Item Search

NameAudit NamePluginCategory
1.1.5.1 Ensure 'Enable Automatic Updates' is set to 'Enabled'CIS Microsoft Office Enterprise v1.2.0 L1Windows

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

1.1.5.2 Ensure 'Hide option to enable or disable updates' is set to 'Enabled'CIS Microsoft Office Enterprise v1.2.0 L1Windows

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

1.2.3 (L1) Ensure 'Allow Administrator account lockout' is set to 'Enabled' (MS only)CIS Windows Server 2012 R2 MS L1 v3.0.0Windows

ACCESS CONTROL

1.2.3 (L1) Ensure 'Allow Administrator account lockout' is set to 'Enabled' (MS only)CIS Microsoft Windows Server 2016 v4.0.0 L1 MSWindows

ACCESS CONTROL

1.19 DTOO416CIS Microsoft Office System 2016 STIG v1.0.0 CAT IIWindows

CONFIGURATION MANAGEMENT

2.2.4.7.2.4.2 (L2) Ensure 'Disable all trusted locations' is set to 'Enabled'CIS Microsoft Intune for Office v1.1.0 L2Windows

CONFIGURATION MANAGEMENT

2.3.1.1 (L1) Ensure 'Accounts: Administrator account status' is set to 'Disabled' (MS only)CIS Microsoft Windows Server 2008 R2 Member Server Level 1 v3.3.1Windows

IDENTIFICATION AND AUTHENTICATION

2.3.1.2 (L1) Ensure 'Accounts: Guest account status' is set to 'Disabled' (MS only)CIS Azure Compute Microsoft Windows Server 2022 v1.0.0 L1 MSWindows

IDENTIFICATION AND AUTHENTICATION

2.3.1.2 (L1) Ensure 'Accounts: Guest account status' is set to 'Disabled' (MS only)CIS Windows Server 2012 MS L1 v3.0.0Windows

IDENTIFICATION AND AUTHENTICATION

2.3.1.2 (L1) Ensure 'Accounts: Guest account status' is set to 'Disabled' (MS only)CIS Microsoft Windows Server 2008 Member Server Level 1 v3.3.1Windows

IDENTIFICATION AND AUTHENTICATION

2.3.1.2 (L1) Ensure 'Accounts: Guest account status' is set to 'Disabled' (MS only)CIS Windows Server 2012 R2 MS L1 v3.0.0Windows

IDENTIFICATION AND AUTHENTICATION

2.3.25.1.5 Ensure 'Send personal information' is set to 'Disabled'CIS Microsoft Office Enterprise v1.2.0 L1Windows

CONFIGURATION MANAGEMENT

2.3.25.2 (L2) Ensure 'Remove Office Presentation Service from the list of online presentation services in PowerPoint and Word' is set to 'Enabled'CIS Microsoft Intune for Office v1.1.0 L2Windows

CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION

2.3.31.1 Ensure 'Legacy format signatures' is set to 'Disabled'CIS Microsoft Office Enterprise v1.2.0 L1Windows

SYSTEM AND INFORMATION INTEGRITY

2.3.36.1.1 (L2) Ensure 'Conversion Service Options' is set to 'Enabled: Do not allow to use Microsoft Conversion Service'CIS Microsoft Intune for Office v1.1.0 L2Windows

CONFIGURATION MANAGEMENT

2.3.36.2.1 (L2) Ensure 'Online Content Options' is set to 'Enabled: Do not allow Office to connect to the Internet'CIS Microsoft Intune for Office v1.1.0 L2Windows

CONFIGURATION MANAGEMENT

2.3.38.1.1 (L2) Ensure 'Improve Proofing Tools' is set to 'Disabled'CIS Microsoft Intune for Office v1.1.0 L2Windows

CONFIGURATION MANAGEMENT

2.5.10.8.3.1 (L2) Ensure 'Read e-mail as plain text' is set to 'Enabled'CIS Microsoft Intune for Office v1.1.0 L2Windows

CONFIGURATION MANAGEMENT

2.5.10.8.3.2 (L2) Ensure 'Read signed e-mail as plain text' is set to 'Enabled'CIS Microsoft Intune for Office v1.1.0 L2Windows

CONFIGURATION MANAGEMENT

2.6.5.2 (L2) Ensure 'Disable Slide Update' is set to 'Enabled'CIS Microsoft Intune for Office v1.1.0 L2Windows

CONFIGURATION MANAGEMENT

2.6.6.6.2.3.2 (L2) Ensure 'Disable all trusted locations' is set to 'Enabled'CIS Microsoft Intune for Office v1.1.0 L2Windows

CONFIGURATION MANAGEMENT

2.11.6.2 (L2) Ensure 'Use online translation dictionaries' is set to 'Disabled'CIS Microsoft Intune for Office v1.1.0 L2Windows

CONFIGURATION MANAGEMENT

4.2 Enable Auditing of Incoming Network Connections - AUE_SOCKACCEPT : cisCIS Solaris 11.2 L1 v1.1.0Unix

AUDIT AND ACCOUNTABILITY

5.1 Ensure that WildFire file size upload limits are maximizedCIS Palo Alto Firewall 8 Benchmark L1 v1.0.0Palo_Alto

SYSTEM AND INFORMATION INTEGRITY

5.2.2.5 Ensure 'Phishing-resistant MFA strength' is required for AdministratorsCIS Microsoft 365 Foundations v7.0.0 L2 E5microsoft_azure

IDENTIFICATION AND AUTHENTICATION

6.8 Disable Host-based Authentication for Login-based Services - rlogin auth sufficient pam_rhosts_auth.so.1CIS Solaris 11.1 L1 v1.0.0Unix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

6.8 Disable Host-based Authentication for Login-based Services - rlogin auth sufficient pam_rhosts_auth.so.1CIS Solaris 11 L1 v1.1.0Unix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

6.8 Disable Host-based Authentication for Login-based Services - rsh auth sufficient pam_rhosts_auth.so.1CIS Solaris 11 L1 v1.1.0Unix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

6.8 Disable Host-based Authentication for Login-based Services - rsh auth sufficient pam_rhosts_auth.so.1CIS Solaris 11.1 L1 v1.0.0Unix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

18.2.1 (L1) Ensure LAPS AdmPwd GPO Extension / CSE is installed (MS only)CIS Microsoft Windows Server 2008 Member Server Level 1 v3.3.1Windows

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

18.2.1 (L1) Ensure LAPS AdmPwd GPO Extension / CSE is installed (MS only)CIS Microsoft Windows Server 2008 R2 Member Server Level 1 v3.3.1Windows

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

18.3.1 (L1) Ensure LAPS AdmPwd GPO Extension / CSE is installed (MS only)CIS Microsoft Windows Server 2016 v4.0.0 L1 MSWindows

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

18.3.1 (L1) Ensure LAPS AdmPwd GPO Extension / CSE is installed (MS only)CIS Windows Server 2012 MS L1 v3.0.0Windows

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

18.3.1 (L1) Ensure LAPS AdmPwd GPO Extension / CSE is installed (MS only)CIS Windows Server 2012 R2 MS L1 v3.0.0Windows

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

18.9.51.1.2 (L1) Ensure 'Enable Windows NTP Server' is set to 'Disabled' (MS only)CIS Microsoft Windows Server 2016 v4.0.0 L1 MSWindows

AUDIT AND ACCOUNTABILITY

23.1 Ensure 'Configure System Guard Launch' is set to 'Unmanaged Enables Secure Launch if supported by hardware'CIS Microsoft Intune for Windows 11 v5.0.0 L1Windows

SYSTEM AND INFORMATION INTEGRITY

Automatically activate Office with federated organization credentialsMSCT Microsoft 365 Apps for Enterprise 2112 v1.0.0Windows

CONFIGURATION MANAGEMENT

Automatically activate Office with federated organization credentialsMSCT Microsoft 365 Apps for Enterprise 2206 v1.0.0Windows

CONFIGURATION MANAGEMENT

Automatically activate Office with federated organization credentialsMicrosoft 365 Apps for Enterprise 2306 v1.0.0Windows

CONFIGURATION MANAGEMENT

Automatically activate Office with federated organization credentialsMSCT M365 Apps for enterprise 2412 v1.0.0Windows

CONFIGURATION MANAGEMENT

Automatically activate Office with federated organization credentialsMSCT M365 Apps for enterprise 2312 v1.0.0Windows

CONFIGURATION MANAGEMENT

DTOO169 - Disable dynamic caching of the form template in InfoPath eMail forms.DISA STIG Microsoft InfoPath 2013 v1r6Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO190 - Office System - The encryption type for password protected Office 97 thru Office 2003 must be set.DISA STIG Office System 2010 v1r13Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO203 - Office System - Legacy format signatures must be enabled.DISA STIG Office System 2010 v1r13Windows

CONFIGURATION MANAGEMENT

DTOO307 - Office System - Office Live Workspace Integration must be off.DISA STIG Office System 2010 v1r13Windows

CONFIGURATION MANAGEMENT

DTOO404 - The first-run prompt to sign into Office365 must be disabled.DISA STIG Microsoft Office System 2013 v2r2Windows

CONFIGURATION MANAGEMENT

DTOO405 - The ability to sign into Office365 must be disabled.DISA STIG Microsoft Office System 2013 v2r2Windows

CONFIGURATION MANAGEMENT

DTOO416 - The Office Telemetry Agent must be configured to obfuscate the file name, file path, and title of Office documents before uploading telemetry data to the shared folder.DISA STIG Microsoft Office System 2013 v2r2Windows

CONFIGURATION MANAGEMENT

DTOO426 - Word must be configured to warn when opening a document with custom XML markup.DISA STIG Microsoft Word 2013 v1r7Windows

CONFIGURATION MANAGEMENT

DTOO601 - The ability to send personal information to Office must be disabled.DISA Microsoft Office System 2016 STIG v2r5Windows

CONFIGURATION MANAGEMENT