Skip to content

Red Hat OpenShift Container Platform 4.12 Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • SRG-APP-000118-CTR-000240

    Group
  • SRG-APP-000118-CTR-000240

    Group
  • OpenShift must protect log directory from any type of unauthorized access by setting owner permissions.

    OpenShift follows the principle of least privilege, which aims to restrict access to resources based on user roles and responsibilities. This separation of privileges helps mitigate the risk of una...
    Rule Medium Severity
  • SRG-APP-000118-CTR-000240

    Group
  • OpenShift must protect pod log files from any type of unauthorized access by setting owner permissions.

    Pod log files may contain sensitive information such as application data, user credentials, or system configurations. Unauthorized access to these log files can expose sensitive data to malicious a...
    Rule Medium Severity
  • SRG-APP-000119-CTR-000245

    Group
  • OpenShift must protect audit information from unauthorized modification.

    If audit data were to become compromised, then competent forensic analysis and discovery of the true source of potentially malicious system activity is difficult if not impossible to achieve. In ad...
    Rule Medium Severity
  • SRG-APP-000121-CTR-000255

    Group
  • OpenShift must prevent unauthorized changes to logon UIDs.

    Logon UIDs are used to uniquely identify and authenticate users within the system. By preventing unauthorized changes to logon UIDs, OpenShift ensures that user identities remain consistent and acc...
    Rule Medium Severity
  • SRG-APP-000121-CTR-000255

    Group

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules