Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Support for Docker rootless #565

Open
GHDEV00 opened this issue Jan 24, 2025 · 3 comments
Open

Support for Docker rootless #565

GHDEV00 opened this issue Jan 24, 2025 · 3 comments
Assignees

Comments

@GHDEV00
Copy link

GHDEV00 commented Jan 24, 2025

Would adding support for Docker rootless mode be possible?

There was an old issue that got closed because CIS didn't include it in its release but CIS Docker v1.7.0 includes it in the check "2.1 Run the Docker daemon as a non-root user, if possible".

Old issue: #505
CIS reference: https://workbench.cisecurity.org/sections/2370444/recommendations/3808700

@GHDEV00 GHDEV00 changed the title Supoprt for Docker rootless Support for Docker rootless Jan 24, 2025
@konstruktoid
Copy link
Collaborator

Hi @GHDEV00, checking if the docker daemon runs rootless isn't a big issue but the follow-up is to support rootless checks, or a combination of both, which is harder.

@GHDEV00
Copy link
Author

GHDEV00 commented Jan 27, 2025

Hi @konstruktoid, I see that support for rootless checks need work. Would it be possible to at least add this as a feature request? I think many users would benefit an implementation of such checks, as docker rootless mode is one of the key aspects when securing a docker installation.

@konstruktoid
Copy link
Collaborator

Of course!
We'll keep this issue open, and if you want to send a PR, that would be great as well.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants