3.7 Verify that registry certificate file ownership is set to root:root

Information

https://docs.docker.com/articles/certificates/
2.http://docs.docker.com/reference/commandline/cli/#insecure-registries

Solution

chown root-root /etc/docker/certs.d/<registry-name>/*
This would set the ownership and group-ownership for the registry certificate files to
'root'.Impact-None.Default Value-By default, the ownership and group-ownership for registry certificate files is correctly set
to 'root'.

See Also

https://workbench.cisecurity.org/files/517

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b.

Plugin: Unix

Control ID: 9cd2139d48db8837b8d2e1850f5ca103fba2caae871157cf61fd7040080ddaf4