3.25 Verify that Docker socket file ownership is set to root:docker - /var/run/docker.sock

Information

https://docs.docker.com/ reference/commandline/cli/#daemon-socket-option

Solution

#> chown root-docker /var/run/docker.sock
This would set the ownership to 'root' and group-ownership to 'docker' for default Docker
socket file.

Impact-None.

Default Value-By default, the ownership and group-ownership for Docker socket file is correctly set to
'root-docker'.

See Also

https://workbench.cisecurity.org/files/514

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CSCv6|3.1

Plugin: Unix

Control ID: ef60b3af9296ad06f61aa729bc4e1d7462967aaa9ba20a11108b0bf7a7c17c97