UCF STIG Viewer Logo

The container platform must uniquely identify and authenticate processes acting on behalf of the users.


Overview

Finding ID Version Rule ID IA Controls Severity
V-233077 SRG-APP-000148-CTR-000345 SV-233077r600720_rule Medium
Description
The container platform will instantiate a container image and use the user privileges given to the user used to execute the container. To ensure accountability and prevent unauthenticated access to containers, the user the container is using to execute must be uniquely identified and authenticated to prevent potential misuse and compromise of the system.
STIG Date
Container Platform Security Requirements Guide 2021-12-14

Details

Check Text ( C-36013r600718_chk )
Review the container platform configuration to determine if processes acting on behalf of users are uniquely identified and authenticated.

If processes acting on behalf of users are not uniquely identified or are not authenticated, this is a finding.
Fix Text (F-35981r600719_fix)
Configure the container platform to uniquely identify and authenticate processes acting on behalf of users.