Sign inSign up
Redis

dhi.io/redis

Redis 8.6.x (fips)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

8.6-alpine-fips, 8.6-alpine3.24-fips, 8.6.6-alpine-fips, 8.6.6-alpine3.24-fips

Index digest:

sha256:6f2a20c7534bfa0bfe7a62223ac3dfafae65e6f4eb3f8cc49c6aaea506c45718

Manifest digest:

sha256:b780731c8a13b2f72b94e9cf01447cec99e17900e59cbca9f2ba22be3cdd7f48

Size

23.97 MB

Last pushed

13 hours ago

Vulnerabilities

0
0
1
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/redis:8.6-alpine-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/redis:8.6-alpine-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/redis@sha256:bc44183b8316a41ad9aedadbc8e2e918c9eb7e3ed185b08c1561ea72bd118f30
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/redis@sha256:5d2f59cc6659333d352f1648f472503797dbb1a477d9279db60572e05a11b11f
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/redis@sha256:dc81521f8333b4d15109fa51fa6c1d541326934739b6dedafac735665b018e96
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/redis@sha256:576d1453c6dd5613f96e3e564d22ee1f11435ba6ea53b5b4f5ddd521a38fd885
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/redis@sha256:a99acab7bf26afa80cfeaee40e15d790c21ad01ed8838aaba087134ee6715bea
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/redis@sha256:770a94e3c0b5e05379be440568884c4df6e9fce99193bf208785d8b295e7dfb5
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/redis@sha256:3dfaf71d57c72d0427e9f8f9e9a23cdfd53b68c0cb8666952d4c70acc602d417
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/redis@sha256:9181b8b03e2b959dc4d3d67e999436bd61f97c67f505152c1e96575b0ad702d1
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/redis@sha256:bed274a3054e6c6ade18f6f125d1547019c1042f66a7a174d53b6e725974ef61
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/redis@sha256:c8709ff664020354039dd6415847bb4cb07ee65b84e38dc7069c765da5b14151
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/redis@sha256:436955ab6f0f0409c97b603e70854422886e17058b9d4e9d6035a8bbfef282d0
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/redis@sha256:3e31d543b2776f2a8aeef1298f512ef37cbecaf61a30ea8274402c26b5f2de10
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/redis@sha256:396d73bed3967587127ab9a38b64376919d94fc48efe8353645541ed58ccddb6
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/redis@sha256:06cec859526843ff51c14a9c2f59d07ef7c8533db06f74d956356ff8aa22cead
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/redis@sha256:33755943909f94a912b53589aa355c63fe4da0599422e152fb154fa8e654cb5b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/redis@sha256:8c6067549224a472ab53c46abcec05a55fd8ad71e9763a3955d953f7e73b207e