CIS Amazon Linux 2023 Server L2 v1.0.0

Audit Details

Name: CIS Amazon Linux 2023 Server L2 v1.0.0

Updated: 3/20/2024

Authority: CIS

Plugin: Unix

Revision: 1.4

Estimated Item Count: 65

File Details

Filename: CIS_Amazon_Linux_2023_v1.0.0_L2_Server.audit

Size: 360 kB

MD5: c6975ee64635987ab13b590b7a05bccc
SHA256: 1003006e2635af384b73b75dc72d11c73210471a7f5eb3d19cac29909434268a

Audit Changelog

 
Revision 1.4

Mar 20, 2024

Added
  • 4.1.4.4 Ensure the audit log directory is 0750 or more restrictive
Removed
  • 5.2.4.4 Ensure the audit log directory is 0750 or more restrictive
Revision 1.3

Mar 18, 2024

Functional Update
  • 5.2.4.1 Ensure audit log files are mode 0640 or less permissive
  • 5.2.4.2 Ensure only authorized users own audit log files
  • 5.2.4.5 Ensure audit configuration files are 640 or more restrictive
  • 5.2.4.6 Ensure audit configuration files are owned by root
  • 5.2.4.7 Ensure audit configuration files belong to group root
Miscellaneous
  • Metadata updated.
  • Variables updated.
Revision 1.2

Dec 27, 2023

Functional Update
  • 3.4.2.5 Ensure firewalld drops unnecessary services and ports
  • 5.2.3.19 Ensure kernel module loading unloading and modification is collected
  • 5.2.4.1 Ensure audit log files are mode 0640 or less permissive
  • 5.2.4.2 Ensure only authorized users own audit log files
  • 5.2.4.4 Ensure the audit log directory is 0750 or more restrictive
Revision 1.1

Nov 17, 2023

Functional Update
  • 4.2.12 Ensure SSH X11 forwarding is disabled
  • 4.2.13 Ensure SSH AllowTcpForwarding is disabled