Item Search

NameAudit NamePluginCategory
1.2.2 Ensure that the --token-auth-file parameter is not setCIS Kubernetes v1.20 Benchmark v1.0.1 L1 MasterUnix

CONFIGURATION MANAGEMENT, MAINTENANCE

1.2.2 Ensure that the --token-auth-file parameter is not setCIS Kubernetes v1.23 Benchmark v1.0.1 L1 MasterUnix

CONFIGURATION MANAGEMENT, MAINTENANCE

1.2.2 Ensure that the --token-auth-file parameter is not setCIS Kubernetes v1.24 Benchmark v1.0.0 L1 MasterUnix

CONFIGURATION MANAGEMENT, MAINTENANCE

1.2.2 Ensure that the --token-auth-file parameter is not setCIS Kubernetes v1.11.1 L1 Master NodeUnix

CONFIGURATION MANAGEMENT, MAINTENANCE

1.2.3 Ensure that the DenyServiceExternalIPs is setCIS Kubernetes v1.11.1 L1 Master NodeUnix

CONFIGURATION MANAGEMENT, MAINTENANCE

1.2.3 Limit SSH Login Attempts to 3 or lessCIS Cisco NX-OS v1.2.0 L1Cisco

CONFIGURATION MANAGEMENT, MAINTENANCE

1.2.4 Ensure Exec Timeout for Console Sessions is set for less than 10CIS Cisco NX-OS v1.2.0 L1Cisco

CONFIGURATION MANAGEMENT, MAINTENANCE

1.2.5 Ensure Exec Timeout for Remote Administrative Sessions (VTY) is set to less than 10CIS Cisco NX-OS v1.2.0 L1Cisco

CONFIGURATION MANAGEMENT, MAINTENANCE

1.3 (L1) Host hardware must enable Intel TXT, if availableCIS VMware ESXi 8.0 v1.2.0 L1VMware

CONFIGURATION MANAGEMENT, MAINTENANCE

1.4 (L1) Host hardware must enable and configure a TPM 2.0CIS VMware ESXi 8.0 v1.2.0 L1VMware

CONFIGURATION MANAGEMENT, MAINTENANCE

1.6 (L1) Host integrated hardware management controller must enable time synchronizationCIS VMware ESXi 8.0 v1.2.0 L1VMware

CONFIGURATION MANAGEMENT, MAINTENANCE

1.6.4 Ensure 'SCP protocol' is set to Enable for files transfersCIS Cisco ASA 9.x Firewall L2 v1.1.0Cisco

CONFIGURATION MANAGEMENT, MAINTENANCE

1.6.5 Ensure 'Telnet' is disabledCIS Cisco ASA 9.x Firewall L1 v1.1.0Cisco

CONFIGURATION MANAGEMENT, MAINTENANCE

1.7.1 Ensure 'HTTP source restriction' is set to an authorized IP addressCIS Cisco ASA 9.x Firewall L2 v1.1.0Cisco

CONFIGURATION MANAGEMENT, MAINTENANCE

1.9.1 Configure SNMPv3CIS Cisco NX-OS v1.2.0 L1Cisco

CONFIGURATION MANAGEMENT, MAINTENANCE

1.9.4 Ensure Read Write privileges are not configured for SNMPCIS Cisco NX-OS v1.2.0 L1Cisco

CONFIGURATION MANAGEMENT, MAINTENANCE

1.10 (L2) Host hardware must enable Intel SGX, if availableCIS VMware ESXi 8.0 v1.2.0 L2VMware

CONFIGURATION MANAGEMENT, MAINTENANCE

1.10 Use Dedicated "mgmt" Interface and VRF for Administrative FunctionsCIS Cisco NX-OS v1.2.0 L2Cisco

CONFIGURATION MANAGEMENT, MAINTENANCE

2.6.7 Audit Lockdown ModeCIS Apple macOS 13.0 Ventura v3.1.0 L2Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

2.6.7 Audit Lockdown ModeCIS Apple macOS 14.0 Sonoma v2.1.0 L2Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

2.11 (L1) Host must use sufficient entropy for cryptographic operationsCIS VMware ESXi 8.0 v1.2.0 L1Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

2.12 (L2) Host must enable volatile key destructionCIS VMware ESXi 8.0 v1.2.0 L2VMware

CONFIGURATION MANAGEMENT, MAINTENANCE

3.6.1.1 OpenSSH - InstallationCIS IBM AIX 7.1 L1 v2.1.0Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

3.24 (L1) Host must display a login banner for the DCUI and Host ClientCIS VMware ESXi 8.0 v1.2.0 L1VMware

CONFIGURATION MANAGEMENT, MAINTENANCE

3.25 (L1) Host must display a login banner for SSH connectionsCIS VMware ESXi 8.0 v1.2.0 L1VMware

CONFIGURATION MANAGEMENT, MAINTENANCE

4.3.3 daemonCIS IBM AIX 7.1 L1 v2.1.0Unix

CONFIGURATION MANAGEMENT, IDENTIFICATION AND AUTHENTICATION, MAINTENANCE

4.6.3.1 Ensure latest version of openssh is installedCIS IBM AIX 7 v1.1.0 L1Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

4.6.3.12 Ensure sshd MaxAuthTries is configuredCIS IBM AIX 7 v1.1.0 L1Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

4.6.3.13 Ensure sshd PermitEmptyPasswords is disabledCIS IBM AIX 7 v1.1.0 L1Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

4.6.3.15 Ensure sshd PermitRootLogin is disabledCIS IBM AIX 7 v1.1.0 L2Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

6.2.10 Ensure no users have .netrc filesCIS SUSE Linux Enterprise 12 v3.2.1 L1 ServerUnix

CONFIGURATION MANAGEMENT, MAINTENANCE

6.2.12 Ensure no users have .netrc filesCIS SUSE Linux Enterprise Server 11 L1 v2.1.1Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

6.2.16 Ensure no users have .netrc filesCIS Red Hat Enterprise Linux 7 STIG v2.0.0 L1 WorkstationUnix

CONFIGURATION MANAGEMENT, MAINTENANCE

6.2.16 Ensure no users have .netrc filesCIS Red Hat Enterprise Linux 7 STIG v2.0.0 L1 ServerUnix

CONFIGURATION MANAGEMENT, MAINTENANCE

6.2.16 Ensure no users have .netrc filesCIS Amazon Linux 2 STIG v2.0.0 L1 WorkstationUnix

CONFIGURATION MANAGEMENT, MAINTENANCE

6.5.4 (L1) Host SSH daemon, if enabled, must not allow host-based authenticationCIS VMware ESXi 8.0 v1.2.0 L1Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

6.5.5 (L1) Host SSH daemon, if enabled, must set a timeout count on idle sessionsCIS VMware ESXi 8.0 v1.2.0 L1Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

6.5.6 (L1) Host SSH daemon, if enabled, must set a timeout interval on idle sessionsCIS VMware ESXi 8.0 v1.2.0 L1Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

6.5.7 (L1) Host SSH daemon, if enabled, must display the system login banner before granting accessCIS VMware ESXi 8.0 v1.2.0 L1Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

6.5.8 (L1) Host SSH daemon, if enabled, must ignore .rhosts filesCIS VMware ESXi 8.0 v1.2.0 L1Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

6.5.9 (L1) Host SSH daemon, if enabled, must disable stream local forwardingCIS VMware ESXi 8.0 v1.2.0 L1Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

6.5.11 (L1) Host SSH daemon, if enabled, must not permit tunnelsCIS VMware ESXi 8.0 v1.2.0 L1Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

6.5.12 (L1) Host SSH daemon, if enabled, must not permit user environment settingsCIS VMware ESXi 8.0 v1.2.0 L1Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

8.3.3 (L1) Ensure secure protocols are used for virtual serial port accessCIS VMware ESXi 7.0 v1.5.0 L1VMware

CONFIGURATION MANAGEMENT, MAINTENANCE

8.4 (L2) VMware Tools on deployed virtual machines must prevent being recustomizedCIS VMware ESXi 8.0 v1.2.0 L2VMware

CONFIGURATION MANAGEMENT, MAINTENANCE

10.1 Ensure Web content directory is on a separate partition from the Tomcat system filesCIS Apache Tomcat 11 v1.0.0 L1Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

10.1 Ensure Web content directory is on a separate partition from the Tomcat system filesCIS Apache Tomcat 10 L1 v1.1.0Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

10.1 Ensure Web content directory is on a separate partition from the Tomcat system filesCIS Apache Tomcat 10.1 v1.1.0 L1Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

Big Sur - Verify remote disconnection of sessionsNIST macOS Big Sur v1.4.0 - All ProfilesUnix

MAINTENANCE

Catalina - Verify remote disconnection of sessionsNIST macOS Catalina v1.5.0 - All ProfilesUnix

MAINTENANCE