CIS Aliyun Linux 2 L2 v1.0.0

Audit Details

Name: CIS Aliyun Linux 2 L2 v1.0.0

Updated: 10/6/2023

Authority: CIS

Plugin: Unix

Revision: 1.17

Estimated Item Count: 116

File Details

Filename: CIS_Aliyun_Linux_2_L2_v1.0.0.audit

Size: 309 kB

MD5: ad2f7421fb57257a5e38cb06d103626c
SHA256: 5293f40a5fad5cd1ac2b0dd89273317bdeb9dae11d2028a712081a6b236984c1

Audit Changelog

 
Revision 1.17

Oct 6, 2023

Functional Update
  • 4.1.7 Ensure events that modify the system's Mandatory Access Controls are collected - /etc/selinux
  • 4.1.7 Ensure events that modify the system's Mandatory Access Controls are collected - /usr/share/selinux
Revision 1.16

Sep 19, 2023

Functional Update
  • 4.1.1.1 Ensure audit log storage size is configured
Miscellaneous
  • Metadata updated.
Revision 1.15

Jul 5, 2023

Functional Update
  • 4.1.1.2 Ensure system is disabled when audit logs are full - email
  • 4.1.1.2 Ensure system is disabled when audit logs are full - halt
  • 4.1.1.2 Ensure system is disabled when audit logs are full - root
  • 4.1.1.3 Ensure audit logs are not automatically deleted
Revision 1.14

Jun 23, 2023

Functional Update
  • 4.1.13 Ensure successful file system mounts are collected - (64-bit)
Revision 1.13

Mar 7, 2023

Miscellaneous
  • Metadata updated.
  • References updated.
Revision 1.12

Jan 4, 2023

Miscellaneous
  • Metadata updated.
  • Variables updated.
Revision 1.11

Dec 7, 2022

Miscellaneous
  • Metadata updated.
Revision 1.10

Sep 30, 2022

Functional Update
  • 4.1.13 Ensure successful file system mounts are collected - (32-bit)
  • 4.1.13 Ensure successful file system mounts are collected - (64-bit)
  • 4.1.4 Ensure events that modify date and time information are collected - clock_settime (32-bit)
  • 4.1.6 Ensure events that modify the system's network environment are collected - sethostname (32-bit)
Revision 1.9

Sep 16, 2022

Functional Update
  • 4.1.12 Ensure use of privileged commands is collected
  • 4.1.13 Ensure successful file system mounts are collected - (32-bit)
  • 4.1.13 Ensure successful file system mounts are collected - (64-bit)
  • 4.1.13 Ensure successful file system mounts are collected - auditctl (32-bit)
  • 4.1.13 Ensure successful file system mounts are collected - auditctl (64-bit)
  • 4.1.14 Ensure file deletion events by users are collected - (32-bit)
  • 4.1.14 Ensure file deletion events by users are collected - (64-bit)
  • 4.1.14 Ensure file deletion events by users are collected - auditctl (32-bit)
  • 4.1.14 Ensure file deletion events by users are collected - auditctl (64-bit)
Miscellaneous
  • Variables updated.
Revision 1.8

Jul 27, 2022

Functional Update
  • 3.6 Disable IPv6
  • 4.1.12 Ensure use of privileged commands is collected
  • 5.2.6 Ensure SSH X11 forwarding is disabled