DKER-EE-005330 - Docker Enterprise daemon.json file ownership must be set to root:root.

Information

Verify that the daemon.json file ownership and group-ownership is correctly set to root.

daemon.json file contains sensitive parameters that may alter the behavior of docker daemon. Hence, it should be owned and group-owned by root to maintain the integrity of the file.

This file may not be present on the system. In that case, this recommendation is not applicable.

Solution

If docker.daemon does not exist, create the file and set the ownership and group-ownership for the file to root.

Run the following command:
chown root:root /etc/docker/daemon.json

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Docker_Enterprise_2-x_Linux-Unix_V2R2_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|I, CCI|CCI-000366, Rule-ID|SV-235867r961863_rule, STIG-ID|DKER-EE-005330, STIG-Legacy|SV-104909, STIG-Legacy|V-95771, Vuln-ID|V-235867

Plugin: Unix

Control ID: a690ca1c90210061523500a76f197e4b9de117eb1bfa47f1d7e2c69a0e6687bd