Item Search

NameAudit NamePluginCategory
2.3.5.4 Ensure 'Domain controller: LDAP server signing requirements Enforcement' is set to 'Enabled' (DC only)CIS Microsoft Windows Server 2025 v2.0.0 L1 DCWindows

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION

2.3.10.4 Ensure 'Network access: Do not allow storage of passwords and credentials for network authentication' is set to 'Enabled'CIS Windows 7 Workstation Level 1 v3.2.0Windows

IDENTIFICATION AND AUTHENTICATION

3.1 Ensure the Apache Web Server Runs As a Non-Root User - 'apache account is configured'CIS Apache HTTP Server 2.2 L1 v3.6.0Unix

ACCESS CONTROL

3.1 Ensure the Apache Web Server Runs As a Non-Root User - 'apache account is configured'CIS Apache HTTP Server 2.2 L1 v3.6.0 MiddlewareUnix

ACCESS CONTROL

3.1 Ensure the Apache Web Server Runs As a Non-Root User - 'httpd services are running as apache user'CIS Apache HTTP Server 2.2 L2 v3.6.0Unix

ACCESS CONTROL

3.1 Ensure the Apache Web Server Runs As a Non-Root User - 'httpd.conf User = apache'CIS Apache HTTP Server 2.2 L2 v3.6.0Unix

ACCESS CONTROL

5.131 - Windows is prevented from using Windows Update to search for drivers.DISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

5.218 - Windows Registration WizardDISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

5.245 - Windows Mail - CommunitiesDISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

18.9.11.1.2 Ensure 'Choose how BitLocker-protected fixed drives can be recovered' is set to 'Enabled'CIS Windows 7 Workstation Level 1 + Bitlocker v3.2.0Windows

CONTINGENCY PLANNING, SYSTEM AND COMMUNICATIONS PROTECTION

18.9.11.2.9 (BL) Ensure 'Choose how BitLocker-protected operating system drives can be recovered: Configure storage of BitLocker recovery information to AD DS:' is set to 'Enabled: Store recovery passwords and key packages'CIS Microsoft Windows 8.1 v2.4.1 L1 BitlockerWindows

ACCESS CONTROL, CONTINGENCY PLANNING

18.9.11.2.9 Ensure 'Choose how BitLocker-protected operating system drives can be recovered: Do not enable BitLocker until recovery information is stored to AD DS for operating system drives' is set to 'Enabled: True'CIS Windows 7 Workstation Level 1 + Bitlocker v3.2.0Windows

CONTINGENCY PLANNING, SYSTEM AND COMMUNICATIONS PROTECTION

18.9.11.3.2 (BL) Ensure 'Choose how BitLocker-protected removable drives can be recovered' is set to 'Enabled'CIS Microsoft Windows 8.1 v2.4.1 L2 BitlockerWindows

ACCESS CONTROL, CONTINGENCY PLANNING

18.9.11.3.12 Ensure 'Configure use of smart cards on removable data drives: Require use of smart cards on removable data drives' is set to 'Enabled: True'CIS Windows 7 Workstation Level 1 + Bitlocker v3.2.0Windows

IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION

18.9.59.3.10.1 (L2) Ensure 'Set time limit for active but idle Remote Desktop Services sessions' is set to 'Enabled: 15 minutes or less'CIS Microsoft Windows 8.1 v2.4.1 L2 BitlockerWindows

ACCESS CONTROL

18.9.59.3.10.1 Ensure 'Set time limit for active but idle Remote Desktop Services sessions' is set to 'Enabled: 15 minutes or less'CIS Windows 7 Workstation Level 2 v3.2.0Windows

ACCESS CONTROL

18.9.59.3.10.1 Ensure 'Set time limit for active but idle Remote Desktop Services sessions' is set to 'Enabled: 15 minutes or less'CIS Windows 7 Workstation Level 2 + Bitlocker v3.2.0Windows

ACCESS CONTROL

Allow Windows Ink WorkspaceMSCT Windows 10 v2004 v1.0.0Windows

CONFIGURATION MANAGEMENT

Allow Windows Ink WorkspaceMSCT MSCT Windows Server 2022 DC v1.0.0Windows

CONFIGURATION MANAGEMENT

Allow Windows Ink WorkspaceMSCT Windows Server v20H2 DC v1.0.0Windows

CONFIGURATION MANAGEMENT

Allow Windows Ink WorkspaceMSCT Windows 10 v22H2 v1.0.0Windows

CONFIGURATION MANAGEMENT

Allow Windows Ink WorkspaceMSCT Windows 11 v23H2 v1.0.0Windows

CONFIGURATION MANAGEMENT

Allow Windows Ink WorkspaceMSCT Windows 10 v21H1 v1.0.0Windows

CONFIGURATION MANAGEMENT

Allow Windows Ink WorkspaceMSCT Windows 11 v1.0.0Windows

CONFIGURATION MANAGEMENT

Allow Windows Ink WorkspaceMSCT Windows 10 1903 v1.19.9Windows

CONFIGURATION MANAGEMENT

Allow Windows Ink WorkspaceMSCT Windows 10 v20H2 v1.0.0Windows

CONFIGURATION MANAGEMENT

Allow Windows Ink WorkspaceMSCT Windows Server 1903 MS v1.19.9Windows

CONFIGURATION MANAGEMENT

Allow Windows Ink WorkspaceMSCT Windows Server v2004 MS v1.0.0Windows

CONFIGURATION MANAGEMENT

Allow Windows Ink WorkspaceMSCT Windows Server 2019 DC v1.0.0Windows

CONFIGURATION MANAGEMENT

Allow Windows Ink WorkspaceMSCT Windows 11 v22H2 v1.0.0Windows

CONFIGURATION MANAGEMENT

Allow Windows Ink WorkspaceMSCT Windows 11 v24H2 v1.0.0Windows

CONFIGURATION MANAGEMENT

Allow Windows Ink WorkspaceMSCT Windows 10 1809 v1.0.0Windows

CONFIGURATION MANAGEMENT

Allow Windows Ink WorkspaceMSCT Windows 10 1909 v1.0.0Windows

CONFIGURATION MANAGEMENT

Allow Windows Ink WorkspaceMSCT Windows 10 v21H2 v1.0.0Windows

CONFIGURATION MANAGEMENT

Allow Windows Ink WorkspaceMSCT Windows Server 1903 DC v1.19.9Windows

CONFIGURATION MANAGEMENT

Allow Windows Ink WorkspaceMSCT Windows Server v1909 DC v1.0.0Windows

CONFIGURATION MANAGEMENT

Allow Windows Ink WorkspaceMSCT Windows Server v1909 MS v1.0.0Windows

CONFIGURATION MANAGEMENT

Allow Windows Ink WorkspaceMSCT Windows Server v2004 DC v1.0.0Windows

CONFIGURATION MANAGEMENT

Configure Windows Defender SmartScreenMSCT Windows 10 1803 v1.0.0Windows

SYSTEM AND INFORMATION INTEGRITY

Turn off Windows DefenderMSCT Windows Server 2016 DC v1.0.0Windows

SYSTEM AND INFORMATION INTEGRITY

Windows Device Configuration - AccountsTenable Best Practices for Microsoft Intune Windows v1.0microsoft_azure

ACCESS CONTROL, CONFIGURATION MANAGEMENT

Windows Device Configuration - CameraTenable Best Practices for Microsoft Intune Windows v1.0microsoft_azure

ACCESS CONTROL, CONFIGURATION MANAGEMENT

Windows Device Configuration - DevicesTenable Best Practices for Microsoft Intune Windows v1.0microsoft_azure

ACCESS CONTROL, CONFIGURATION MANAGEMENT

Windows Device Configuration - NFCTenable Best Practices for Microsoft Intune Windows v1.0microsoft_azure

ACCESS CONTROL, CONFIGURATION MANAGEMENT

Windows Device Configuration - PasswordTenable Best Practices for Microsoft Intune Windows v1.0microsoft_azure

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

Windows Device Configuration - PersonalizationTenable Best Practices for Microsoft Intune Windows v1.0microsoft_azure

ACCESS CONTROL, CONFIGURATION MANAGEMENT

Windows Device Configuration - SystemTenable Best Practices for Microsoft Intune Windows v1.0microsoft_azure

ACCESS CONTROL, CONFIGURATION MANAGEMENT

Windows Firewall: Prohibit notificationsMSCT Windows 10 v1507 v1.0.0Windows

SYSTEM AND INFORMATION INTEGRITY

Windows Firewall: Prohibit notificationsMSCT Windows Server 2012 R2 DC v1.0.0Windows

SYSTEM AND INFORMATION INTEGRITY

Windows Firewall: Prohibit notificationsMSCT Windows Server 2012 R2 MS v1.0.0Windows

SYSTEM AND INFORMATION INTEGRITY