2.17 Ensure experimental features are avoided in production

Information

Avoid experimental features in production.
Rationale:
Experimental is now a runtime docker daemon flag instead of a separate build. Passing --experimental as a runtime flag to the docker daemon, activates experimental features. Experimental is now considered a stable release, but with a couple of features which might not have tested and guaranteed API stability.

Solution

Do not pass --experimental as a runtime parameter to the docker daemon.
Impact:
None
Default Value:
By default, experimental features are not activated on the docker daemon.

See Also

https://workbench.cisecurity.org/files/1726

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-43b., CSCv6|18

Plugin: Unix

Control ID: 4c829a30b9468e8de02d105898bac64b820c47f753e4fcc852fe5790254be295