dhi.io/redis
8.6-debian-fips-dev, 8.6-debian13-fips-dev, 8.6-fips-dev, 8.6.7-debian-fips-dev, 8.6.7-debian13-fips-dev, 8.6.7-fips-dev
sha256:bf175b5dd4fcc6f6809c8944b9b6e978e5f1ee90c1bc033379f7e99d58df6fd0
Manifest digest:sha256:66f71c904c8449062808d1f36a79c6f183a7f2a30b50f04d2ee29ecec7479af3
Size
42.53 MB
Last pushed
9 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/redis:8.6-debian-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/redis:8.6-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/redis@sha256:9e36a2c23d9af8d733e9fc3664c1a7c05a2556cc5288833d48760db5f1f86e5c |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/redis@sha256:652f7366289a457d01c14c0f2ed05eaf399908490546313244f8f2f19ade7c37 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/redis@sha256:fc0e835c6c86dcbbeb51d4776eb817e4231059d133cfb1ab99a3462e796e8c1d |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/redis@sha256:f8a74ed602a37a175bb46c2f7c7141b40f8e21ec968dc2108f95d17ce32d5bed |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/redis@sha256:faaa09984e5ff0ede63dcb34c8ff74c3f273d32b8f9bcd7c016373b5bc46933b |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/redis@sha256:5778ba9a8631061e53ea3de6f4a3c72b7eb8a846d20aa579ac96a63579c92796 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/redis@sha256:0b878e43c6fd0b670f2911022edbcd6e518f886d1b0385d277058142588dfb19 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/redis@sha256:15caeed119fb088d49d0872951208e6894a20365516695f90fb3cb5f470201c4 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/redis@sha256:b173714810515b37ba0eebd1c86fcb0d91e9633ba38fa038f0d2c5ff6007a62c |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/redis@sha256:29be32a2bb5444004c94244190fb41f236c58c9b2db074675f042b8994b7fd94 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/redis@sha256:38959f899c45a2333ad03d54bb9dee109e05e47b2a3340572a1628a777a5d882 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/redis@sha256:6701a66403593db3d21c304f7d39be4ad8848acde738c9b558e4a653c6ef80d2 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/redis@sha256:9d60060f0cc129c70799ba3149b971ad6861a7f513c5b3599748d0e0f649b739 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/redis@sha256:70558d8a065e093d04efb8b80d32682316b9d509815db3ed6d23a372d2acf1c6 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/redis@sha256:18523fcf30a6b940b8892280944ae350e70ae966110668d6ab4e5de2ad0be815 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/redis@sha256:dba7376601ccb7902fa3115ea9d8b23352a97e920c2cbbc16b0404735d1a1d0f |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/redis@sha256:f2418b0cf54537158396c00c67e8970c2fff0ec1a64858c0aba6920fcc8f9ba7 |