last pushed

5 hours ago

Vulnerabilities

0
0
1
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/redis:8-alpine-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/redis:8-alpine-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/redis@sha256:55625615f452097c7cb80cba203c6872e0d9002aef40b1381d28bb4c0461e881
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/redis@sha256:18273906f2230152f36fccfdf71b92a3e728ef2f6c286164ed5218b1e3e9009e
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/redis@sha256:eeb8c90816a660a23ebf7d4ceb86f060838b4b71b1999d24795e4b344480a2bf
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/redis@sha256:3504a580542a07b30c07e81f6f8b714266dd7d772cd9a1cac8789b49879e6a73
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/redis@sha256:71f78771c66a1577603ef8433b7ff50536a43a7abf449d907951a8c27dd7309c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/redis@sha256:cc578947d8ab54b4976f4731ce8807690f257bf90bb6a4b03a966dfa5879975a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/redis@sha256:f383320e5f031e7f033b1213e6d8095627c627a2d7e6c4d0e598dfc81f8de162
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/redis@sha256:2334da7299556d3eb12d510a59d1519f56dbf9bbe977e471d27f7f7696eef449
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/redis@sha256:137964510ad61e620943e7e4107b95fc2193a38a76fc0792edadaecc013ad09d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/redis@sha256:eb4281d3290c0c17ca290e603495e0af4f2647809306fa6a0637a0ba86d2a309
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/redis@sha256:fdd63791a97e6dce240641dd41b36742ed2218b4b494c70aa8fed466809cbe69
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/redis@sha256:cf04136f243bf5517d6ee55fdc3e20cb25ed3d4421e4b469662fbf8d1c00d561
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/redis@sha256:07a134bd33a4c24fafd05725180eb7dd4f232ae5207e7d4b2dbe992ad3b2b83f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/redis@sha256:9ca4ca3ae05c9fe1c46d1f6b38b63042c084cf1ceec3a95dbbfd84ea366648cb
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/redis@sha256:40950e39fe48ee15b461ad5e2b7bd89b4f14701db11ef11dad69567857615baa
SPDX SBOMhttps://spdx.dev/Documentdhi.io/redis@sha256:afd8a5243c3bc5ed77bdf4e613c6691e63599590c799011eb95df3aabcb42a73