Sign inSign up
Redis

dhi.io/redis

Redis 8.8.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

8.8-debian-fips, 8.8-debian13-fips, 8.8-fips, 8.8.2-debian-fips, 8.8.2-debian13-fips, 8.8.2-fips

Index digest:

sha256:39e417bd8bb31c3d374fd97b7edf2fe4e45a62038da1f6d14f0a84792315fcb0

Manifest digest:

sha256:fa189190e67087e99a2e1d78dba39af02a93434ab9c6501a32ebbee589503827

Size

29.51 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/redis:8.8-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/redis:8.8-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/redis@sha256:198400fa2363a356740deff37c14b106983d628acb64243e58e44e9202236c2f
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/redis@sha256:8a99186b498ff959f51b1a32d487bc6680f7abddfb8a9829dc246625005a1991
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/redis@sha256:9729fd1368f7d23792b653736e91d22d505ae8a6d7500d0777da7df02071234d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/redis@sha256:28a63250c99f3e1a0446d37fd8a581286f01dc4d81160f9a2c93cc617cefcd11
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/redis@sha256:5f2733b850affd183a431ebd7b69a161ede02c7f9e2620f80521897b692bd779
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/redis@sha256:dfb6cd1546863eba81eab47cbc49640b75bf5bdda0592eac85d4637c8dc1ba87
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/redis@sha256:63f0a468fd51cd30e9a0155860d3efc64ac19aff6d60203249aaabc8019f825f
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/redis@sha256:a75041407d34545bd1e94275fcc85fdec447c9b883a9a9c503dc68ab688c80c2
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/redis@sha256:312914252d2dc689c24e87c212dfa57f698a463b8e998ebe4b1019b4b17b0fe4
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/redis@sha256:8f50259e32071851728bf346eabfedb3db5e31c9b3ab6f62a7aecbd2f2b4b9dc
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/redis@sha256:eebbf22593a3d041a1d015942c8fea72d74247ead3e29787f49e68912fe07c52
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/redis@sha256:fb08f95751f908ae7271af4c43b13303b3c8ce2d425c11f20ac8e2d298c4e2cd
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/redis@sha256:c373608b8797a00cff438874da9e0251ef82dedee97b012b0dc538697e569f25
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/redis@sha256:5ac81abd1429317c2556df4eee39cfd52de580dba8d2a84dde491859b0b7f002
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/redis@sha256:c56d14bec9ebaec7892eb676400c6971f0ee2629d230494057f6c2bd4e8b0b81
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/redis@sha256:75cfb473b494722b7f8895d2e5ab948e5655a07caa199198123362487f6042fb
SPDX SBOMhttps://spdx.dev/Documentdhi.io/redis@sha256:e7497e51cd927d54ed0f96927b627ccbc1a3502340cb71a8813092c44e2c484b