Skip to content

Red Hat OpenShift Container Platform 4.12 Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • SRG-APP-000118-CTR-000240

    <GroupDescription></GroupDescription>
    Group
  • OpenShift must protect log directory from any type of unauthorized access by setting file permissions.

    &lt;VulnDiscussion&gt;Log files contain sensitive information such as user credentials, system configurations, and potentially even security-relate...
    Rule Medium Severity
  • SRG-APP-000118-CTR-000240

    <GroupDescription></GroupDescription>
    Group
  • OpenShift must set the sticky bit for world-writable directories.

    &lt;VulnDiscussion&gt;Removing world-writable permissions or setting the sticky bit helps enforce access control on directories within the OpenShif...
    Rule Medium Severity
  • OpenShift must protect log directory from any type of unauthorized access by setting owner permissions.

    &lt;VulnDiscussion&gt;OpenShift follows the principle of least privilege, which aims to restrict access to resources based on user roles and respon...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules