Ensure the default seccomp profile is not Disabled
Idioma del texto original: inglés
Menú
Skills en este repositorio
SkillsMP ha recopilado 7442 skills de CyberStrikeus/CyberStrike. Abre una skill para revisar su origen y sus detalles.
CyberStrikeus/CyberStrikeMostrando 40 de 7442 skills recopiladas.
Ensure the default seccomp profile is not Disabled
Idioma del texto original: inglés
Ensure that docker exec commands are not used with the privileged option
Idioma del texto original: inglés
Ensure that docker exec commands are not used with the user=root option
Idioma del texto original: inglés
Ensure that cgroup usage is confirmed
Idioma del texto original: inglés
Ensure that the container is restricted from acquiring additional privileges
Idioma del texto original: inglés
Ensure that container health is checked at runtime
Idioma del texto original: inglés
Ensure that Docker commands always make use of the latest version of their image
Idioma del texto original: inglés
Ensure that the PIDs cgroup limit is used
Idioma del texto original: inglés
Ensure that, if applicable, SELinux security options are set
Idioma del texto original: inglés
Ensure that Docker's default bridge docker0 is not used
Idioma del texto original: inglés
Ensure that the host's user namespaces are not shared
Idioma del texto original: inglés
Ensure that the Docker socket is not mounted inside any containers
Idioma del texto original: inglés
Ensure that Linux kernel capabilities are restricted within containers
Idioma del texto original: inglés
Ensure that privileged containers are not used
Idioma del texto original: inglés
Ensure sensitive host system directories are not mounted on containers
Idioma del texto original: inglés
Ensure sshd is not run within containers
Idioma del texto original: inglés
Ensure privileged ports are not mapped within containers
Idioma del texto original: inglés
Ensure that only needed ports are open on the container
Idioma del texto original: inglés
Ensure that image sprawl is avoided
Idioma del texto original: inglés
Ensure that container sprawl is avoided
Idioma del texto original: inglés
Ensure that the minimum number of manager nodes have been created in a swarm
Idioma del texto original: inglés
Ensure that swarm services are bound to a specific host interface
Idioma del texto original: inglés
Ensure that all Docker swarm overlay networks are encrypted
Idioma del texto original: inglés
Ensure that Docker's secret management commands are used for managing secrets in a swarm cluster
Idioma del texto original: inglés
Ensure that swarm manager is run in auto-lock mode
Idioma del texto original: inglés
Ensure that the swarm manager auto-lock key is rotated periodically
Idioma del texto original: inglés
Ensure that node certificates are rotated as appropriate
Idioma del texto original: inglés
Ensure that CA certificates are rotated as appropriate
Idioma del texto original: inglés
Ensure that management plane traffic is separated from data plane traffic
Idioma del texto original: inglés
Ensure that the docker.service file ownership is set to root:root
Idioma del texto original: inglés
Ensure that TLS CA certificate file permissions are set to 444 or more restrictively
Idioma del texto original: inglés
Ensure that Docker server certificate file ownership is set to root:root
Idioma del texto original: inglés
Ensure that the Docker server certificate file permissions are set to 444 or more restrictively
Idioma del texto original: inglés
Ensure that the Docker server certificate key file ownership is set to root:root
Idioma del texto original: inglés
Ensure that the Docker server certificate key file permissions are set to 400
Idioma del texto original: inglés
Ensure that the Docker socket file ownership is set to root:docker
Idioma del texto original: inglés
Ensure that the Docker socket file permissions are set to 660 or more restrictively
Idioma del texto original: inglés
Ensure that the daemon.json file ownership is set to root:root
Idioma del texto original: inglés
Ensure that daemon.json file permissions are set to 644 or more restrictive
Idioma del texto original: inglés
Ensure that the /etc/default/docker file ownership is set to root:root
Idioma del texto original: inglés