4.2 Use trusted base images for containers

Information

https://titanous.com/posts/docker-insecurity
2.https://registry.hub.docker.com/
3.http://blog.docker.com/2014/10/docker-1-3-signed-images-process-injection-security-options-mac-shared-directories/
4.https://github.com/docker/docker/issues/8093
5.http://docs.docker.com/reference/commandline/cli/#pull
6.https://github.com/docker/docker/pull/11109
7.https://blog.docker.com/2015/11/docker-trusted-registry-1-4/
NOTE: Nessus has provided the target output to assist in reviewing the benchmark to ensure target compliance.

Solution

Configure and use Docker Content trust.Impact-None.Default Value-Not Applicable.

See Also

https://workbench.cisecurity.org/files/517

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7(5)

Plugin: Unix

Control ID: fb55c69ff90218f923720e242eac651fb28ef347997a3034019ba7b1769f8ee8