2.2 Ensure the logging level is set to 'info' - dockerd

Information

Set Docker daemon log level to info.

Rationale:

Setting up an appropriate log level, configures the Docker daemon to log events that you would want to review later. A base log level of info and above would capture all logs except debug logs. Until and unless required, you should not run Docker daemon at debug log level.

Solution

Ensure that the Docker daemon configuration file has the following configuration included

'log-level': 'info'

Alternatively, run the Docker daemon as below:

dockerd --log-level='info'

Impact:

None.

Default Value:

By default, Docker daemon is set to log level of info.

See Also

https://workbench.cisecurity.org/files/2433

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-3, CSCv6|6.2, CSCv7|6.2, CSCv7|6.3

Plugin: Unix

Control ID: c42e7ef648909b9dcf7281ad653e2d07c9b50435d61ee631d3a7e08b3b643804