4.2 Use trusted base images for containers

Information

https://github.com/docker/docker/pull/11109

Solution

Only download the container images from a source you trust over a secure channel.
Additionally, use features such as pull-by-digest to get specific images from the registry.

Impact-None.

Default Value-Not Applicable.

See Also

https://workbench.cisecurity.org/files/514

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7(5)

Plugin: Unix

Control ID: 81f7e40ab8d4cdb99fd80ecce8d9f4172b8e5f23e13e32da59d0e106ab5cf817