Item Search

NameAudit NamePluginCategory
1.1.4.30 Set 'Bypass traverse checking' to 'Users, NETWORK SERVICE, LOCAL SERVICE, Administrators'CIS Windows 8 L1 v1.0.0Windows

ACCESS CONTROL

1.1.4.31 Set 'Increase a process working set' to 'Administrators, Local Service'CIS Windows 8 L1 v1.0.0Windows

ACCESS CONTROL

2.2.6 (L1) Ensure 'Adjust memory quotas for a process' is set to 'Administrators, LOCAL SERVICE, NETWORK SERVICE'CIS Microsoft Windows Server 2008 R2 Domain Controller Level 1 v3.3.1Windows

ACCESS CONTROL

2.2.7 (L1) Ensure 'Allow log on locally' is set to 'Administrators'CIS Microsoft Windows Server 2008 R2 Domain Controller Level 1 v3.3.1Windows

ACCESS CONTROL

2.2.13 (L1) Ensure 'Create a pagefile' is set to 'Administrators'CIS Windows Server 2012 R2 MS L1 v3.0.0Windows

ACCESS CONTROL

2.2.20 Ensure 'Create symbolic links' is set to 'Administrators, NT VIRTUAL MACHINE\Virtual Machines' (STIG DC only)CIS Microsoft Windows Server 2019 STIG v3.0.0 STIG DCWindows

ACCESS CONTROL

2.2.21 Ensure 'Create symbolic links' is set to 'Administrators, NT VIRTUAL MACHINE\Virtual Machines' (STIG only)CIS Microsoft Windows Server 2022 STIG v2.0.0 STIG MSWindows

ACCESS CONTROL

2.2.22 (L1) Ensure 'Deny log on as a batch job' to include 'Guests'CIS Windows Server 2012 MS L1 v3.0.0Windows

ACCESS CONTROL

2.2.24 (L1) Ensure 'Deny log on locally' to include 'Guests'CIS Windows Server 2012 MS L1 v3.0.0Windows

ACCESS CONTROL

2.2.32 (L1) Ensure 'Impersonate a client after authentication' is set to 'Administrators, LOCAL SERVICE, NETWORK SERVICE, SERVICE' and (when the Web Server (IIS) Role with Web Services Role Service is installed) 'IIS_IUSRS' (MS only)CIS Windows Server 2012 MS L1 v3.0.0Windows

ACCESS CONTROL

2.2.33 (L1) Ensure 'Increase scheduling priority' is set to 'Administrators'CIS Windows Server 2012 MS L1 v3.0.0Windows

ACCESS CONTROL

2.2.39 (L1) Ensure 'Modify an object label' is set to 'No One'CIS Windows Server 2012 MS L1 v3.0.0Windows

ACCESS CONTROL

2.2.39 (L1) Ensure 'Modify an object label' is set to 'No One'CIS Microsoft Windows Server 2008 R2 Domain Controller Level 1 v3.3.1Windows

ACCESS CONTROL

2.2.40 (L1) Ensure 'Modify firmware environment values' is set to 'Administrators'CIS Windows Server 2012 R2 MS L1 v3.0.0Windows

ACCESS CONTROL

2.2.41 (L1) Ensure 'Perform volume maintenance tasks' is set to 'Administrators'CIS Windows Server 2012 R2 MS L1 v3.0.0Windows

ACCESS CONTROL

2.2.44 (L1) Ensure 'Replace a process level token' is set to 'LOCAL SERVICE, NETWORK SERVICE'CIS Windows Server 2012 MS L1 v3.0.0Windows

ACCESS CONTROL

2.2.44 (L1) Ensure 'Replace a process level token' is set to 'LOCAL SERVICE, NETWORK SERVICE'CIS Windows Server 2012 R2 MS L1 v3.0.0Windows

ACCESS CONTROL

2.2.44 (L1) Ensure 'Replace a process level token' is set to 'LOCAL SERVICE, NETWORK SERVICE'CIS Microsoft Windows Server 2008 R2 Domain Controller Level 1 v3.3.1Windows

ACCESS CONTROL

2.2.46 (L1) Ensure 'Shut down the system' is set to 'Administrators'CIS Windows Server 2012 MS L1 v3.0.0Windows

ACCESS CONTROL

2.3.10.9 (L1) Configure 'Network access: Remotely accessible registry paths and sub-paths' is configuredCIS Windows Server 2012 MS L1 v3.0.0Windows

ACCESS CONTROL

2.3.10.10 Configure 'Network access: Remotely accessible registry paths' is configuredCIS Microsoft Windows Server 2022 STIG v2.0.0 L1 Domain ControllerWindows

ACCESS CONTROL

2.3.10.11 Configure 'Network access: Remotely accessible registry paths and sub-paths' is configuredCIS Microsoft Windows Server 2022 STIG v2.0.0 L1 Domain ControllerWindows

ACCESS CONTROL

2.3.10.11 Configure 'Network access: Remotely accessible registry paths and sub-paths' is configuredCIS Microsoft Windows Server 2019 STIG v3.0.0 L1 DCWindows

ACCESS CONTROL

Access Credential Manager as a trusted callerMSCT MSCT Windows Server 2022 DC v1.0.0Windows

ACCESS CONTROL

Access Credential Manager as a trusted callerMSCT Windows Server 2022 v1.0.0Windows

ACCESS CONTROL

Access Credential Manager as a trusted callerMSCT Windows 11 v1.0.0Windows

ACCESS CONTROL

Access this computer from the networkMSCT Windows 10 v21H1 v1.0.0Windows

ACCESS CONTROL

Add workstations to a domainMSCT Windows Server 2012 R2 DC v1.0.0Windows

ACCESS CONTROL

Allow log on locallyMSCT Windows 10 v22H2 v1.0.0Windows

ACCESS CONTROL

Create a pagefileMSCT Windows 10 v21H1 v1.0.0Windows

ACCESS CONTROL

Create a pagefileMSCT Windows 10 v22H2 v1.0.0Windows

ACCESS CONTROL

Create a token objectMSCT Windows Server 2022 v1.0.0Windows

ACCESS CONTROL

Create a token objectMSCT Windows 10 v21H1 v1.0.0Windows

ACCESS CONTROL

Create global objectsMSCT Windows Server 2022 v1.0.0Windows

ACCESS CONTROL

Create permanent shared objectsMSCT MSCT Windows Server 2022 DC v1.0.0Windows

ACCESS CONTROL

Create permanent shared objectsMSCT Windows 11 v1.0.0Windows

ACCESS CONTROL

Debug programsMSCT Windows 10 v21H1 v1.0.0Windows

ACCESS CONTROL

Deny log on through Remote Desktop ServicesMSCT Windows 11 v1.0.0Windows

ACCESS CONTROL

Enable computer and user accounts to be trusted for delegationMSCT Windows 10 v22H2 v1.0.0Windows

ACCESS CONTROL

Force shutdown from a remote systemMSCT MSCT Windows Server 2022 DC v1.0.0Windows

ACCESS CONTROL

Force shutdown from a remote systemMSCT Windows 11 v1.0.0Windows

ACCESS CONTROL

Impersonate a client after authenticationMSCT Windows 11 v1.0.0Windows

ACCESS CONTROL

Manage auditing and security logMSCT Windows Server 2022 v1.0.0Windows

ACCESS CONTROL

Manage auditing and security logMSCT Windows 10 v21H1 v1.0.0Windows

ACCESS CONTROL

Perform volume maintenance tasksMSCT Windows 10 v21H1 v1.0.0Windows

ACCESS CONTROL

Perform volume maintenance tasksMSCT Windows 10 v22H2 v1.0.0Windows

ACCESS CONTROL

Profile single processMSCT Windows Server 2022 v1.0.0Windows

ACCESS CONTROL

Restore files and directoriesMSCT MSCT Windows Server 2022 DC v1.0.0Windows

ACCESS CONTROL

Synchronize directory service dataMSCT Windows Server 2012 R2 DC v1.0.0Windows

ACCESS CONTROL

Take ownership of files or other objectsMSCT Windows Server 2022 v1.0.0Windows

ACCESS CONTROL