Sign inSign up
Redis

dhi.io/redis

Redis 8.8.x (fips)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

8-alpine-fips, 8-alpine3.24-fips, 8.8-alpine-fips, 8.8-alpine3.24-fips, 8.8.2-alpine-fips, 8.8.2-alpine3.24-fips

Index digest:

sha256:b647609e3f926cac31bc955c55b5467a1ca737a109159fbaab19ead59476249c

Manifest digest:

sha256:275adfebf9485cbe4e0cc095b2cc5e1f9abd7c670876c40e08c2a55f9ffc7595

Size

24.55 MB

Last pushed

4 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/redis:8-alpine-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/redis:8-alpine-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/redis@sha256:93895b3a918cf64087caf982543a9edc35e95fdb80861a8a57687753b7c4acc0
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/redis@sha256:bd233a5d46d84d8e45ccb6ddff688ae6e58348853acaa859ae03cd242848774c
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/redis@sha256:c0d1e370b50f4f7519f947e2bd8ea0a0a50e26489c5a27cb82f367f2f213029c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/redis@sha256:007a5e02022dd2fec9397f5b33da501a252342cf09da85628696f75ea39ae80a
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/redis@sha256:cac8c8c049bf4c659586c1847042d7f5c3f2a7174f1c907fa4d23e74639f0213
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/redis@sha256:0dafa636b44050bc0c852522b4cc8a250dd81ba5cdd97410a4ad5ed4a27a5506
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/redis@sha256:ca291849e2deb7a076f262eb4bb80b05a08c9a3ae2dcae47cfa532bd713831ae
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/redis@sha256:b207ca55a33dc0f8aa48f79e39f5cea747a6c7fa42fbd19b3127ba3ad10ec983
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/redis@sha256:9c0bc6d47d8a8de595c352b05881bbc03b982b152707cc1e1c1b4a7008c2549c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/redis@sha256:45c365236ccfa8e1008e23db4ff64779ce29b530bcb0607778683821fa8bc7b6
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/redis@sha256:15d992b8a0b46547d93d5884ddb1a336128f9cca4b88b61d63c1933a6c84c307
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/redis@sha256:53740a49eed7c66d489910ad8b05b90504015d4fef10e1b7ba7ff62bf04eceeb
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/redis@sha256:4bf892a462b09b6e3504991abe66ee07845b32a0f0783276cf4c815dbcac4000
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/redis@sha256:71de50eff96e3cf2df4e57688a335bb0dff5a0431b9c6abf677a76c3d9d95064
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/redis@sha256:ef13e6851b19f90bc9396521cd0f58566a15c5a8fe6c0cccf139d10e149e1744
SPDX SBOMhttps://spdx.dev/Documentdhi.io/redis@sha256:05608715ce0afe8600f0e9707f4be503c46b4f0e5b2ffef6fd12789ec60574b4