The container platform must uniquely identify and authenticate users.

STIG ID: SRG-APP-000148-CTR-000335  |  SRG: SRG-APP-000148 |  Severity: medium |  CCI: CCI-000764 |  Vulnerability Id: V-233075

Vulnerability Discussion

The container platform requires user accounts to perform container platform tasks. These tasks may pertain to the overall container platform or may be component-specific, thus requiring users to authenticate against those specific components. To ensure accountability and prevent unauthenticated access, users must be identified and authenticated to prevent potential misuse and compromise of the system.

Check

Review the container platform configuration to determine if users are uniquely identified and authenticated.

If users are not uniquely identified or are not authenticated, this is a finding.

Fix

Configure the container platform to uniquely identify and authenticate users.