Item Search

NameAudit NamePluginCategory
1.2 Ensure Snowflake SCIM integration is configured to automatically provision and deprovision users and groups (i.e. roles)CIS Snowflake Foundations v1.0.0 L2Snowflake

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY

1.3.3 Ensure that the --use-service-account-credentials argument is set to trueCIS Kubernetes v1.11.1 L1 Master NodeUnix

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, IDENTIFICATION AND AUTHENTICATION

2.2 Give the BIND User Account an Invalid ShellCIS BIND DNS v1.0.0 L1 Authoritative Name ServerUnix

ACCESS CONTROL

2.2 Give the BIND User Account an Invalid ShellCIS BIND DNS v1.0.0 L1 Caching Only Name ServerUnix

ACCESS CONTROL

3.6 Review Superuser/Admin Roles - dbAdminAnyDatabaseCIS MongoDB 3.2 Database Audit L2 v1.0.0MongoDB

ACCESS CONTROL

3.6 Review Superuser/Admin Roles - dbOwnerCIS MongoDB 3.2 Database Audit L2 v1.0.0MongoDB

ACCESS CONTROL

3.6 Review Superuser/Admin Roles - readWriteAnyDatabaseCIS MongoDB 3.2 Database Audit L2 v1.0.0MongoDB

ACCESS CONTROL

4.2 Ensure All Sample Data And Users Have Been RemovedCIS Oracle Server 12c DB Unified Auditing v3.0.0OracleDB

ACCESS CONTROL

4.2 Ensure All Sample Data And Users Have Been RemovedCIS Oracle Server 18c DB Unified Auditing v1.1.0OracleDB

ACCESS CONTROL

5.2.5 Minimize the admission of containers with allowPrivilegeEscalationCIS Red Hat OpenShift Container Platform v1.7.0 L1OpenShift

ACCESS CONTROL, SYSTEM AND INFORMATION INTEGRITY

5.2.6 Minimize the admission of root containersCIS Red Hat OpenShift Container Platform v1.7.0 L2OpenShift

ACCESS CONTROL, SYSTEM AND INFORMATION INTEGRITY

5.5 Ensure the Default CGI Content printenv Script Is RemovedCIS Apache HTTP Server 2.2 L1 v3.6.0Unix

ACCESS CONTROL

5.6 Ensure the Default CGI Content test-cgi Script Is RemovedCIS Apache HTTP Server 2.2 L1 v3.6.0Unix

ACCESS CONTROL

5.6 Ensure the Default CGI Content test-cgi Script Is RemovedCIS Apache HTTP Server 2.2 L1 v3.6.0 MiddlewareUnix

ACCESS CONTROL

18.9.7.1.2 (L1) Ensure 'Apply layered order of evaluation for Allow and Prevent device installation policies across all device match criteria' is set to 'Enabled'CIS Microsoft Windows 10 EMS Gateway v3.0.0 L1Windows

ACCESS CONTROL, MEDIA PROTECTION

Back up files and directoriesMSCT Windows Server 2019 DC v1.0.0Windows

ACCESS CONTROL

Create a pagefileMSCT Windows Server 2016 MS v1.0.0Windows

ACCESS CONTROL

Create a pagefileMSCT Windows Server v20H2 DC v1.0.0Windows

ACCESS CONTROL

Create a token objectMSCT Windows Server 2016 DC v1.0.0Windows

ACCESS CONTROL

Create a token objectMSCT Windows Server 2016 MS v1.0.0Windows

ACCESS CONTROL

Create a token objectMSCT Windows Server 2019 MS v1.0.0Windows

ACCESS CONTROL

Create global objectsMSCT Windows Server 2016 DC v1.0.0Windows

ACCESS CONTROL

Create global objectsMSCT Windows Server v20H2 DC v1.0.0Windows

ACCESS CONTROL

Create permanent shared objectsMSCT Windows Server 2019 DC v1.0.0Windows

ACCESS CONTROL

Create permanent shared objectsMSCT Windows Server 2019 MS v1.0.0Windows

ACCESS CONTROL

Create permanent shared objectsMSCT Windows Server v20H2 DC v1.0.0Windows

ACCESS CONTROL

Debug programsMSCT Windows Server 2012 R2 MS v1.0.0Windows

ACCESS CONTROL

Debug programsMSCT Windows Server 2016 DC v1.0.0Windows

ACCESS CONTROL

Debug programsMSCT Windows Server 2016 MS v1.0.0Windows

ACCESS CONTROL

Deny log on locallyMSCT Windows Server 2016 MS v1.0.0Windows

ACCESS CONTROL

Deny log on through Remote Desktop ServicesMSCT Windows Server 2012 R2 MS v1.0.0Windows

ACCESS CONTROL

Deny log on through Remote Desktop ServicesMSCT Windows Server 2019 MS v1.0.0Windows

ACCESS CONTROL

Enable computer and user accounts to be trusted for delegationMSCT Windows Server 2016 MS v1.0.0Windows

ACCESS CONTROL

Impersonate a client after authenticationMSCT Windows Server 2012 R2 MS v1.0.0Windows

ACCESS CONTROL

Lock pages in memoryMSCT Windows Server 2019 DC v1.0.0Windows

ACCESS CONTROL

Lock pages in memoryMSCT Windows Server 2019 MS v1.0.0Windows

ACCESS CONTROL

Manage auditing and security logMSCT Windows Server 2019 MS v1.0.0Windows

ACCESS CONTROL

Modify firmware environment valuesMSCT Windows Server 2016 DC v1.0.0Windows

ACCESS CONTROL

Modify firmware environment valuesMSCT Windows Server 2019 DC v1.0.0Windows

ACCESS CONTROL

Modify firmware environment valuesMSCT Windows Server 2019 MS v1.0.0Windows

ACCESS CONTROL

Network access: Let Everyone permissions apply to anonymous usersMSCT Windows 10 v1507 v1.0.0Windows

ACCESS CONTROL

Network access: Restrict anonymous access to Named Pipes and SharesMSCT Windows Server v20H2 MS v1.0.0Windows

ACCESS CONTROL

Network access: Restrict anonymous access to Named Pipes and SharesMSCT Windows Server 1903 DC v1.19.9Windows

ACCESS CONTROL

Network access: Restrict anonymous access to Named Pipes and SharesMSCT Windows Server v2004 DC v1.0.0Windows

ACCESS CONTROL

Network access: Restrict anonymous access to Named Pipes and SharesMSCT Windows Server 2012 R2 DC v1.0.0Windows

ACCESS CONTROL

Profile single processMSCT Windows Server 2016 MS v1.0.0Windows

ACCESS CONTROL

Replace a process level tokenMSCT Windows Server 2012 R2 MS v1.0.0Windows

ACCESS CONTROL

Restore files and directoriesMSCT Windows Server 2016 DC v1.0.0Windows

ACCESS CONTROL

Restore files and directoriesMSCT Windows Server 2019 MS v1.0.0Windows

ACCESS CONTROL

Restore files and directoriesMSCT Windows Server v20H2 DC v1.0.0Windows

ACCESS CONTROL