CIS Docker v1.2.0 L1 Linux Host OS

Warning! Audit Deprecated

This audit file has been deprecated and will be removed in a future update.

View Next Version

Audit Details

Name: CIS Docker v1.2.0 L1 Linux Host OS

Updated: 7/20/2021

Authority: CIS

Plugin: Unix

Revision: 1.5

Estimated Item Count: 16

Audit Items

DescriptionCategories
1.1.1 Ensure the container host has been Hardened
1.1.2 Ensure that the version of Docker is up to date

SYSTEM AND INFORMATION INTEGRITY

1.2.1 Ensure a separate partition for containers has been created

CONFIGURATION MANAGEMENT

1.2.2 Ensure only trusted users are allowed to control Docker daemon

ACCESS CONTROL

1.2.3 Ensure auditing is configured for the Docker daemon

AUDIT AND ACCOUNTABILITY

1.2.5 Ensure auditing is configured for Docker files and directories - /etc/docker

AUDIT AND ACCOUNTABILITY

1.2.6 Ensure auditing is configured for Docker files and directories - docker.service

AUDIT AND ACCOUNTABILITY

1.2.7 Ensure auditing is configured for Docker files and directories - docker.socket

AUDIT AND ACCOUNTABILITY

1.2.8 Ensure auditing is configured for Docker files and directories - /etc/default/docker

AUDIT AND ACCOUNTABILITY

1.2.9 Ensure auditing is configured for Docker files and directories - /etc/sysconfig/docker

AUDIT AND ACCOUNTABILITY

1.2.10 Ensure auditing is configured for Docker files and directories - /etc/docker/daemon.json

AUDIT AND ACCOUNTABILITY

1.2.11 Ensure auditing is configured for Docker files and directories - /usr/bin/containerd

AUDIT AND ACCOUNTABILITY

1.2.12 Ensure auditing is configured for Docker files and directories - /usr/sbin/runc

AUDIT AND ACCOUNTABILITY

6.1 Ensure that image sprawl is avoided

CONFIGURATION MANAGEMENT

6.2 Ensure that container sprawl is avoided

SYSTEM AND INFORMATION INTEGRITY

CIS_Docker_v1.2.0_L1_Linux_Host_OS.audit from CIS Docker Benchmark v1.2.0