Sign inSign up
Redis

dhi.io/redis

Redis 8.8.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

8.8-debian-fips, 8.8-debian13-fips, 8.8-fips, 8.8.3-debian-fips, 8.8.3-debian13-fips, 8.8.3-fips

Index digest:

sha256:ee741841a710621bda92e5a0bb3b8d5a17859879306050b26f4ac4a7fd417d50

Manifest digest:

sha256:e23801fecda6a842d2ec24773c253732d47cab33af5c253be1331f015f988aba

Size

29.64 MB

Last pushed

3 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/redis:8.8-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/redis:8.8-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/redis@sha256:3630aced5d2bfe5c7d9cca615153c88a9098dd06e3c0dc435ff63a6060ff39b9
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/redis@sha256:c2c084fcbdae49255a58101d27335d717f2a422ea038a96c81a957144e683b10
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/redis@sha256:bcb409581f497158f798c7a081b5259be7d4d91e7cb5e00054d2fb4342945e25
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/redis@sha256:711eb285f4e82977f6e59f4ec7ec1bb2646a780a105f24af5a47d87e6d1c14dd
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/redis@sha256:6d2d8a61e93c519e926ff6897e0cdc2dce728382289f5003a92944b2d9964231
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/redis@sha256:d5f4e9f89ab8d792c53296665a7e8e6510ad05535c31d495b643c8a5d94abbbf
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/redis@sha256:411f9fcd749eede6e8c20cee2ab30c29784236e03dccfbac966de8ffcca599d9
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/redis@sha256:27a4095ddaee0f2ee333f200963247b09437876e45e0f014d3530f6fe500f691
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/redis@sha256:58ce671fac512bc57e7d4d39b507435612af1681ba6e9eeb2a74c776b75d139e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/redis@sha256:d8de28633127b376244ad54bb4556191dcb457fa2446816ed1ae929e94490359
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/redis@sha256:caeb8c26f35e153a166b282ca383180179e5c088dd11c65a729bf3434e79f299
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/redis@sha256:8eafa5b65db241eb6a49ec82ea61ce98e039189ecf3b1d86487233c196c0636c
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/redis@sha256:ab9d7623d8db8677a067d72bcf8e92db5579ff853d19f71dfbcf9d8fc3daacc0
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/redis@sha256:3a7f8e71978f87763f367261d6baacc09ec1977372ace1aac4596e58a631c9bb
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/redis@sha256:dfad814181299ad70fab2c4bfe15df99093b928cc80334b3dcc1d756aba5069f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/redis@sha256:0f4a66184ffd64380102c39739c9f94d0c662ec7d5bfafdf9e16d55e61bb16d0
SPDX SBOMhttps://spdx.dev/Documentdhi.io/redis@sha256:e1955f3bce023cec98bbd32465265e9513cbb289fa05b6c37d3625cd3b122e85