Sign inSign up
Valkey Bundle

dhi.io/valkey-bundle

Valkey Bundle 9.1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

9-debian-fips-dev, 9-debian13-fips-dev, 9-fips-dev, 9.1-debian-fips-dev, 9.1-debian13-fips-dev, 9.1-fips-dev, 9.1.2-debian-fips-dev, 9.1.2-debian13-fips-dev, 9.1.2-fips-dev

Index digest:

sha256:bebdc104c424319c51beb311d16cd5d9fb5d27210a02da306ec3368d146d59d6

Manifest digest:

sha256:a57cfb0416355d5edd5c445e7eba51eedf51b8a0a068c8311a55df0003bd0770

Size

77.83 MB

Last pushed

17 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active until Oct 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/valkey-bundle:9-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/valkey-bundle:9-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/valkey-bundle@sha256:f7aee9500fde4cc6ea391e9151909e9449346fa3560b0129100f083d379dae20
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/valkey-bundle@sha256:00127c240c5c8449c4758452f7c03acab4082759770e6910c3a5895467d95843
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/valkey-bundle@sha256:b3e5bbff5bc5da922de61e8c2c314d79a6b58220e502630573ad06ab07baf3a5
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/valkey-bundle@sha256:b6ef3f41d45bf2cf35be360dd5ad9802521a4db51f53271478420340395a2f2e
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/valkey-bundle@sha256:8e61f4854c489525934c043123256eb0d55ce50a598eeb95ccd42b7055e7f2d7
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/valkey-bundle@sha256:bea4f673e4d2b3b2e6db7f86f3b822a340c4182151a4063dd02159acd033bbc9
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/valkey-bundle@sha256:16e08a536720aef2928142709c1ceb1f5e4749df8a0af474152a77b6552dabba
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/valkey-bundle@sha256:89027677772c125018a58a8a06fc56c85523f08f04632b985a0cd0331f175c7f
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/valkey-bundle@sha256:20aef165cae950434e66b03812f02a09c15b462fcd2ace2dbc7249b8d087803a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/valkey-bundle@sha256:ecae4db20396051f73a84d88c75d7d2bb5f7b5a54a741d7e695760120adecd57
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/valkey-bundle@sha256:8f6f1f17ba5fb54e37bacf2ba20fa2ae469435eb73cd13eb507dc7168f32ac4c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/valkey-bundle@sha256:5091cbca666943e530371ad69577739c816cda4f1354c3c924527ad75aeb2539
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/valkey-bundle@sha256:366f2839a58889bcd16741551223281e770cd99e3bd3da2bd25073ed5e8489b6
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/valkey-bundle@sha256:72f788282127b1bf41bd774ea8a69b1c0b217dd1e47aa1d9a6f0f7046f438617
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/valkey-bundle@sha256:be1e6bfaf96a6dff7eaea8cd5ab96984dbd58e6b15b3d5ea2b7dacf603ce9986
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/valkey-bundle@sha256:d9d6b1a9469cdc76d6b6d16a17f819498c236cafc15c30cc7684bfba3f78c3c3
SPDX SBOMhttps://spdx.dev/Documentdhi.io/valkey-bundle@sha256:5a695a44804ee8e75fda85ec58ce56244bbc22a279bb8d073f09186b8050ce03