Merge pull request #192 from konstruktoid/readme_112

1.12 benchmark
This commit is contained in:
Thomas Sjögren 2017-01-23 12:05:48 +01:00 committed by GitHub
commit ab32cb3e12
2 changed files with 5 additions and 8 deletions

View file

@ -4,7 +4,7 @@
The Docker Bench for Security is a script that checks for dozens of common
best-practices around deploying Docker containers in production. The tests are
all automated, and are inspired by the [CIS Docker 1.11 Benchmark](https://benchmarks.cisecurity.org/tools2/docker/CIS_Docker_1.11.0_Benchmark_v1.0.0.pdf).
all automated, and are inspired by the [CIS Docker 1.12 Benchmark](https://benchmarks.cisecurity.org/tools2/docker/CIS_Docker_1.12.0_Benchmark_v1.0.0.pdf).
We are releasing this as a follow-up to our [Understanding Docker Security and Best Practices](https://blog.docker.com/2015/05/understanding-docker-security-and-best-practices/)
blog post.

View file

@ -1,13 +1,11 @@
#!/bin/sh
# ------------------------------------------------------------------------------
# Docker Bench for Security v1.1.0
# Docker Bench for Security v1.2.0
#
# Docker, Inc. (c) 2015-
#
# Checks for dozens of common best-practices around deploying Docker containers in production.
# Inspired by the CIS Docker 1.11 Benchmark:
# https://benchmarks.cisecurity.org/downloads/show-single/index.cfm?file=docker16.110
#
# Inspired by the CIS Docker 1.12 Benchmark.
# ------------------------------------------------------------------------------
# Load dependencies
@ -59,13 +57,12 @@ if [ -z "$logger" ]; then
fi
yell "# ------------------------------------------------------------------------------
# Docker Bench for Security v1.1.0
# Docker Bench for Security v1.2.0
#
# Docker, Inc. (c) 2015-
#
# Checks for dozens of common best-practices around deploying Docker containers in production.
# Inspired by the CIS Docker 1.11 Benchmark:
# https://benchmarks.cisecurity.org/downloads/show-single/index.cfm?file=docker16.110
# Inspired by the CIS Docker 1.12 Benchmark.
# ------------------------------------------------------------------------------"
# Warn if not root