Item Search

NameAudit NamePluginCategory
1.1.3.1 Configure AuthorizationCIS Cisco IOS XR 7.x v1.0.0 L2Cisco

ACCESS CONTROL

1.1.5 (L1) Ensure 'Password must meet complexity requirements' is set to 'Enabled'CIS Microsoft Windows 11 Stand-alone v4.0.0 L1Windows

IDENTIFICATION AND AUTHENTICATION

1.1.5 (L1) Ensure 'Password must meet complexity requirements' is set to 'Enabled'CIS Microsoft Windows 10 Stand-alone v3.0.0 L1 BLWindows

IDENTIFICATION AND AUTHENTICATION

1.1.9 - MobileIron - Disable 'Location Services'MobileIron - CIS Google Android 4 v1.0.0 L2MDM

ACCESS CONTROL

1.2.1 Ensure the container host has been HardenedCIS Docker v1.7.0 L1 Docker - LinuxUnix

CONFIGURATION MANAGEMENT

2.1.1 Backup Policy in PlaceCIS MySQL 5.7 Enterprise Linux OS L1 v2.0.0Unix

CONTINGENCY PLANNING

2.1.1 Backup Policy in PlaceCIS MySQL 5.7 Enterprise Windows OS L1 v2.0.0Windows

CONTINGENCY PLANNING

2.1.1 Backup Policy in PlaceCIS MySQL 5.6 Community Database L1 v2.0.0MySQLDB

CONTINGENCY PLANNING

2.1.1 Backup Policy in PlaceCIS MySQL 5.6 Community Windows OS L1 v2.0.0Windows

CONTINGENCY PLANNING

2.1.1 Backup Policy in PlaceCIS MySQL 5.6 Community Linux OS L1 v2.0.0Unix

CONTINGENCY PLANNING

2.1.1 Backup Policy in PlaceCIS MySQL 5.6 Enterprise Windows OS L1 v2.0.0Windows

CONTINGENCY PLANNING

2.1.1 Backup Policy in PlaceCIS MySQL 5.7 Community Windows OS L1 v2.0.0Windows

CONTINGENCY PLANNING

2.1.1 Backup Policy in PlaceCIS MySQL 5.6 Enterprise Database L1 v2.0.0MySQLDB

CONTINGENCY PLANNING

2.1.1 Backup Policy in PlaceCIS MySQL 5.7 Community Linux OS L1 v2.0.0Unix

CONTINGENCY PLANNING

2.2.17 Ensure 'PDB_OS_CREDENTIAL' is NOT nullCIS Oracle Server 18c DB Unified Auditing v1.1.0OracleDB

ACCESS CONTROL

2.3 Establish a Secure Baseline - Make sure that application/print/rfc1179:default is only limited to local connectionsCIS Solaris 10 L1 v5.2Unix
2.3.1 Ensure 'ENCRYPTION_SERVER' Is Set to 'REQUIRED'CIS Oracle Server 19c Linux v1.2.0Unix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION

2.3.1 Ensure 'ENCRYPTION_SERVER' Is Set to 'REQUIRED'CIS Oracle Server 19c Windows v1.2.0Windows

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION

2.3.1.1 (L1) Ensure 'Accounts: Block Microsoft accounts' is set to 'Users can't add or log on with Microsoft accounts'CIS Microsoft Windows 10 Enterprise v4.0.0 L1 BL NGWindows

ACCESS CONTROL

2.3.2 Ensure 'SQLNET.CRYPTO_CHECKSUM_SERVER' Is Set to 'REQUIRED'CIS Oracle Server 18c Windows v1.1.0Windows

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION

3.5 Ensure 'PASSWORD_VERIFY_FUNCTION' Is Set For All ProfilesCIS Oracle Database 23ai v1.0.0 L1 RDBMSOracleDB

IDENTIFICATION AND AUTHENTICATION

4.01 init.ora - '_trace_files_public = FALSE'CIS v1.1.0 Oracle 11g OS L1Unix

ACCESS CONTROL

4.5 Ensure 'SYS.USER$MIG' Has Been DroppedCIS Oracle Server 12c DB Traditional Auditing v3.0.0OracleDB

IDENTIFICATION AND AUTHENTICATION

4.5 Ensure 'SYS.USER$MIG' Has Been DroppedCIS Oracle Server 19c DB Traditional Auditing v1.2.0OracleDB

IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION

4.5 Ensure 'SYS.USER$MIG' Has Been DroppedCIS Oracle Server 19c DB Unified Auditing v1.2.0OracleDB

IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION

5.1.1.2 Ensure 'EXECUTE' is revoked from 'PUBLIC' on "File System" PackagesCIS Oracle Server 19c DB Unified Auditing v1.2.0OracleDB

ACCESS CONTROL, MEDIA PROTECTION

17.4.3 Ensure 'Audit Directory Service Access' is set to include 'Success and Failure' (STIG DC only)CIS Microsoft Windows Server 2019 STIG v3.0.0 STIG DCWindows

AUDIT AND ACCOUNTABILITY

18.9.69.3 (L2) Ensure 'Turn off the Store application' is set to 'Enabled'CIS Microsoft Windows 8.1 v2.4.1 L2 BitlockerWindows

CONFIGURATION MANAGEMENT

18.10.75.2.2 Ensure 'Configure Windows Defender SmartScreen' is set to 'Enabled' (STIG only)CIS Microsoft Windows Server 2016 STIG v3.0.0 STIG MSWindows

SYSTEM AND INFORMATION INTEGRITY

18.10.75.2.2 Ensure 'Configure Windows Defender SmartScreen' is set to 'Enabled' (STIG only)CIS Microsoft Windows Server 2016 STIG v3.0.0 STIG DCWindows

SYSTEM AND INFORMATION INTEGRITY

BIND-9X-001321 - The core BIND 9.x server files must be group owned by a group designated for DNS administration only.DISA BIND 9.x STIG v2r3Unix

CONFIGURATION MANAGEMENT

Brocade - minimum length of the password must be set to 9Tenable Best Practices Brocade FabricOSBrocade

IDENTIFICATION AND AUTHENTICATION

CIS_Azure_Compute_Microsoft_Windows_Server_2019_v1.0.0_NG_MS.audit from CIS Azure Compute Microsoft Windows Server 2019 Benchmark v1.0.0CIS Azure Compute Microsoft Windows Server 2019 v1.0.0 NG MSWindows
CIS_Microsoft_Windows_11_Stand-alone_v4.0.0_BL.audit from CIS Microsoft Windows 11 Stand-alone Benchmark v4.0.0CIS Microsoft Windows 11 Stand-alone v4.0.0 BLWindows
CIS_Microsoft_Windows_11_Stand-alone_v4.0.0_L2_BL.audit from CIS Microsoft Windows 11 Stand-alone Benchmark v4.0.0CIS Microsoft Windows 11 Stand-alone v4.0.0 L2 BLWindows
CIS_Microsoft_Windows_Server_2019_STIG_v3.0.0_Next_Generation_Windows_Security_-_Member_Server.audit from CIS Microsoft Windows Server 2019 STIG Benchmark v3.0.0CIS Microsoft Windows Server 2019 STIG v3.0.0 NG MSWindows
CIS_Microsoft_Windows_Server_2022_STIG_v2.0.0_Next_Generation_Windows_Security_-_Member_Server.audit from CIS Microsoft Windows Server 2022 STIG Benchmark v2.0.0CIS Microsoft Windows Server 2022 STIG v2.0.0 NG MSWindows
CIS_MS_Windows_Server_2008_R2_DC_Level_2_v3.3.1.audit from CIS MS Windows Server 2008 R2 Benchmark v3.3.1CIS Microsoft Windows Server 2008 R2 Domain Controller Level 2 v3.3.1Windows
CIS_MS_Windows_Server_2008_R2_MS_Level_2_v3.3.1.audit from CIS MS Windows Server 2008 R2 Benchmark v3.3.1CIS Microsoft Windows Server 2008 R2 Member Server Level 2 v3.3.1Windows
CIS_MS_Windows_Server_2008_v3.3.1_L1_DC.audit from CIS MS Windows Server 2008 non-R2 Benchmark v3.3.1CIS Microsoft Windows Server 2008 Domain Controller Level 1 v3.3.1Windows
CIS_MS_Windows_Server_2008_v3.3.1_L2_DC.audit from CIS MS Windows Server 2008 non-R2 Benchmark v3.3.1CIS Microsoft Windows Server 2008 Domain Controller Level 2 v3.3.1Windows
Monterey - Set SSH Active Server Alive Maximum to ZeroNIST macOS Monterey v1.0.0 - 800-53r5 ModerateUnix

SYSTEM AND COMMUNICATIONS PROTECTION

Monterey - Set SSH Active Server Alive Maximum to ZeroNIST macOS Monterey v1.0.0 - 800-53r4 ModerateUnix

SYSTEM AND COMMUNICATIONS PROTECTION

Monterey - Set SSH Active Server Alive Maximum to ZeroNIST macOS Monterey v1.0.0 - 800-53r5 HighUnix

SYSTEM AND COMMUNICATIONS PROTECTION

O19C-00-011200 - Network access to Oracle Database must be restricted to authorized personnel.DISA Oracle Database 19c STIG v1r1 UnixUnix

CONFIGURATION MANAGEMENT

O19C-00-011200 - Network access to Oracle Database must be restricted to authorized personnel.DISA Oracle Database 19c STIG v1r1 WindowsWindows

CONFIGURATION MANAGEMENT

O112-BP-025101 - The directory assigned to the AUDIT_FILE_DEST parameter must be protected from unauthorized access and must be stored in a dedicated directory or disk partition separate from software or other application files.DISA STIG Oracle 11.2g v2r5 DatabaseOracleDB

CONFIGURATION MANAGEMENT

O112-C2-002700 - The DBMS must enforce approved authorizations for logical access to the system in accordance with applicable policy.DISA STIG Oracle 11.2g v2r5 DatabaseOracleDB

ACCESS CONTROL

SQL6-D0-008300 - Confidentiality of information during transmission is controlled through the use of an approved TLS version.DISA STIG SQL Server 2016 Instance OS Audit v3r4Windows

IDENTIFICATION AND AUTHENTICATION

WN10-00-000040 - Windows 10 systems must be maintained at a supported servicing level.DISA Microsoft Windows 10 STIG v3r4Windows

CONFIGURATION MANAGEMENT