SV-253546r1050656_rule
V-253546
SRG-APP-000414-CTR-001010
CNTR-PC-001350
CAT II
10
Redeploy the Defender with appropriate rights by setting "Run Defenders as privileged" to "On".
Delete the old twistlock-defender-ds daemonSet and redeploy daemonSet with the new yaml in which the securityContext - privileged = "on".
Verify that when deploying the Defender via daemonSet, "Run Defenders as privileged" is set to "On".
Verify the Defender containers were deployed using the daemonSet.yaml in which the securityContext is privileged (privileged = "on").
If "Run Defenders as privileged" is not set to "On" or the Defender containers were not deployed using the daemonSet.yaml in which the securityContext - privileged = "on", this is a finding.
V-253546
False
CNTR-PC-001350
Verify that when deploying the Defender via daemonSet, "Run Defenders as privileged" is set to "On".
Verify the Defender containers were deployed using the daemonSet.yaml in which the securityContext is privileged (privileged = "on").
If "Run Defenders as privileged" is not set to "On" or the Defender containers were not deployed using the daemonSet.yaml in which the securityContext - privileged = "on", this is a finding.
M
5473