Capability
- metadata
{
"author": "Redis, Inc.",
"version": "0.1.0"
}
Topics
- redis
- authentication
- acl
- tls
- network-security
- firewall
- access-control
- production
- hardening
What it does
Configures Redis authentication via requirepass and ACL users, enables TLS encryption, restricts network exposure with bind and protected-mode, and disables dangerous commands. Apply this skill when deploying Redis to production, setting up per-application credentials, or auditing an instance against security hardening requirements.
Generated from the current SKILL.md.
Frequently asked
Does this skill cover both authentication and network isolation?
Yes. The skill covers authentication (requirepass and ACL users), TLS encryption, network binding, protected-mode, firewall rules, and command disabling. All three layers are recommended together to avoid exploitable gaps.
Can I use this skill to set up ACL users for different applications?
Yes. The skill includes examples of creating dedicated ACL users with least-privilege access — e.g., read-only cache users, writers without dangerous commands, and admin users. Each user can be restricted to specific command categories and key patterns.
Does this cover TLS/SSL configuration?
Yes. The skill includes redis.conf settings for tls-port, tls-cert-file, and tls-key-file, plus a Python client example using SSL connections.
What commands can be disabled or renamed?
The skill covers disabling or renaming dangerous commands like FLUSHALL, DEBUG, KEYS, and CONFIG using the rename-command directive in redis.conf.
Is this skill for development or production only?
Primarily production. The skill notes that a single shared password with the default user is acceptable for development, but recommends ACL users and full hardening for production deployments.
Generated from the current SKILL.md. These answers refresh after source changes.