<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Docker Hardening in Cortex XSOAR Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/cortex-xsoar-discussions/docker-hardening/m-p/529422#M1751</link>
    <description>&lt;P&gt;I think the second configuration is for exceptions where the container doesn't support non root users. You basically set all python 3 docker images to run as root&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Wed, 01 Feb 2023 08:04:50 GMT</pubDate>
    <dc:creator>EnesOzdemir</dc:creator>
    <dc:date>2023-02-01T08:04:50Z</dc:date>
    <item>
      <title>Docker Hardening</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xsoar-discussions/docker-hardening/m-p/518826#M1309</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I followed this docker hardening documentation to harden the docker containerzied environment for Cortex XSOAR solutin.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I added the first server configuration key as this (&lt;SPAN&gt;docker.run.internal.asuser = true), and reset docker containers then issue this command (!py script="import os;print(os.getuid())") to validate if docker currently run under non root user, and it returns 999 which is good.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;But after i added the second configuration key mentioned in the document as this (docker.run.internal.asuser.ignore=demisto/python3:,demisto/python:), and repeat the same process to confirm user, it returned (0) this time.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;So i'm just wondering if this is normal of have i made a mistake while adding the second key.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Thanks,&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Ahmed Saeed&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 22 Oct 2022 10:10:54 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xsoar-discussions/docker-hardening/m-p/518826#M1309</guid>
      <dc:creator>Amado.Saeeed</dc:creator>
      <dc:date>2022-10-22T10:10:54Z</dc:date>
    </item>
    <item>
      <title>Re: Docker Hardening</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xsoar-discussions/docker-hardening/m-p/518828#M1310</link>
      <description>&lt;P&gt;&amp;nbsp;I ran the final hardening check script, and this is the output&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="AmadoSaeeed_0-1666436252839.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/44823i2F00FB63ECACA00C/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="AmadoSaeeed_0-1666436252839.png" alt="AmadoSaeeed_0-1666436252839.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 22 Oct 2022 10:58:01 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xsoar-discussions/docker-hardening/m-p/518828#M1310</guid>
      <dc:creator>Amado.Saeeed</dc:creator>
      <dc:date>2022-10-22T10:58:01Z</dc:date>
    </item>
    <item>
      <title>Re: Docker Hardening</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xsoar-discussions/docker-hardening/m-p/529422#M1751</link>
      <description>&lt;P&gt;I think the second configuration is for exceptions where the container doesn't support non root users. You basically set all python 3 docker images to run as root&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 01 Feb 2023 08:04:50 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xsoar-discussions/docker-hardening/m-p/529422#M1751</guid>
      <dc:creator>EnesOzdemir</dc:creator>
      <dc:date>2023-02-01T08:04:50Z</dc:date>
    </item>
  </channel>
</rss>

