dhi.io/redis
8.8-debian-fips, 8.8-debian13-fips, 8.8-fips, 8.8.2-debian-fips, 8.8.2-debian13-fips, 8.8.2-fips
sha256:39e417bd8bb31c3d374fd97b7edf2fe4e45a62038da1f6d14f0a84792315fcb0
Manifest digest:sha256:fa189190e67087e99a2e1d78dba39af02a93434ab9c6501a32ebbee589503827
Size
29.51 MB
Last pushed
2 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/redis:8.8-debian-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/redis:8.8-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/redis@sha256:198400fa2363a356740deff37c14b106983d628acb64243e58e44e9202236c2f |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/redis@sha256:8a99186b498ff959f51b1a32d487bc6680f7abddfb8a9829dc246625005a1991 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/redis@sha256:9729fd1368f7d23792b653736e91d22d505ae8a6d7500d0777da7df02071234d |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/redis@sha256:28a63250c99f3e1a0446d37fd8a581286f01dc4d81160f9a2c93cc617cefcd11 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/redis@sha256:5f2733b850affd183a431ebd7b69a161ede02c7f9e2620f80521897b692bd779 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/redis@sha256:dfb6cd1546863eba81eab47cbc49640b75bf5bdda0592eac85d4637c8dc1ba87 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/redis@sha256:63f0a468fd51cd30e9a0155860d3efc64ac19aff6d60203249aaabc8019f825f |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/redis@sha256:a75041407d34545bd1e94275fcc85fdec447c9b883a9a9c503dc68ab688c80c2 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/redis@sha256:312914252d2dc689c24e87c212dfa57f698a463b8e998ebe4b1019b4b17b0fe4 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/redis@sha256:8f50259e32071851728bf346eabfedb3db5e31c9b3ab6f62a7aecbd2f2b4b9dc |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/redis@sha256:eebbf22593a3d041a1d015942c8fea72d74247ead3e29787f49e68912fe07c52 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/redis@sha256:fb08f95751f908ae7271af4c43b13303b3c8ce2d425c11f20ac8e2d298c4e2cd |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/redis@sha256:c373608b8797a00cff438874da9e0251ef82dedee97b012b0dc538697e569f25 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/redis@sha256:5ac81abd1429317c2556df4eee39cfd52de580dba8d2a84dde491859b0b7f002 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/redis@sha256:c56d14bec9ebaec7892eb676400c6971f0ee2629d230494057f6c2bd4e8b0b81 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/redis@sha256:75cfb473b494722b7f8895d2e5ab948e5655a07caa199198123362487f6042fb |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/redis@sha256:e7497e51cd927d54ed0f96927b627ccbc1a3502340cb71a8813092c44e2c484b |