Item Search

NameAudit NamePluginCategory
1.1 Remove extraneous files and directories - /webapps/examplesCIS Apache Tomcat 8 L2 v1.1.0 MiddlewareUnix

CONFIGURATION MANAGEMENT

1.1.5 Ensure that the --insecure-port argument is set to 0CIS Kubernetes 1.8 Benchmark v1.2.0 L1Unix

CONFIGURATION MANAGEMENT

1.1.6 - MobileIron - Disable Passcode Unlock for FingerprintsMobileIron - CIS Apple iOS 8 v1.0.0 L2MDM

ACCESS CONTROL

1.1.7 - AirWatch - Disable Access to Control Center on Lock ScreenAirWatch - CIS Apple iOS 8 v1.0.0 L2MDM

ACCESS CONTROL

1.1.7 - MobileIron - Disable Access to Control Center on Lock ScreenMobileIron - CIS Apple iOS 8 v1.0.0 L2MDM

ACCESS CONTROL

1.1.7 Ensure that the --insecure-port argument is set to 0CIS Kubernetes 1.7.0 Benchmark v1.1.0 L1Unix

CONFIGURATION MANAGEMENT

1.1.9 - MobileIron - Turn off Auto-Join for all Wi-Fi networksMobileIron - CIS Apple iOS 9 v1.0.0 L2MDM

ACCESS CONTROL

1.1.11 - MobileIron - Turn Off AirDrop DiscoverabilityMobileIron - CIS Apple iOS 8 v1.0.0 L2MDM

ACCESS CONTROL

1.1.17 - AirWatch - Disable 'Unknown sources'AirWatch - CIS Google Android 4 v1.0.0 L1MDM

ACCESS CONTROL

1.1.32 Ensure that the --authorization-mode argument is set to NodeCIS Kubernetes 1.7.0 Benchmark v1.1.0 L1Unix

ACCESS CONTROL

1.2.2 - AirWatch - Enable 'Show security warnings'AirWatch - CIS Google Android 4 v1.0.0 L1MDM

ACCESS CONTROL

1.2.3 - AirWatch - Disable 'Form auto-fill'AirWatch - CIS Google Android 4 v1.0.0 L1MDM

ACCESS CONTROL

1.2.3 - AirWatch - Disable Auto Fill for Contact InformationAirWatch - CIS Apple iOS 8 v1.0.0 L2MDM

ACCESS CONTROL

1.2.3 - AirWatch - Disable Auto Fill for Contact InformationAirWatch - CIS Apple iOS 9 v1.0.0 L2MDM

ACCESS CONTROL

1.2.3 - MobileIron - Disable 'Form auto-fill' - 'Samsung SAFE'MobileIron - CIS Google Android 4 v1.0.0 L1MDM

CONFIGURATION MANAGEMENT

1.2.3.5 Set 'RPC Runtime Unauthenticated Client Restriction to Apply:' to 'Enabled:Authenticated'CIS Windows 8 L1 v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

1.2.4 - AirWatch - Disable 'Accept Cookies'AirWatch - CIS Google Android 4 v1.0.0 L2MDM

ACCESS CONTROL

1.2.5 - AirWatch - Disable Auto Fill for Credit Card InformationAirWatch - CIS Apple iOS 9 v1.0.0 L2MDM

ACCESS CONTROL

1.2.5 - MobileIron - Enable 'Block pop-ups' - 'Samsung SAFE'MobileIron - CIS Google Android 4 v1.0.0 L1MDM

ACCESS CONTROL

1.2.7 - AirWatch - Delete Saved Credit Card InformationAirWatch - CIS Apple iOS 8 v1.0.0 L2MDM

ACCESS CONTROL

1.2.7 - MobileIron - Disable 'Remember passwords' - 'Samsung SAFE'MobileIron - CIS Google Android 4 v1.0.0 L1MDM

CONFIGURATION MANAGEMENT

1.2.9 - AirWatch - Turn On Do Not TrackAirWatch - CIS Apple iOS 8 v1.0.0 L2MDM

ACCESS CONTROL

2.1.2 Disable Bluetooth 'Discoverable' mode when not pairing devicesCIS Apple OSX 10.10 Yosemite L1 v1.2.0Unix

CONFIGURATION MANAGEMENT

2.1.2 Ensure daytime services are not enabled - daytime-streamCIS Amazon Linux v2.1.0 L1Unix

CONFIGURATION MANAGEMENT

2.1.4 Ensure echo services are not enabled - echo-dgramCIS Amazon Linux v2.1.0 L1Unix

CONFIGURATION MANAGEMENT

2.1.4 Ensure echo services are not enabled - echo-streamCIS Amazon Linux v2.1.0 L1Unix

CONFIGURATION MANAGEMENT

2.1.6 Ensure rsh server is not enabled - rshCIS Amazon Linux v2.1.0 L1Unix

CONFIGURATION MANAGEMENT

2.1.9 Ensure tftp server is not enabledCIS Amazon Linux v2.1.0 L1Unix

CONFIGURATION MANAGEMENT

2.2.4 Ensure CUPS is not enabledCIS Amazon Linux v2.1.0 L1Unix

CONFIGURATION MANAGEMENT

2.2.6 Ensure LDAP server is not enabledCIS Amazon Linux v2.1.0 L1Unix

CONFIGURATION MANAGEMENT

2.2.7 Ensure NFS and RPC are not enabled - NFSCIS Amazon Linux v2.1.0 L1Unix

CONFIGURATION MANAGEMENT

2.3.16.1 Ensure 'System settings: Optional subsystems' is set to 'Defined: (blank)'CIS Windows 7 Workstation Level 1 v3.2.0Windows

CONFIGURATION MANAGEMENT

2.4.1 Disable Remote Apple EventsCIS Apple macOS 10.12 L1 v1.2.0Unix

CONFIGURATION MANAGEMENT

2.4.1 Disable Remote Apple EventsCIS Apple OSX 10.10 Yosemite L1 v1.2.0Unix

CONFIGURATION MANAGEMENT

2.4.6 Disable DVD or CD SharingCIS Apple macOS 10.12 L1 v1.2.0Unix

CONFIGURATION MANAGEMENT

2.4.8 Disable File Sharing - AppleFileServerCIS Apple macOS 10.12 L1 v1.2.0Unix

CONFIGURATION MANAGEMENT

3.1.5 Ensure that the --insecure-port argument is set to 0CIS Kubernetes 1.8 Benchmark v1.2.0 L1Unix

CONFIGURATION MANAGEMENT

3.3.3 Disable DAS discoverabilityCIS IBM DB2 9 Benchmark v3.0.1 Level 2 OS LinuxUnix

CONFIGURATION MANAGEMENT

4.2.1.5 Ensure remote rsyslog messages are only accepted on designated log hosts. - $ModLoad imtcpCIS Amazon Linux v2.1.0 L1Unix

CONFIGURATION MANAGEMENT

5.1.2 Ensure rsh server is not enabled - execCIS Debian Linux 7 L1 v1.0.0Unix

CONFIGURATION MANAGEMENT

5.1.6 Ensure telnet server is not enabledCIS Debian Linux 7 L1 v1.0.0Unix

CONFIGURATION MANAGEMENT

5.4 Ensure echo is not enabledCIS Debian Linux 7 L1 v1.0.0Unix

CONFIGURATION MANAGEMENT

5.6 Ensure ssh is not run within containersCIS Docker Community Edition v1.1.0 L1 DockerUnix

CONFIGURATION MANAGEMENT

6.2.14 Ensure no users have .rhosts filesCIS Amazon Linux v2.1.0 L1Unix

CONFIGURATION MANAGEMENT

8.4 Disable the HTTP Statistics ServerCIS BIND DNS v3.0.1 Caching Only Name ServerUnix

CONFIGURATION MANAGEMENT

8.5 Remove default databasesCIS IBM DB2 9 Benchmark v3.0.1 Level 1 OS WindowsWindows

CONFIGURATION MANAGEMENT

9.4 Remove Default DatabasesCIS IBM DB2 v10 v1.1.0 Windows OS Level 1Windows

CONFIGURATION MANAGEMENT

13.19 Check for Presence of User .forward FilesCIS Debian Linux 7 L1 v1.0.0Unix

CONFIGURATION MANAGEMENT

18.8.37.1 Ensure 'Enable RPC Endpoint Mapper Client Authentication' is set to 'Enabled'CIS Windows 7 Workstation Level 1 v3.2.0Windows

IDENTIFICATION AND AUTHENTICATION

18.8.37.2 Ensure 'Restrict Unauthenticated RPC clients' is set to 'Enabled: Authenticated'CIS Windows 7 Workstation Level 1 v3.2.0Windows

IDENTIFICATION AND AUTHENTICATION