STIGhubSTIGhub
STIGsSearchCompare

STIGhub

A free tool to search and browse the entire DISA STIG library. Saves up to 75% in security compliance research time.

Navigation

  • Browse STIGs
  • Search
  • Compare Versions

Resources

  • About
  • Release Notes
  • VPAT
  • DISA STIG Library
STIGs updated 3 hours ago
Powered by Pylon
© 2026 Beacon Cloud Solutions, Inc. All rights reserved.
← Back to Container Platform Security Requirements Guide

V-233220

CAT I (High)

The container platform keystore must implement encryption to prevent unauthorized disclosure of information at rest within the container platform.

Rule ID

SV-233220r1050650_rule

STIG

Container Platform Security Requirements Guide

Version

V2R4

CCIs

CCI-002476

Discussion

Container platform keystore is used for container deployments for persistent storage of all its REST API objects. These objects are sensitive in nature and should be encrypted at rest to avoid any unauthorized disclosure. Selection of a cryptographic mechanism is based on the need to protect the confidentiality of organizational information. The strength of mechanism is commensurate with the security category and/or classification of the information.

Check Content

Review container platform keystore documentation and configuration to verify encryption levels meet the information sensitivity level. 

If the container platform keystore encryption configuration does not meet system requirements, this is a finding.

Fix Text

Configure the container platform keystore encryption to maintain the confidentiality and integrity of information for applicable sensitivity level.