Item Search

NameAudit NamePluginCategory
1.4.2 Ensure bootloader password is setCIS Red Hat 6 Server L1 v3.0.0Unix

CONFIGURATION MANAGEMENT

1.4.3 Ensure authentication required for single user mode - rescue.serviceCIS Oracle Linux 6 Workstation L1 v2.0.0Unix

CONFIGURATION MANAGEMENT

1.4.4 Ensure interactive boot is not enabledCIS Red Hat 6 Workstation L1 v3.0.0Unix

CONFIGURATION MANAGEMENT

3.4.4 Ensure permissions on /etc/hosts.allow are configuredCIS Ubuntu Linux 18.04 LXD Host L1 Server v1.0.0Unix

CONFIGURATION MANAGEMENT

4.1.16 Ensure system administrator actions (sudolog) are collectedCIS Ubuntu Linux 14.04 LTS Server L2 v2.1.0Unix

AUDIT AND ACCOUNTABILITY

4.2 Ensure excessive administrative privileges are revokedCIS PostgreSQL 11 DB v1.0.0PostgreSQLDB

CONFIGURATION MANAGEMENT

4.2.1.4 Ensure rsyslog default file permissions configuredCIS Red Hat 6 Workstation L1 v3.0.0Unix

AUDIT AND ACCOUNTABILITY

4.3 Ensure excessive function privileges are revokedCIS PostgreSQL 10 OS v1.0.0Unix

ACCESS CONTROL

5.1.1.1 Ensure 'EXECUTE' is revoked from 'PUBLIC' on 'Network' Packages - Network PackagesCIS Oracle Server 18c DB Traditional Auditing v1.1.0OracleDB

ACCESS CONTROL

5.1.1.1 Ensure 'EXECUTE' is revoked from 'PUBLIC' on 'Network' Packages - Network PackagesCIS Oracle Server 18c DB Unified Auditing v1.1.0OracleDB

ACCESS CONTROL

5.1.1.6 Ensure 'EXECUTE' is revoked from 'PUBLIC' on 'SQL Injection Helper' PackagesCIS Oracle Server 12c DB Unified Auditing v3.0.0OracleDB

ACCESS CONTROL

5.1.3 Ensure permissions on /etc/cron.hourly are configuredCIS Ubuntu Linux 18.04 LXD Host L1 Server v1.0.0Unix

ACCESS CONTROL

5.1.3.3 Ensure 'ALL' Is Revoked on 'Sensitive' TablesCIS Oracle Server 18c DB Traditional Auditing v1.1.0OracleDB

ACCESS CONTROL

5.2.2 Ensure 'DBA_SYS_PRIVS.%' Is Revoked from Unauthorized 'GRANTEE' with 'ADMIN_OPTION' Set to 'YES'CIS Oracle Server 12c DB Unified Auditing v3.0.0OracleDB

ACCESS CONTROL

5.2.4 Ensure 'EXECUTE ANY PROCEDURE' Is Revoked from 'DBSNMP'CIS Oracle Server 18c DB Traditional Auditing v1.1.0OracleDB

ACCESS CONTROL

5.2.7 Ensure 'AUDIT SYSTEM' Is Revoked from Unauthorized 'GRANTEE'CIS Oracle Server 12c DB Unified Auditing v3.0.0OracleDB

ACCESS CONTROL

5.2.7 Ensure 'AUDIT SYSTEM' Is Revoked from Unauthorized 'GRANTEE'CIS Oracle Server 18c DB Traditional Auditing v1.1.0OracleDB

ACCESS CONTROL

5.2.10 Ensure 'CREATE PROCEDURE' Is Revoked from Unauthorized 'GRANTEE'CIS Oracle Server 12c DB Traditional Auditing v3.0.0OracleDB

ACCESS CONTROL

5.2.11 Ensure 'ALTER SYSTEM' Is Revoked from Unauthorized 'GRANTEE'CIS Oracle Server 12c DB Unified Auditing v3.0.0OracleDB

ACCESS CONTROL

5.2.11 Ensure 'ALTER SYSTEM' Is Revoked from Unauthorized 'GRANTEE'CIS Oracle Server 18c DB Traditional Auditing v1.1.0OracleDB

ACCESS CONTROL

5.2.12 Ensure 'CREATE ANY LIBRARY' Is Revoked from Unauthorized 'GRANTEE'CIS Oracle Server 12c DB Traditional Auditing v3.0.0OracleDB

ACCESS CONTROL

5.2.12 Ensure 'CREATE ANY LIBRARY' Is Revoked from Unauthorized 'GRANTEE'CIS Oracle Server 12c DB Unified Auditing v3.0.0OracleDB

ACCESS CONTROL

5.2.14 Ensure 'GRANT ANY OBJECT PRIVILEGE' Is Revoked from Unauthorized 'GRANTEE'CIS Oracle Server 18c DB Traditional Auditing v1.1.0OracleDB

ACCESS CONTROL

5.3.4 Ensure 'DBA' Is Revoked from Unauthorized 'GRANTEE'CIS Oracle Server 12c DB Unified Auditing v3.0.0OracleDB

ACCESS CONTROL

5.7 Ensure access to the su command is restricted - pam_wheel.soCIS Red Hat 6 Workstation L1 v3.0.0Unix

ACCESS CONTROL

5.7 Ensure access to the su command is restricted - wheel group contains rootCIS Oracle Linux 6 Server L1 v2.0.0Unix

ACCESS CONTROL

6.1.13 Audit SUID executablesCIS Oracle Linux 6 Server L1 v2.0.0Unix

ACCESS CONTROL

6.1.14 Audit SGID executablesCIS Red Hat 6 Server L1 v3.0.0Unix

ACCESS CONTROL

6.5 Ensure 'Superuser' Runtime Parameters are ConfiguredCIS PostgreSQL 10 DB v1.0.0PostgreSQLDB

ACCESS CONTROL

6.5 Ensure 'Superuser' Runtime Parameters are ConfiguredCIS PostgreSQL 11 DB v1.0.0PostgreSQLDB

CONFIGURATION MANAGEMENT

6.6 Ensure 'User' Runtime Parameters are ConfiguredCIS PostgreSQL 9.6 DB v1.0.0PostgreSQLDB

ACCESS CONTROL

7.2 Ensure a replication-only user is created and used for streaming replicationCIS PostgreSQL 9.6 DB v1.0.0PostgreSQLDB

ACCESS CONTROL

Access Credential Manager as a trusted callerMSCT Windows 10 1903 v1.19.9Windows

ACCESS CONTROL

Act as part of the operating systemMSCT Windows Server 1903 MS v1.19.9Windows

ACCESS CONTROL

Act as part of the operating systemMSCT Windows Server v1909 DC v1.0.0Windows

ACCESS CONTROL

Back up files and directoriesMSCT Windows Server v1909 DC v1.0.0Windows

ACCESS CONTROL

Create a token objectMSCT Windows 10 1903 v1.19.9Windows

ACCESS CONTROL

Create permanent shared objectsMSCT Windows 10 1903 v1.19.9Windows

ACCESS CONTROL

Create permanent shared objectsMSCT Windows Server v1909 DC v1.0.0Windows

ACCESS CONTROL

Debug programsMSCT Windows 10 1809 v1.0.0Windows

ACCESS CONTROL

Force shutdown from a remote systemMSCT Windows 10 1809 v1.0.0Windows

ACCESS CONTROL

Force shutdown from a remote systemMSCT Windows 10 1903 v1.19.9Windows

ACCESS CONTROL

Impersonate a client after authenticationMSCT Windows 10 1809 v1.0.0Windows

ACCESS CONTROL

Impersonate a client after authenticationMSCT Windows Server 1903 MS v1.19.9Windows

ACCESS CONTROL

Manage auditing and security logMSCT Windows 10 1803 v1.0.0Windows

ACCESS CONTROL

Modify firmware environment valuesMSCT Windows Server v1909 DC v1.0.0Windows

ACCESS CONTROL

Perform volume maintenance tasksMSCT Windows 10 1803 v1.0.0Windows

ACCESS CONTROL

Profile single processMSCT Windows 10 1803 v1.0.0Windows

ACCESS CONTROL

Profile single processMSCT Windows Server 1903 DC v1.19.9Windows

ACCESS CONTROL

Restore files and directoriesMSCT Windows 10 1903 v1.19.9Windows

ACCESS CONTROL