Item Search

NameAudit NamePluginCategory
1.2 Review the default loginCIS Sybase 15.0 L1 OS Windows v1.1.0Windows

ACCESS CONTROL

1.3 Account Anti-riot AttackTenable ZTE ROSNG Best PracticesZTE_ROSNG
1.3 Account Anti-riot AttackTenable ZTE JINOSZTE_JINOS

ACCESS CONTROL

1.4 SNMP Security - a) SNMP Community SecurityTenable ZTE ROSNG Best PracticesZTE_ROSNG
1.4 SNMP Security - b) SNMP serverTenable ZTE JINOSZTE_JINOS

SYSTEM AND COMMUNICATIONS PROTECTION

1.4 SNMP Security - c) SNMP Security Protection FunctionTenable ZTE JINOSZTE_JINOS

SYSTEM AND COMMUNICATIONS PROTECTION

1.5 FTP/SFTP Access Authorization - login-type-allowedTenable ZTE ROSNG Best PracticesZTE_ROSNG
1.5 FTP/SFTP Access Authorization - sftp top-directoryTenable ZTE ROSNG Best PracticesZTE_ROSNG
1.6 Support Web Access Security - a) ciphersuiteTenable ZTE ROSNG Best PracticesZTE_ROSNG
1.7 Log AuditingTenable ZTE ROSNG Best PracticesZTE_ROSNG

AUDIT AND ACCOUNTABILITY

1.8 SSH Strong Algorithm - c) Disable encryption aes128-cbcTenable ZTE ROSNG Best PracticesZTE_ROSNG
1.8 SSH Strong Algorithm - e) Disable encryption aes256-cbcTenable ZTE JINOSZTE_JINOS

SYSTEM AND COMMUNICATIONS PROTECTION

1.8 SSH Strong Algorithm - f) Disable encryption blowfish-cbcTenable ZTE ROSNG Best PracticesZTE_ROSNG
1.8 SSH Strong Algorithm - g) Disable hmac md5Tenable ZTE ROSNG Best PracticesZTE_ROSNG
1.8 SSH Strong Algorithm - j) Disable diffie-hellman group1-sha1Tenable ZTE ROSNG Best PracticesZTE_ROSNG
1.9 SSL Strong Algorithm - a) VersionTenable ZTE JINOSZTE_JINOS

SYSTEM AND COMMUNICATIONS PROTECTION

1.9 SSL Strong Algorithm - d) renegotiateTenable ZTE ROSNG Best PracticesZTE_ROSNG
1.9 SSL Strong Algorithm - d) renegotiateTenable ZTE JINOSZTE_JINOS

CONFIGURATION MANAGEMENT

1.40 CISC-ND-001410CIS Cisco IOS Switch NDM STIG v1.1.0 CAT IICisco

CONFIGURATION MANAGEMENT, CONTINGENCY PLANNING

2.1 Protection Policy for the CPS Control EngineTenable ZTE JINOSZTE_JINOS

SYSTEM AND COMMUNICATIONS PROTECTION

2.2 NTP Security Protection - a) Enable NTPTenable ZTE JINOSZTE_JINOS

AUDIT AND ACCOUNTABILITY

2.2 NTP Security Protection - b) NTP access-groupTenable ZTE JINOSZTE_JINOS

SYSTEM AND COMMUNICATIONS PROTECTION

2.2 NTP Security Protection - c) NTP Auth-key MD5 or KeychainTenable ZTE ROSNG Best PracticesZTE_ROSNG

AUDIT AND ACCOUNTABILITY

2.3 Disable the Proxy ARP Function - a) No proxyTenable ZTE ROSNG Best PracticesZTE_ROSNG
2.3 Disable the Proxy ARP Function - b) No inter-vlan-proxyTenable ZTE ROSNG Best PracticesZTE_ROSNG
2.3 Ensure that "Fallback to local" option is disabled for Remote Authentication SettingsCIS F5 Networks v1.0.0 L2F5

CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION

2.4 Disable the IP Unreachable FunctionTenable ZTE JINOSZTE_JINOS

CONFIGURATION MANAGEMENT

2.5 Product Default BannerTenable ZTE ROSNG Best PracticesZTE_ROSNG
2.5 Product Default BannerTenable ZTE JINOSZTE_JINOS

ACCESS CONTROL

2.7 Lock Out Accounts if Not Currently in UseCIS MariaDB 10.6 on Linux L2 v1.1.0Unix

ACCESS CONTROL

2.7 Lock Out Accounts if Not Currently in UseCIS MariaDB 10.6 Database L2 v1.1.0MySQLDB

ACCESS CONTROL

2.8 Lock Out Accounts if Not Currently in UseCIS MySQL 5.7 Enterprise Database L2 v2.0.0MySQLDB

ACCESS CONTROL

2.8 Lock Out Accounts if Not Currently in UseCIS MySQL 5.7 Community Database L2 v2.0.0MySQLDB

ACCESS CONTROL

2.11 Ensure the default cgroup usage has been confirmedCIS Docker v1.8.0 L2 OS LinuxUnix

SYSTEM AND SERVICES ACQUISITION

3.2 Authentication and Verification of ISIS Routing Protocols - authentication-type hmac-md5/authentication-keychainTenable ZTE ROSNG Best PracticesZTE_ROSNG
3.3 Authentication and Verification of BGP Routing ProtocolsTenable ZTE JINOSZTE_JINOS

IDENTIFICATION AND AUTHENTICATION

4.2 Ensure excessive administrative privileges are revokedCIS PostgreSQL 10 DB v1.0.0PostgreSQLDB

ACCESS CONTROL

4.3 Ensure excessive administrative privileges are revokedCIS PostgreSQL 18 v1.0.0 L1 Database PostgreSQLDBPostgreSQLDB

CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION

4.3 Ensure excessive administrative privileges are revokedCIS PostgreSQL 14 DB v 1.3.0PostgreSQLDB

CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION

4.3 Ensure excessive administrative privileges are revokedCIS PostgreSQL 15 v1.2.0 L1 OS Linux PostgreSQLDBPostgreSQLDB

CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION

9.6 Ensure Timeout Limits for the Request Body Are Set Properly - RequestReadTimeoutCIS Apache HTTP Server 2.2 L2 v3.6.0Unix

CONFIGURATION MANAGEMENT

IIST-SI-000262 - Interactive scripts on the IIS 10.0 web server must have restrictive access controls.DISA Microsoft IIS 10.0 Site STIG v2r16Windows

CONFIGURATION MANAGEMENT

IISW-SI-000262 - Interactive scripts on the IIS 8.5 web server must have restrictive access controls.DISA IIS 8.5 Site v2r9Windows

CONFIGURATION MANAGEMENT

SQL2-00-001900 - SQL Server must automatically audit account modification - 'Event ID 103'DISA STIG SQL Server 2012 DB Instance Security v1r20MS_SQLDB

ACCESS CONTROL

SQL2-00-001900 - SQL Server must automatically audit account modification - 'Event ID 104'DISA STIG SQL Server 2012 DB Instance Security v1r20MS_SQLDB

ACCESS CONTROL

SQL2-00-001900 - SQL Server must automatically audit account modification - 'Event ID 105'DISA STIG SQL Server 2012 DB Instance Security v1r20MS_SQLDB

ACCESS CONTROL

SQL2-00-001900 - SQL Server must automatically audit account modification - 'Event ID 107'DISA STIG SQL Server 2012 DB Instance Security v1r20MS_SQLDB

ACCESS CONTROL

SQL2-00-001900 - SQL Server must automatically audit account modification - 'Event ID 108'DISA STIG SQL Server 2012 DB Instance Security v1r20MS_SQLDB

ACCESS CONTROL

SQL2-00-001900 - SQL Server must automatically audit account modification - 'Event ID 111'DISA STIG SQL Server 2012 DB Instance Security v1r20MS_SQLDB

ACCESS CONTROL

vNetwork : verify-vlan-idVMWare vSphere 5.X Hardening GuideVMware