5.20 Do not share the host's UTS namespace

Information

https://docs.docker.com/engine/reference/run/
2.http://man7.org/linux/man-pages/man7/namespaces.7.html

Solution

Do not start a container with '--uts=host' argument.For example, do not start a container as below-docker run --rm --interactive --tty --uts=host rhel7.2Impact-None.Default Value-
By default, all containers have the UTS namespace enabled and host UTS namespace is not
shared with any container.

See Also

https://workbench.cisecurity.org/files/517

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-39

Plugin: Unix

Control ID: deef5504c04c0f072acf0ed400f41ee6fd95437ae901b8049e89ec7dcd0064fb