The container platform runtime must enforce ports, protocols, and services that adhere to the PPSM CAL.
An XCCDF Rule
Description
<VulnDiscussion>Ports, protocols, and services within the container platform runtime must be controlled and conform to the PPSM CAL. Those ports, protocols, and services that fall outside the PPSM CAL must be blocked by the runtime. Instructions on the PPSM can be found in DoD Instruction 8551.01 Policy.</VulnDiscussion><FalsePositives></FalsePositives><FalseNegatives></FalseNegatives><Documentable>false</Documentable><Mitigations></Mitigations><SeverityOverrideGuidance></SeverityOverrideGuidance><PotentialImpacts></PotentialImpacts><ThirdPartyTools></ThirdPartyTools><MitigationControl></MitigationControl><Responsibility></Responsibility><IAControls></IAControls>
- ID
- SV-233073r960966_rule
- Severity
- Medium
- References
- Updated
Remediation - Manual Procedure
Configure the container platform to disable any ports or protocols that are prohibited by the PPSM CAL and not necessary for the operation.