3.6 Ensure that /etc/docker directory permissions are set to 755 or more restrictively

Information

You should verify that the /etc/docker directory permissions are correctly set to 755 or more restrictively.

Rationale:

The /etc/docker directory contains certificates and keys in addition to various sensitive files. It should therefore only be writeable by root to ensure that it can not be modified by a less privileged user.

Impact:

None.

Solution

You should run the following command:

chmod 755 /etc/docker

This sets the permissions for the directory to 755.

Default Value:

By default, the permissions for this directory are set to 755.

See Also

https://workbench.cisecurity.org/benchmarks/11818

Item Details

Category: ACCESS CONTROL, MEDIA PROTECTION

References: 800-53|AC-3, 800-53|AC-5, 800-53|AC-6, 800-53|MP-2, CSCv7|14.6

Plugin: Unix

Control ID: 9ae8cfde0cbf40b885bbdc8e7e73236f4ab11a8cbe8b8f795f425ca677226533