Ensure that docker.service file permissions are appropriately set
لغة النص الأصلي: الإنجليزية
القائمة
Skills في هذا المستودع
جمع SkillsMP عدد ٧٬٤٤٢ من skills من CyberStrikeus/CyberStrike. افتح أي skill لمراجعة مصدره وتفاصيله.
CyberStrikeus/CyberStrikeعرض ٤٠ من أصل ٧٬٤٤٢ skills مجمعة.
Ensure that docker.service file permissions are appropriately set
لغة النص الأصلي: الإنجليزية
Ensure that the /etc/default/docker file permissions are set to 644 or more restrictively
لغة النص الأصلي: الإنجليزية
Ensure that the /etc/sysconfig/docker file permissions are set to 644 or more restrictively
لغة النص الأصلي: الإنجليزية
Ensure that the /etc/sysconfig/docker file ownership is set to root:root
لغة النص الأصلي: الإنجليزية
Ensure that the Containerd socket file ownership is set to root:root
لغة النص الأصلي: الإنجليزية
Ensure that the Containerd socket file permissions are set to 660 or more restrictively
لغة النص الأصلي: الإنجليزية
Ensure that docker.socket file ownership is set to root:root
لغة النص الأصلي: الإنجليزية
Ensure that docker.socket file permissions are set to 644 or more restrictive
لغة النص الأصلي: الإنجليزية
Ensure that the /etc/docker directory ownership is set to root:root
لغة النص الأصلي: الإنجليزية
Ensure that /etc/docker directory permissions are set to 755 or more restrictively
لغة النص الأصلي: الإنجليزية
Ensure that registry certificate file ownership is set to root:root
لغة النص الأصلي: الإنجليزية
Ensure that registry certificate file permissions are set to 444 or more restrictively
لغة النص الأصلي: الإنجليزية
Ensure that TLS CA certificate file ownership is set to root:root
لغة النص الأصلي: الإنجليزية
Ensure that the host's IPC namespace is not shared
لغة النص الأصلي: الإنجليزية
Ensure that host devices are not directly exposed to containers
لغة النص الأصلي: الإنجليزية
Ensure that the default ulimit is overwritten at runtime if needed
لغة النص الأصلي: الإنجليزية
Ensure mount propagation mode is not set to shared
لغة النص الأصلي: الإنجليزية
Ensure that the host's UTS namespace is not shared
لغة النص الأصلي: الإنجليزية
Ensure the default seccomp profile is not Disabled
لغة النص الأصلي: الإنجليزية
Ensure that docker exec commands are not used with the privileged option
لغة النص الأصلي: الإنجليزية
Ensure that docker exec commands are not used with the user=root option
لغة النص الأصلي: الإنجليزية
Ensure that cgroup usage is confirmed
لغة النص الأصلي: الإنجليزية
Ensure that the container is restricted from acquiring additional privileges
لغة النص الأصلي: الإنجليزية
Ensure that container health is checked at runtime
لغة النص الأصلي: الإنجليزية
Ensure that Docker commands always make use of the latest version of their image
لغة النص الأصلي: الإنجليزية
Ensure that the PIDs cgroup limit is used
لغة النص الأصلي: الإنجليزية
Ensure that Docker's default bridge docker0 is not used
لغة النص الأصلي: الإنجليزية
Ensure that the host's user namespaces are not shared
لغة النص الأصلي: الإنجليزية
Ensure that the Docker socket is not mounted inside any containers
لغة النص الأصلي: الإنجليزية
Ensure that image sprawl is avoided
لغة النص الأصلي: الإنجليزية
Ensure that container sprawl is avoided
لغة النص الأصلي: الإنجليزية
Ensure that the minimum number of manager nodes have been created in a swarm
لغة النص الأصلي: الإنجليزية
Ensure that swarm services are bound to a specific host interface
لغة النص الأصلي: الإنجليزية
Ensure that all Docker swarm overlay networks are encrypted
لغة النص الأصلي: الإنجليزية
Ensure that Docker's secret management commands are used for managing secrets in a swarm cluster
لغة النص الأصلي: الإنجليزية
Ensure that swarm manager is run in auto-lock mode
لغة النص الأصلي: الإنجليزية
Ensure that the swarm manager auto-lock key is rotated periodically
لغة النص الأصلي: الإنجليزية
Ensure that node certificates are rotated as appropriate
لغة النص الأصلي: الإنجليزية
Ensure that CA certificates are rotated as appropriate
لغة النص الأصلي: الإنجليزية
Ensure that management plane traffic is separated from data plane traffic
لغة النص الأصلي: الإنجليزية