3.17 Verify that daemon.json file ownership is set to root:root

Information

Verify that the 'daemon.json' file ownership and group-ownership is correctly set to 'root'.

Rationale:

'daemon.json'file contains sensitive parameters that may alter the behavior of docker daemon. Hence, it should be owned and group-owned by 'root' to maintain the integrity of the file.

Solution

chown root:root /etc/docker/daemon.json



This would set the ownership and group-ownership for the file to 'root'.

Impact:

None.

Default Value:

This file may not be present on the system. In that case, this recommendation is not applicable.

See Also

https://workbench.cisecurity.org/files/1476

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b.

Plugin: Unix

Control ID: d186e146a464100fb5e660704c6f5bcf82785b719b64539c56466f10969ef136