PSS-11—Images for Virtual Machines and Containers
>Control Description
If cloud customers operate virtual machines or containers with the cloud service, the Cloud Service Provider must ensure the following aspects:
• The cloud customer can restrict the selection of images of virtual machines or containers according to his specifications, so that users of this cloud customer can only launch the images or containers released according to these restrictions.
• If the Cloud Service Provider provides images of virtual machines or containers to the Cloud Customer, the Cloud Service Provider appropriately inform the Cloud Customer of the changes made to the previous version.
• In addition, these images provided by the Cloud Service Provider are hardened according to generally accepted industry standards.
Additional criteria: At startup and runtime of virtual machine or container images, an integrity check is performed that detects image manipulations and reports them to the cloud customer.
Ask AI
Configure your API key to use AI features.