Workload misconfigurations

Ensure that the Containerd socket file permissions are set to 660 or more restrictively (Automated)

Risk Level

Informational (4)

Platform(s)
  • N/A

Compliance Frameworks

Description

You should verify that the Containerd socket file has permissions of 660 or are configured more restrictively.
  • Recommended Mitigation

    You should execute the command: chmod 660 /run/containerd/containerd.sock. This sets the file permissions of the Containerd socket file to 660.