SV-233221r599657_rule
V-233221
SRG-APP-000431
SRG-APP-000431-CTR-001065
CAT II
10
Deploy a container platform runtime capable of maintaining a separate execution domain and namespace for each executing process. Create a namespace for each containers, defining them as logical groups.
Review container platform runtime documentation and configuration is maintaining a separate execution domain for each executing process. Different groups of applications, and services with different security needs, should be deployed in separate namespaces as a first level of isolation.
If container platform runtime is not configured to execute processes in separate domains and namespaces, this is a finding.
If namespaces use defaults, this is a finding.
V-233221
False
SRG-APP-000431-CTR-001065
Review container platform runtime documentation and configuration is maintaining a separate execution domain for each executing process. Different groups of applications, and services with different security needs, should be deployed in separate namespaces as a first level of isolation.
If container platform runtime is not configured to execute processes in separate domains and namespaces, this is a finding.
If namespaces use defaults, this is a finding.
M
5239