sig-bsi-grundschutz / content

Security automation content in SCAP, Bash, Ansible, and other formats
https://www.open-scap.org/security-policies/scap-security-guide
Other
7 stars 0 forks source link

SYS.1.6.A22 #22

Open sluetze opened 10 months ago

sluetze commented 1 month ago

In order to have containers available for later investigation if necessary, an image of the state SHOULD be created according to defined rules.

The OpenShift container runtime environment used does not provide a function for creating a memory image of a running container. The running containers can be listed and different parameters can be queried and saved for them. Further data (such as running processes) can be queried via the host. Using the operating system, memory dumps (core dump) or file system data (ephemeral and persistent) can also be backed up. The memory dumps can also be created with third-party operators [CoreDump].