5.24 Confirm cgroup usage

Information

https://docs.docker.com/engine/reference/run/#specifying-custom-cgroups
2.https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/6/html/Resource_Management_Guide/ch01.html

Solution

Do not use --cgroup-parent option in docker run command unless needed.Impact-None.Default Value-By default, containers run under docker cgroup.

See Also

https://workbench.cisecurity.org/files/517

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-39

Plugin: Unix

Control ID: 9ebf5f9b383e076a103c77d216777eed788f2bd42cc7313d278e12016074e20b