4.2 Use trusted base images for containers

Information

Ensure that the container image is written either from scratch or is based on another
established and trusted base image downloaded over a secure channel.Official repositories are Docker images curated and optimized by the Docker community or
the vendor. There could be other potentially unsafe public repositories. You should thus
exercise a lot of caution when obtaining container images.

Solution

Configure and use Docker Content trust.Impact-None.Default Value-Not Applicable.

See Also

https://workbench.cisecurity.org/files/517

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7(5)

Plugin: Unix

Control ID: 6eca9b0d1c71385c9c1d7daeca07650a899f43ac8e3b402f9b68d38bff2f4e42