4.2 Use trusted base images for containers

Information

Ensure that the container image is written either from scratch or is based on another established and trusted base image downloaded over a secure channel.Official repositories are Docker images curated and optimized by the Docker community or the vendor. There could be other potentially unsafe public repositories. You should thus exercise a lot of caution when obtaining container images.

Solution

Configure and use Docker Content trust.
Impact-
None.
Default Value-
Not Applicable.

See Also

https://workbench.cisecurity.org/files/516

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7(5)

Plugin: Unix

Control ID: c014af407fa45ec45bc157d5957b11b2f81fdb958c406eab31c1bec8356f93fc