3.10 Verify that TLS CA certificate file permissions are set to 444 or more restrictive

Information

https://docs.docker.com/articles/certificates/
2.http://docs.docker.com/articles/https/

Solution

chmod 444 <path to TLS CA certificate file>
This would set the file permissions of the TLS CA file to '444'.Impact-None.Default Value-By default, the permissions for TLS CA certificate file might not be '444'. The default file
permissions are governed by the system or user specific umask values.

See Also

https://workbench.cisecurity.org/files/517

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b.

Plugin: Unix

Control ID: 20537cac905c8fd037230ebc9c4024e3d058cb14897a5b5da2aaabfe5203bcdd