Sign inSign up
Valkey Bundle

dhi.io/valkey-bundle

Valkey Bundle 9.1.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

9-debian-fips, 9-debian13-fips, 9-fips, 9.1-debian-fips, 9.1-debian13-fips, 9.1-fips, 9.1.2-debian-fips, 9.1.2-debian13-fips, 9.1.2-fips

Index digest:

sha256:711d0ad0813f0ca5599cbcdd43729660eaf9e06ab089dc60c16613780a6db5d3

Manifest digest:

sha256:ceae073b87fd1981c58d36d484e69504e854f960a3f74b723bf2318f077eec28

Size

68.02 MB

Last pushed

3 days ago

Vulnerabilities

0
1
0
0
0

Support

Active until Oct 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/valkey-bundle:9-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/valkey-bundle:9-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/valkey-bundle@sha256:c555a03cba2b8234c28b90c94576c3b38be8e290e04269772c49bd993158d0a3
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/valkey-bundle@sha256:e3f0103e24a558da721b82d6fb8509acc8194b45866a41f2695f77a3bb5f9611
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/valkey-bundle@sha256:4ed77528cb13f377b49f39a59eadca90da3fb88b05c811fa901c5cc31731fcfa
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/valkey-bundle@sha256:c902b1a14160395bf4e8843e5783b9a0d6cf28234dd6aab6360c8935cd7f1054
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/valkey-bundle@sha256:15d414b58c83caa078fee485d321919b890bc3591ef1b360f6573d0cb61ae6fc
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/valkey-bundle@sha256:2a88bc817b23d07031f32d47d8ad31bcb7c97d44099f3932111c356d96119373
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/valkey-bundle@sha256:69e906609018ae92759762a10fb6ee4a4bf64071582937bdda4fff50e27f140c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/valkey-bundle@sha256:c55dff581a16bc8590cc4b3379bd8fc8138453db5d4371c93fd8af306a4c365d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/valkey-bundle@sha256:495a9275aa305f82be2fee22e70f453c80dce82b60057c9bd7c1412af1302632
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/valkey-bundle@sha256:371380d67b6825924865d7a5f5aac2069a6bfff1eec14c8254347a59003cfb4c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/valkey-bundle@sha256:f3224c5d0e6184d0baeee4c4d05ac835a939a973e33af6331a4444741b9a6b17
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/valkey-bundle@sha256:8791f8a0b383ec6aa9bef85cfdb63177d3c0d5cc3a9c7982a5494867f33891ca
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/valkey-bundle@sha256:306a75bcbb219cb622fd189cde8597b14e8eb33ba03bab62ef6641fcb869de2b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/valkey-bundle@sha256:2231fb368bca57278506f1d6d0de52d40bd09f4c7b6bcde54d79d3f38cb051f4
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/valkey-bundle@sha256:82109fd39287c240beb3035a776033ddd8e1c71083625a5fd166e97e7aae1a0b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/valkey-bundle@sha256:5f9845c8cce18654d267238674f1436500561f54182d9fc77075f14a234dd2e8
SPDX SBOMhttps://spdx.dev/Documentdhi.io/valkey-bundle@sha256:202d61ba310cc90e5c4779d08d006caf8afe877ec2283432ac3d57dc05429fe9