Azure docker_host_hardening Mappings

Azure Security Center identifies unmanaged containers hosted on IaaS Linux VMs, or other Linux machines running Docker containers. Security Center continuously assesses the configurations of these containers. It then compares them with the Center for Internet Security (CIS) Docker Benchmark. Security Center includes the entire ruleset of the CIS Docker Benchmark and alerts you if your containers don't satisfy any of the controls. When it finds misconfigurations, Security Center generates security recommendations.

Mappings

Capability ID Capability Description Category Value ATT&CK ID ATT&CK Name
docker_host_hardening Docker Host Hardening detect minimal T1525 Implant Container Image
docker_host_hardening Docker Host Hardening protect minimal T1548 Abuse Elevation Control Mechanism
docker_host_hardening Docker Host Hardening protect minimal T1548.001 Setuid and Setgid
docker_host_hardening Docker Host Hardening protect minimal T1068 Exploitation for Privilege Escalation
docker_host_hardening Docker Host Hardening protect minimal T1040 Network Sniffing
docker_host_hardening Docker Host Hardening protect minimal T1083 File and Directory Discovery
docker_host_hardening Docker Host Hardening protect minimal T1021 Remote Services
docker_host_hardening Docker Host Hardening protect minimal T1021.004 SSH
docker_host_hardening Docker Host Hardening protect minimal T1005 Data from Local System