Repository: github.com/detoxd/detoxd | Images: images/redis
Redis is an open-source, in-memory data structure store used as a database, cache, message broker, and streaming engine. Created by Salvatore Sanfilippo in 2009, Redis supports various data structures including strings, hashes, lists, sets, sorted sets, bitmaps, hyperloglogs, and geospatial indexes.
Redis has historically been a target for attacks:
Disables or renames high-risk commands:
FLUSHDB - Deletes all keys in current databaseFLUSHALL - Deletes all keys in all databasesDEBUG - Debugging commands with security implicationsCONFIG - Runtime configuration modification# redis.conf security settings
bind 127.0.0.1 ::1
protected-mode yes
requirepass YOUR_STRONG_PASSWORD_HERE
# Rename dangerous commands
rename-command FLUSHDB ""
rename-command FLUSHALL ""
rename-command DEBUG ""
rename-command CONFIG ""
rename-command SHUTDOWN SHUTDOWN_SECUREKEY
rename-command SLAVEOF ""
rename-command REPLICAOF ""
rename-command SCRIPT ""
rename-command EVAL ""
# Disable Lua scripting if not needed
rename-command EVALSHA ""
# Resource limits
maxmemory 256mb
maxmemory-policy allkeys-lru
maxclients 1000
# Disable dangerous features
enable-module-command no
# Enable authentication
REDIS_PASSWORD=your_secure_password
# Bind to specific interface
REDIS_BINDING=127.0.0.1
# Set memory limit
REDIS_MAXMEMORY=256mb
Content type
Image
Digest
sha256:7420dcf0d…
Size
32.9 MB
Last updated
6 months ago
docker pull detoxd/redis:8.6.1-alpine3.23-detox.1