Item Search

NameAudit NamePluginCategory
1.1 Ensure a separate user and group exist for Cassandra - groupCIS Apache Cassandra 3.11 L2 Unix Audit v1.0.0Unix

ACCESS CONTROL

1.1.3.1.3 Set 'Accounts: Administrator account status' to 'Disabled'.CIS Windows 8 L1 v1.0.0Windows

ACCESS CONTROL

1.1.4.10 Set 'Create global objects' to 'Administrators, SERVICE, LOCAL SERVICE, NETWORK SERVICE'CIS Windows 8 L1 v1.0.0Windows

ACCESS CONTROL

1.1.4.17 Set 'Modify firmware environment values' to 'Administrators'CIS Windows 8 L1 v1.0.0Windows

ACCESS CONTROL

1.1.4.23 Set 'Restore files and directories' to 'Administrators'CIS Windows 8 L1 v1.0.0Windows

ACCESS CONTROL

1.4.3 Ensure authentication required for single user mode - rescue.serviceCIS CentOS 6 Server L1 v3.0.0Unix

CONFIGURATION MANAGEMENT

2.1 Run BIND as a non-root User - process -u namedCIS BIND DNS v1.0.0 L1 Caching Only Name ServerUnix

ACCESS CONTROL

2.2.1 (L1) Ensure 'Access Credential Manager as a trusted caller' is set to 'No One'CIS Microsoft Windows 8.1 v2.4.1 L1 BitlockerWindows

AUDIT AND ACCOUNTABILITY

2.2.1 Ensure 'Access Credential Manager as a trusted caller' is set to 'No One'CIS Windows 7 Workstation Level 1 v3.2.0Windows

ACCESS CONTROL

2.2.3 Ensure 'Act as part of the operating system' is set to 'No One'CIS Windows 7 Workstation Level 1 v3.2.0Windows

ACCESS CONTROL

2.2.7 Ensure that the certificate authorities file permissions are set to 644 or more restrictiveCIS Kubernetes 1.8 Benchmark v1.2.0 L1Unix

CONFIGURATION MANAGEMENT

2.2.21 Ensure 'Enable computer and user accounts to be trusted for delegation' is set to 'No One'CIS Windows 7 Workstation Level 1 + Bitlocker v3.2.0Windows

ACCESS CONTROL

2.2.25 Ensure 'Increase scheduling priority' is set to 'Administrators'CIS Windows 7 Workstation Level 1 v3.2.0Windows

ACCESS CONTROL

2.2.29 Configure 'Log on as a service'CIS Windows 7 Workstation Level 2 + Bitlocker v3.2.0Windows

ACCESS CONTROL

2.2.35 Ensure 'Profile system performance' is set to 'Administrators, NT SERVICE\WdiServiceHost'CIS Windows 7 Workstation Level 1 v3.2.0Windows

ACCESS CONTROL

2.2.38 Ensure 'Shut down the system' is set to 'Administrators, Users'CIS Windows 7 Workstation Level 1 v3.2.0Windows

ACCESS CONTROL

2.2.38 Ensure 'Shut down the system' is set to 'Administrators, Users'CIS Windows 7 Workstation Level 1 + Bitlocker v3.2.0Windows

ACCESS CONTROL

3.2.1.13 Ensure 'Allow installing configuration profiles' is set to 'Disabled'AirWatch - CIS Apple iOS 13 and iPadOS 13 Institution Owned L1MDM

CONFIGURATION MANAGEMENT

3.2.1.13 Ensure 'Allow installing configuration profiles' is set to 'Disabled'MobileIron - CIS Apple iOS 13 and iPadOS 13 Institution Owned L1MDM

CONFIGURATION MANAGEMENT

3.2.1.14 Ensure 'Allow installing configuration profiles' is set to 'Disabled'AirWatch - CIS Apple iOS 14 and iPadOS 14 Institution Owned L1MDM

CONFIGURATION MANAGEMENT

4.1.16 Ensure system administrator actions (sudolog) are collectedCIS Amazon Linux v2.1.0 L2Unix

AUDIT AND ACCOUNTABILITY

4.2.1.4 Ensure rsyslog default file permissions configuredCIS Distribution Independent Linux Server L1 v2.0.0Unix

CONFIGURATION MANAGEMENT

5.2.19 Ensure SSH warning banner is configuredCIS Distribution Independent Linux Server L1 v2.0.0Unix

CONFIGURATION MANAGEMENT

5.6 Ensure root login is restricted to system consoleCIS CentOS 6 Server L1 v3.0.0Unix

CONFIGURATION MANAGEMENT

5.7 Ensure access to the su command is restricted - pam_wheel.soCIS CentOS 6 Server L1 v3.0.0Unix

ACCESS CONTROL

5.7 Ensure access to the su command is restricted - wheel group contains rootCIS CentOS 6 Workstation L1 v3.0.0Unix

ACCESS CONTROL

6.1.13 Audit SUID executablesCIS CentOS 6 Workstation L1 v3.0.0Unix

ACCESS CONTROL

6.2.5 Ensure root is the only UID 0 accountCIS Debian 9 Workstation L1 v1.0.1Unix

CONFIGURATION MANAGEMENT

6.2.6 Ensure root is the only UID 0 accountCIS CentOS 6 Server L1 v3.0.0Unix

ACCESS CONTROL

Access Credential Manager as a trusted callerMSCT Windows Server v20H2 MS v1.0.0Windows

ACCESS CONTROL

Access Credential Manager as a trusted callerMSCT Windows 10 v2004 v1.0.0Windows

ACCESS CONTROL

Act as part of the operating systemMSCT Windows 10 1909 v1.0.0Windows

ACCESS CONTROL

Create a pagefileMSCT Windows 10 1909 v1.0.0Windows

ACCESS CONTROL

Create a token objectMSCT Windows 10 v20H2 v1.0.0Windows

ACCESS CONTROL

Create global objectsMSCT Windows Server v20H2 MS v1.0.0Windows

ACCESS CONTROL

Debug programsMSCT Windows 10 v21H2 v1.0.0Windows

ACCESS CONTROL

Force shutdown from a remote systemMSCT Windows Server v20H2 DC v1.0.0Windows

ACCESS CONTROL

Force shutdown from a remote systemMSCT Windows 10 v21H2 v1.0.0Windows

ACCESS CONTROL

Impersonate a client after authenticationMSCT Windows 10 1909 v1.0.0Windows

ACCESS CONTROL

Load and unload device driversMSCT Windows 10 1909 v1.0.0Windows

ACCESS CONTROL

Load and unload device driversMSCT Windows 10 v2004 v1.0.0Windows

ACCESS CONTROL

Load and unload device driversMSCT Windows 10 v21H2 v1.0.0Windows

ACCESS CONTROL

Manage auditing and security logMSCT Windows 10 v2004 v1.0.0Windows

ACCESS CONTROL

Modify firmware environment valuesMSCT Windows Server v20H2 DC v1.0.0Windows

ACCESS CONTROL

Modify firmware environment valuesMSCT Windows 10 1909 v1.0.0Windows

ACCESS CONTROL

Modify firmware environment valuesMSCT Windows 10 v2004 v1.0.0Windows

ACCESS CONTROL

Modify firmware environment valuesMSCT Windows 10 v21H2 v1.0.0Windows

ACCESS CONTROL

Profile single processMSCT Windows 10 1909 v1.0.0Windows

ACCESS CONTROL

Profile single processMSCT Windows 10 v21H2 v1.0.0Windows

ACCESS CONTROL

Restore files and directoriesMSCT Windows Server v20H2 MS v1.0.0Windows

ACCESS CONTROL