DKER-EE-005360 - Docker Enterprise /etc/default/docker file permissions must be set to 644 or more restrictive.

Information

Verify that the /etc/default/docker file permissions are correctly set to 644 or more restrictive.

/etc/default/docker file contains sensitive parameters that may alter the behavior of docker daemon. Hence, it should be writable only by root to maintain the integrity of the file.

This file may not be present on the system. In that case, this recommendation is not applicable.

Solution

Set the file permissions for this file to 644.

Run the following command:
chmod 644 /etc/default/docker

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Docker_Enterprise_2-x_Linux-Unix_V2R2_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|I, CCI|CCI-000366, Rule-ID|SV-235870r961863_rule, STIG-ID|DKER-EE-005360, STIG-Legacy|SV-104915, STIG-Legacy|V-95777, Vuln-ID|V-235870

Plugin: Unix

Control ID: 5d3db2f039428d83a8e5ce45ec3ab8bb4ddeec6e7f62f1e958436952a6f702ef