Ensure auditing is configured for Docker files and directories - /usr/bin/containerd-shim-runc-v2
Skills in this repository
CyberStrikeus/CyberStrike - Page 39
SkillsMP has collected 7,442 skills from CyberStrikeus/CyberStrike. Open a skill to review its source and details.
CyberStrikeus/CyberStrikeShowing 40 of 7,442 collected skills.
Ensure auditing is configured for Docker files and directories - /usr/bin/runc
Ensure only trusted users are allowed to control Docker daemon
Ensure auditing is configured for the Docker daemon
Ensure auditing is configured for Docker files and directories - /run/containerd
Ensure auditing is configured for Docker files and directories - /var/lib/docker
Ensure auditing is configured for Docker files and directories - /etc/docker
Ensure auditing is configured for Docker files and directories - docker.service
Ensure auditing is configured for Docker files and directories - containerd.sock
Ensure auditing is configured for Docker files and directories - docker.sock
Ensure the container host has been Hardened
Ensure that the version of Docker is up to date
Run the Docker daemon as a non-root user, if possible
Ensure the default cgroup usage has been confirmed
Ensure base device size is not changed until needed
Ensure that authorization for Docker client commands is enabled
Ensure centralized and remote logging is configured
Ensure containers are restricted from acquiring new privileges
Ensure live restore is enabled
Ensure Userland Proxy is Disabled
Ensure that a daemon-wide custom seccomp profile is applied if appropriate
Ensure that experimental features are not implemented in production
Ensure network traffic is restricted between containers on the default bridge
Ensure the logging level is set to 'info'
Ensure Docker is allowed to make changes to iptables
Ensure insecure registries are not used
Ensure aufs storage driver is not used
Ensure TLS authentication for Docker daemon is configured
Ensure the default ulimit is configured appropriately
Enable user namespace support
Ensure that the docker.service file ownership is set to root:root
Ensure that TLS CA certificate file permissions are set to 444 or more restrictively
Ensure that Docker server certificate file ownership is set to root:root
Ensure that the Docker server certificate file permissions are set to 444 or more restrictively
Ensure that the Docker server certificate key file ownership is set to root:root
Ensure that the Docker server certificate key file permissions are set to 400
Ensure that the Docker socket file ownership is set to root:docker
Ensure that the Docker socket file permissions are set to 660 or more restrictively
Ensure that the daemon.json file ownership is set to root:root
Ensure that daemon.json file permissions are set to 644 or more restrictive