TNS Salesforce Best Practices Audit v1.2.0

Audit Details

Name: TNS Salesforce Best Practices Audit v1.2.0

Updated: 6/10/2022

Authority: TNS

Plugin: Salesforce.com

Revision: 1.0

Estimated Item Count: 119

File Details

Filename: TNS_Salesforce_Best_Practices_v1.2.0.audit

Size: 239 kB

MD5: 10aee4f24282f6965a52bfdb5f3bb27a
SHA256: 0fd3d32e98f5d28681f100b0be803b2aaaa728c0970d17bee577befd45b6c428

Audit Items

DescriptionCategories
Salesforce.com : Administrator Access - 'No System Administrator accounts have been created since the last scan'

ACCESS CONTROL

Salesforce.com : Administrator Access - 'No System Administrator accounts have been modified since the last scan'

ACCESS CONTROL

Salesforce.com : AuthConfig - 'Auth Providers = Facebook Consumer Key'

IDENTIFICATION AND AUTHENTICATION

Salesforce.com : AuthConfig - 'Auth Providers = Facebook Consumer Secret'

IDENTIFICATION AND AUTHENTICATION

Salesforce.com : AuthConfig - 'Auth Providers = Facebook Default Scope'

CONFIGURATION MANAGEMENT

Salesforce.com : AuthConfig - 'Auth Providers = Facebook Error URL'

CONFIGURATION MANAGEMENT

Salesforce.com : AuthConfig - 'Auth Providers = Facebook Execution User ID'

IDENTIFICATION AND AUTHENTICATION

Salesforce.com : AuthConfig - 'Auth Providers = Facebook is not configured'

CONFIGURATION MANAGEMENT

Salesforce.com : AuthConfig - 'Auth Providers = Facebook'

IDENTIFICATION AND AUTHENTICATION

Salesforce.com : AuthConfig - 'Auth Providers = Janrain Consumer Secret'

IDENTIFICATION AND AUTHENTICATION

Salesforce.com : AuthConfig - 'Auth Providers = Janrain Error URL'

CONFIGURATION MANAGEMENT

Salesforce.com : AuthConfig - 'Auth Providers = Janrain Execution User ID'

IDENTIFICATION AND AUTHENTICATION

Salesforce.com : AuthConfig - 'Auth Providers = Janrain is not configured'

CONFIGURATION MANAGEMENT

Salesforce.com : AuthConfig - 'Auth Providers = Janrain'

IDENTIFICATION AND AUTHENTICATION

Salesforce.com : AuthConfig - 'Auth Providers = MicrosoftACS Authorized Endpoint URL'

IDENTIFICATION AND AUTHENTICATION

Salesforce.com : AuthConfig - 'Auth Providers = MicrosoftACS Consumer Key'

IDENTIFICATION AND AUTHENTICATION

Salesforce.com : AuthConfig - 'Auth Providers = MicrosoftACS Consumer Secret'

IDENTIFICATION AND AUTHENTICATION

Salesforce.com : AuthConfig - 'Auth Providers = MicrosoftACS Default Scope'

CONFIGURATION MANAGEMENT

Salesforce.com : AuthConfig - 'Auth Providers = MicrosoftACS Error URL'

CONFIGURATION MANAGEMENT

Salesforce.com : AuthConfig - 'Auth Providers = MicrosoftACS is not configured'

CONFIGURATION MANAGEMENT

Salesforce.com : AuthConfig - 'Auth Providers = MicrosoftACS Token Endpoint URL'

IDENTIFICATION AND AUTHENTICATION

Salesforce.com : AuthConfig - 'Auth Providers = MicrosoftACS'

IDENTIFICATION AND AUTHENTICATION

Salesforce.com : AuthConfig - 'Auth Providers = OpenIdConnect Authorize Endpoint URL'

IDENTIFICATION AND AUTHENTICATION

Salesforce.com : AuthConfig - 'Auth Providers = OpenIdConnect Consumer Key'

IDENTIFICATION AND AUTHENTICATION

Salesforce.com : AuthConfig - 'Auth Providers = OpenIdConnect Consumer Secret'

IDENTIFICATION AND AUTHENTICATION

Salesforce.com : AuthConfig - 'Auth Providers = OpenIdConnect Default Scope'

CONFIGURATION MANAGEMENT

Salesforce.com : AuthConfig - 'Auth Providers = OpenIdConnect Error URL'

CONFIGURATION MANAGEMENT

Salesforce.com : AuthConfig - 'Auth Providers = OpenIdConnect Execution User ID'

IDENTIFICATION AND AUTHENTICATION

Salesforce.com : AuthConfig - 'Auth Providers = OpenIdConnect is not configured'

CONFIGURATION MANAGEMENT

Salesforce.com : AuthConfig - 'Auth Providers = OpenIdConnect Send Access Token in Header'

CONFIGURATION MANAGEMENT

Salesforce.com : AuthConfig - 'Auth Providers = OpenIdConnect Send Client Credentials in Header'

CONFIGURATION MANAGEMENT

Salesforce.com : AuthConfig - 'Auth Providers = OpenIdConnect Token Endpoint URL'

IDENTIFICATION AND AUTHENTICATION

Salesforce.com : AuthConfig - 'Auth Providers = OpenIdConnect Token Issuer'

CONFIGURATION MANAGEMENT

Salesforce.com : AuthConfig - 'Auth Providers = OpenIdConnect User Info Endpoint URL'

CONFIGURATION MANAGEMENT

Salesforce.com : AuthConfig - 'Auth Providers = OpenIdConnect'

IDENTIFICATION AND AUTHENTICATION

Salesforce.com : AuthConfig - 'Auth Providers = Salesforce Consumer Key'

IDENTIFICATION AND AUTHENTICATION

Salesforce.com : AuthConfig - 'Auth Providers = Salesforce Consumer Secret'

IDENTIFICATION AND AUTHENTICATION

Salesforce.com : AuthConfig - 'Auth Providers = Salesforce Default Scope'

CONFIGURATION MANAGEMENT

Salesforce.com : AuthConfig - 'Auth Providers = Salesforce Error URL'

CONFIGURATION MANAGEMENT

Salesforce.com : AuthConfig - 'Auth Providers = Salesforce Execution User ID'

IDENTIFICATION AND AUTHENTICATION

Salesforce.com : AuthConfig - 'Auth Providers = Salesforce is not configured'

CONFIGURATION MANAGEMENT

Salesforce.com : AuthConfig - 'Auth Providers = Salesforce'

IDENTIFICATION AND AUTHENTICATION

Salesforce.com : AuthConfig - 'Auth Providers in use'

IDENTIFICATION AND AUTHENTICATION

Salesforce.com : AuthConfig - No SSO Auth Providers have been configured

IDENTIFICATION AND AUTHENTICATION

Salesforce.com : CronTrigger - 'Cron Jobs with Status of BLOCKED'

CONFIGURATION MANAGEMENT

Salesforce.com : CronTrigger - 'Cron Jobs with Status of ERROR'

CONFIGURATION MANAGEMENT

Salesforce.com : Data Access Control - 'Enable CSRF protection on GET requests on non-setup pages = true'

SYSTEM AND COMMUNICATIONS PROTECTION

Salesforce.com : Email Services - 'AddressInactiveAction != 2'

CONFIGURATION MANAGEMENT

Salesforce.com : Email Services - 'AttachmentOption != 2 or 3'

CONFIGURATION MANAGEMENT

Salesforce.com : Email Services - 'AuthenticationFailureAction != 2 or 3'

CONFIGURATION MANAGEMENT