@@ -11,100 +11,100 @@ attributes:
11
11
- name : container_user
12
12
required : false
13
13
description : ' define user within containers.'
14
- default : ' ubuntu'
14
+ value : ' ubuntu'
15
15
type : string
16
16
- name : container_capadd
17
17
required : true
18
18
description : ' define needed capabilities for containers.'
19
19
type : string
20
- default : NET_ADMIN,SYS_ADMIN
20
+ value : NET_ADMIN,SYS_ADMIN
21
21
- name : app_armor_profile
22
22
required : false
23
23
description : ' define apparmor profile for Docker containers.'
24
- default : ' docker-default'
24
+ value : ' docker-default'
25
25
type : string
26
26
- name : selinux_profile
27
27
required : false
28
28
description : ' define SELinux profile for Docker containers.'
29
- default : label:level:s0-s0:c1023
29
+ value : label:level:s0-s0:c1023
30
30
type : string
31
31
- name : trusted_user
32
32
required : false
33
33
description : ' define trusted user to control Docker daemon.'
34
- default : vagrant
34
+ value : vagrant
35
35
type : string
36
36
- name : managable_container_number
37
37
required : true
38
38
description : ' keep number of containers on a host to a manageable total.'
39
- default : 25
39
+ value : 25
40
40
type : numeric
41
41
- name : benchmark_version
42
42
required : true
43
43
description : ' to execute also the old controls from previous benchmarks. to execute the controls, define the value as 1.12.0'
44
44
type : string
45
- default : 1.12.0
45
+ value : 1.12.0
46
46
- name : registry_cert_path
47
47
required : true
48
48
description : ' directory contains various Docker registry directories.'
49
- default : ' /etc/docker/certs.d'
49
+ value : ' /etc/docker/certs.d'
50
50
type : string
51
51
- name : registry_name
52
52
required : true
53
53
description : ' directory contain certificate certain Docker registry.'
54
- default : ' /etc/docker/certs.d/registry_hostname:port'
54
+ value : ' /etc/docker/certs.d/registry_hostname:port'
55
55
type : string
56
56
- name : registry_ca_file
57
57
required : false
58
58
description : ' directory contain certificate certain Docker registry.'
59
- default : ' /etc/docker/certs.d/registry_hostname:port/ca.crt'
59
+ value : ' /etc/docker/certs.d/registry_hostname:port/ca.crt'
60
60
type : string
61
61
- name : daemon_tlscacert
62
62
required : false
63
63
description : ' Trust certs signed only by this CA'
64
- default : ' /etc/docker/ssl/ca.pem'
64
+ value : ' /etc/docker/ssl/ca.pem'
65
65
type : string
66
66
- name : daemon_tlscert
67
67
required : false
68
68
description : ' Path to TLS certificate file'
69
- default : ' /etc/docker/ssl/server_cert.pem'
69
+ value : ' /etc/docker/ssl/server_cert.pem'
70
70
type : string
71
71
- name : daemon_tlskey
72
72
required : false
73
73
description : ' Path to TLS key file'
74
- default : ' /etc/docker/ssl/server_key.pem'
74
+ value : ' /etc/docker/ssl/server_key.pem'
75
75
type : string
76
76
- name : authorization_plugin
77
77
required : false
78
78
description : ' define authorization plugin to manage access to Docker daemon.'
79
- default : ' authz-broker'
79
+ value : ' authz-broker'
80
80
type : string
81
81
- name : log_driver
82
82
required : false
83
83
description : ' define preferable way to store logs.'
84
- default : ' syslog'
84
+ value : ' syslog'
85
85
type : string
86
86
- name : log_opts
87
87
required : false
88
88
description : ' define Docker daemon log-opts.'
89
- default : syslog-address
89
+ value : syslog-address
90
90
type : string
91
91
- name : swarm_mode
92
92
required : false
93
93
description : ' define the swarm mode, `active` or `inactive`'
94
- default : inactive
94
+ value : inactive
95
95
type : string
96
96
- name : swarm_max_manager_nodes
97
97
required : false
98
98
description : ' number of manager nodes in a swarm'
99
- default : 3
99
+ value : 3
100
100
type : numeric
101
101
- name : swarm_port
102
102
required : false
103
103
description : ' port of the swarm node'
104
- default : 2377
104
+ value : 2377
105
105
type : numeric
106
106
- name : seccomp_default_profile
107
107
required : false
108
108
description : ' define the default seccomp profile'
109
- default : ' default'
110
- type : string
109
+ value : ' default'
110
+ type : string
0 commit comments