turbot/aws_compliance
Loading controls...

Control: ECS task definition container definitions should be checked for host mode

Description

Check if AWS Elastic Container Service (AWS ECS) task definition with host networking mode has 'privileged' or 'user' container definitions.The rule is non-compliant for task definitions with host network mode and container definitions of privileged=false or empty and user=root or empty.