1.4 Ensure That There Are Only GCP-Managed Service Account Keys for Each Service Account | CIS Google Cloud Platform v3.0.0 L1 | GCP | IDENTIFICATION AND AUTHENTICATION |
2.3.1.3 (L1) Configure 'Accounts: Rename administrator account' | CIS Microsoft Windows 11 Stand-alone v4.0.0 L1 | Windows | IDENTIFICATION AND AUTHENTICATION |
2.3.1.4 (L1) Configure 'Accounts: Rename administrator account' | CIS Microsoft Windows Server 2016 v3.0.0 L1 MS | Windows | IDENTIFICATION AND AUTHENTICATION |
2.3.1.4 (L1) Configure 'Accounts: Rename administrator account' | CIS Microsoft Windows Server 2016 v3.0.0 L1 DC | Windows | IDENTIFICATION AND AUTHENTICATION |
2.3.1.4 (L1) Configure 'Accounts: Rename administrator account' | CIS Microsoft Windows Server 2019 Stand-alone v2.0.0 L1 MS | Windows | IDENTIFICATION AND AUTHENTICATION |
2.3.1.4 (L1) Configure 'Accounts: Rename guest account' | CIS Microsoft Windows 11 Enterprise v4.0.0 L1 BitLocker | Windows | IDENTIFICATION AND AUTHENTICATION |
2.3.1.4 (L1) Configure 'Accounts: Rename guest account' | CIS Microsoft Windows Server 2025 v1.0.0 L1 DC | Windows | IDENTIFICATION AND AUTHENTICATION |
2.3.1.4 (L1) Configure 'Accounts: Rename guest account' | CIS Microsoft Windows Server 2022 v4.0.0 L1 DC | Windows | IDENTIFICATION AND AUTHENTICATION |
2.3.1.4 (L1) Configure 'Accounts: Rename guest account' | CIS Microsoft Windows Server 2022 v4.0.0 L1 MS | Windows | IDENTIFICATION AND AUTHENTICATION |
2.3.1.5 (L1) Configure 'Accounts: Rename guest account' | CIS Microsoft Windows Server 2016 v3.0.0 L1 DC | Windows | IDENTIFICATION AND AUTHENTICATION |
2.3.1.5 (L1) Configure 'Accounts: Rename guest account' | CIS Microsoft Windows Server 2008 R2 Member Server Level 1 v3.3.1 | Windows | IDENTIFICATION AND AUTHENTICATION |
2.3.1.5 (L1) Configure 'Accounts: Rename guest account' | CIS Windows Server 2012 MS L1 v3.0.0 | Windows | IDENTIFICATION AND AUTHENTICATION |
2.3.1.5 Configure 'Accounts: Rename administrator account' | CIS Microsoft Windows Server 2019 STIG v3.0.0 L1 DC | Windows | IDENTIFICATION AND AUTHENTICATION |
2.3.1.5 Configure 'Accounts: Rename administrator account' | CIS Microsoft Windows Server 2016 STIG v3.0.0 L1 MS | Windows | IDENTIFICATION AND AUTHENTICATION |
2.3.1.5 Configure 'Accounts: Rename administrator account' | CIS Microsoft Windows Server 2016 STIG v3.0.0 L1 Domain Controller | Windows | IDENTIFICATION AND AUTHENTICATION |
2.3.1.5 Configure 'Accounts: Rename administrator account' | CIS Microsoft Windows Server 2016 STIG v3.0.0 STIG DC | Windows | IDENTIFICATION AND AUTHENTICATION |
2.3.1.5 Configure 'Accounts: Rename administrator account' | CIS Microsoft Windows Server 2019 STIG v3.0.0 L1 MS | Windows | IDENTIFICATION AND AUTHENTICATION |
2.3.1.5 Configure 'Accounts: Rename guest account' - Accounts: Rename guest account | CIS Azure Compute Microsoft Windows Server 2022 v1.0.0 L1 MS | Windows | IDENTIFICATION AND AUTHENTICATION |
2.3.1.6 Configure 'Accounts: Rename guest account' | CIS Microsoft Windows Server 2019 STIG v3.0.0 STIG MS | Windows | IDENTIFICATION AND AUTHENTICATION |
2.3.1.6 Configure 'Accounts: Rename guest account' | CIS Microsoft Windows Server 2022 STIG v2.0.0 STIG DC | Windows | IDENTIFICATION AND AUTHENTICATION |
2.3.1.6 Configure 'Accounts: Rename guest account' | CIS Microsoft Windows Server 2022 STIG v2.0.0 STIG MS | Windows | IDENTIFICATION AND AUTHENTICATION |
2.3.1.6 Configure 'Accounts: Rename guest account' | CIS Microsoft Windows Server 2016 STIG v3.0.0 L1 MS | Windows | IDENTIFICATION AND AUTHENTICATION |
2.10 Use Dual Passwords to Enable Higher Frequency Password Rotation | CIS Oracle MySQL Enterprise Edition 8.0 v1.4.0 L2 Database | MySQLDB | IDENTIFICATION AND AUTHENTICATION |
2.10 Use Dual Passwords to Enable Higher Frequency Password Rotation | CIS Oracle MySQL Community Server 8.4 v1.0.0 L2 Database | MySQLDB | IDENTIFICATION AND AUTHENTICATION |
2.10 Use Dual Passwords to Enable Higher Frequency Password Rotation | CIS Oracle MySQL Enterprise Edition 8.4 v1.0.0 L2 MySQL RDBMS | MySQLDB | IDENTIFICATION AND AUTHENTICATION |
3.7 Ensure 'PASSWORD_ROLLOVER_TIME' Is set to '0' | CIS Oracle Database 23ai v1.0.0 L1 RDBMS | OracleDB | IDENTIFICATION AND AUTHENTICATION |
4.2.6 Ensure SSH PAM is enabled | CIS Amazon Linux 2023 Server L1 v1.0.0 | Unix | IDENTIFICATION AND AUTHENTICATION |
4.5.3.1 Ensure nologin is not listed in /etc/shells | CIS Red Hat Enterprise Linux 7 v4.0.0 L2 Workstation | Unix | IDENTIFICATION AND AUTHENTICATION |
4.5.3.1 Ensure nologin is not listed in /etc/shells | CIS AlmaLinux OS 8 Server L2 v3.0.0 | Unix | IDENTIFICATION AND AUTHENTICATION |
4.5.3.1 Ensure nologin is not listed in /etc/shells | CIS Oracle Linux 7 v4.0.0 L2 Workstation | Unix | IDENTIFICATION AND AUTHENTICATION |
4.5.3.1 Ensure nologin is not listed in /etc/shells | CIS Oracle Linux 8 Server L2 v3.0.0 | Unix | IDENTIFICATION AND AUTHENTICATION |
4.5.3.1 Ensure nologin is not listed in /etc/shells | CIS Red Hat EL8 Server L2 v3.0.0 | Unix | IDENTIFICATION AND AUTHENTICATION |
4.5.3.1 Ensure nologin is not listed in /etc/shells | CIS Red Hat Enterprise Linux 7 v4.0.0 L2 Server | Unix | IDENTIFICATION AND AUTHENTICATION |
4.5.3.1 Ensure nologin is not listed in /etc/shells | CIS CentOS Linux 7 v4.0.0 L2 Server | Unix | IDENTIFICATION AND AUTHENTICATION |
4.5.6 Ensure nologin is not listed in /etc/shells | CIS Debian 10 Server L2 v2.0.0 | Unix | IDENTIFICATION AND AUTHENTICATION |
5.2 Securely Authenticate Dynamic Updates - allow-update none or localhost | CIS BIND DNS v1.0.0 L1 Authoritative Name Server | Unix | IDENTIFICATION AND AUTHENTICATION |
5.3 Securely Authenticate Update Forwarding | CIS BIND DNS v1.0.0 L1 Authoritative Name Server | Unix | IDENTIFICATION AND AUTHENTICATION |
5.3.2 Ensure user bin is secured | CIS IBM AIX 7 v1.0.0 L1 | Unix | IDENTIFICATION AND AUTHENTICATION |
5.3.4 Ensure user guest is secured | CIS IBM AIX 7 v1.0.0 L1 | Unix | IDENTIFICATION AND AUTHENTICATION |
5.3.5 Ensure user lpd is secured | CIS IBM AIX 7 v1.0.0 L1 | Unix | IDENTIFICATION AND AUTHENTICATION |
5.3.6 Ensure user nobody is secured | CIS IBM AIX 7 v1.0.0 L1 | Unix | IDENTIFICATION AND AUTHENTICATION |
5.3.8 Ensure user sys is secured | CIS IBM AIX 7 v1.0.0 L1 | Unix | IDENTIFICATION AND AUTHENTICATION |
5.4.3.1 Ensure nologin is not listed in /etc/shells | CIS Debian Linux 11 v2.0.0 L2 Workstation | Unix | IDENTIFICATION AND AUTHENTICATION |
5.4.3.1 Ensure nologin is not listed in /etc/shells | CIS Ubuntu Linux 22.04 LTS v2.0.0 L2 Server | Unix | IDENTIFICATION AND AUTHENTICATION |
7.2 Enable DNSSEC Validation - dnssec-enable | CIS BIND DNS v1.0.0 L1 Caching Only Name Server | Unix | IDENTIFICATION AND AUTHENTICATION |
18.8.3.1 Ensure 'Include command line in process creation events' is set to 'Disabled' | CIS Microsoft Windows 8.1 v2.4.1 L1 | Windows | IDENTIFICATION AND AUTHENTICATION |
49.3 (L1) Configure 'Accounts: Rename administrator account' | CIS Microsoft Intune for Windows 10 v4.0.0 L1 | Windows | IDENTIFICATION AND AUTHENTICATION |
49.4 (L1) Configure 'Accounts: Rename guest account' | CIS Microsoft Intune for Windows 10 v4.0.0 L1 | Windows | IDENTIFICATION AND AUTHENTICATION |
Allow Custom SSPs and APs to be loaded into LSASS | MSCT Windows 11 v23H2 v1.0.0 | Windows | IDENTIFICATION AND AUTHENTICATION |
Allow Custom SSPs and APs to be loaded into LSASS | MSCT Windows 11 v24H2 v1.0.0 | Windows | IDENTIFICATION AND AUTHENTICATION |