Item Search

NameAudit NamePluginCategory
2.1.1 Ensure 'SECURE_CONTROL_<listener_name>' Is Set In 'listener.ora'CIS Oracle Server 11g R2 Unix v2.2.0Unix

ACCESS CONTROL

2.1.9 Enable Global Strong EncryptionCIS Fortigate 7.0.x v1.4.0 L2FortiGate

ACCESS CONTROL

4.1 Ensure devices without a compliance policy are marked 'not compliant'CIS Microsoft 365 Foundations v7.0.0 L1 E3microsoft_azure

ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

5.1.1 Ensure sshd crypto_policy is not setCIS Rocky Linux 8 v3.0.0 L1 WorkstationUnix

ACCESS CONTROL

5.1.1 Ensure sshd crypto_policy is not setCIS AlmaLinux OS 8 v4.0.0 L1 ServerUnix

ACCESS CONTROL

5.1.1 Ensure sshd crypto_policy is not setCIS Oracle Linux 8 v4.0.0 L1 WorkstationUnix

ACCESS CONTROL

5.1.12 Ensure sshd KexAlgorithms is configuredCIS Red Hat Enterprise Linux 10 v1.0.1 L1 ServerUnix

ACCESS CONTROL

5.1.12 Ensure sshd KexAlgorithms is configuredCIS Red Hat Enterprise Linux 10 v1.0.1 L1 WorkstationUnix

ACCESS CONTROL

5.2.2.9 Ensure a managed device is required for authenticationCIS Microsoft 365 Foundations v7.0.0 L1 E5microsoft_azure

ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

5.2.2.9 Ensure a managed device is required for authenticationCIS Microsoft 365 Foundations v7.0.0 L1 E3microsoft_azure

ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

5.2.2.10 Ensure a managed device is required to register security informationCIS Microsoft 365 Foundations v7.0.0 L1 E5microsoft_azure

ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

5.2.2.10 Ensure a managed device is required to register security informationCIS Microsoft 365 Foundations v7.0.0 L1 E3microsoft_azure

ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

6.1.9 Disable SSH root Login - Check if PermitRootLogin is set to no and not commented for the server.CIS Solaris 10 L1 v5.2Unix

ACCESS CONTROL

6.6 Disable root login for SSH - PermitRootLogin = noCIS Solaris 11 L1 v1.1.0Unix

ACCESS CONTROL

9.3.8 Disable SSH Root LoginCIS Debian Linux 7 L1 v1.0.0Unix

ACCESS CONTROL

18.9.97.2.2 Ensure 'Allow remote server management through WinRM' is set to 'Disabled'CIS Windows 7 Workstation Level 2 v3.2.0Windows

ACCESS CONTROL

18.9.97.2.2 Ensure 'Allow remote server management through WinRM' is set to 'Disabled'CIS Windows 7 Workstation Level 2 + Bitlocker v3.2.0Windows

ACCESS CONTROL

Allow Basic authentication - Client - AllowBasicMSCT Windows 11 v24H2 v1.0.0Windows

ACCESS CONTROL

Allow Basic authentication - Client - AllowBasicMSCT Windows Server 2025 MS v2506 v1.0.0Windows

ACCESS CONTROL

Allow Basic authentication - Service - AllowBasicMSCT Windows 11 v23H2 v1.0.0Windows

ACCESS CONTROL

Allow Basic authentication - Service - AllowBasicMSCT Windows 11 v1.0.0Windows

ACCESS CONTROL

Allow Basic authentication - Service - AllowBasicMSCT Windows Server 2025 DC v2506 v1.0.0Windows

ACCESS CONTROL

Allow Basic authentication - Service - AllowBasicMSCT Windows 11 v24H2 v1.0.0Windows

ACCESS CONTROL

Allow Basic authentication - Service - AllowBasicMSCT MSCT Windows Server 2022 DC v1.0.0Windows

ACCESS CONTROL

Allow Basic authentication - Service - AllowBasicMSCT Windows Server 2022 v1.0.0Windows

ACCESS CONTROL

Allow unencrypted traffic - Client - AllowUnencryptedTrafficMSCT Windows 10 v21H1 v1.0.0Windows

ACCESS CONTROL

Allow unencrypted traffic - Client - AllowUnencryptedTrafficMSCT Windows Server 2025 DC v2506 v1.0.0Windows

ACCESS CONTROL

Allow unencrypted traffic - Client - AllowUnencryptedTrafficMSCT Windows 10 v22H2 v1.0.0Windows

ACCESS CONTROL

Allow unencrypted traffic - Client - AllowUnencryptedTrafficMSCT Windows 11 v24H2 v1.0.0Windows

ACCESS CONTROL

Allow unencrypted traffic - Client - AllowUnencryptedTrafficMSCT Windows 11 v25H2 v1.0.0Windows

ACCESS CONTROL

Allow unencrypted traffic - Client - AllowUnencryptedTrafficMSCT Windows Server 2025 MS v2506 v1.0.0Windows

ACCESS CONTROL

Allow unencrypted traffic - Service - AllowUnencryptedTrafficMSCT Windows 11 v23H2 v1.0.0Windows

ACCESS CONTROL

Allow unencrypted traffic - Service - AllowUnencryptedTrafficMSCT Windows 10 v21H1 v1.0.0Windows

ACCESS CONTROL

Allow unencrypted traffic - Service - AllowUnencryptedTrafficMSCT MSCT Windows Server 2022 DC v1.0.0Windows

ACCESS CONTROL

Allow unencrypted traffic - Service - AllowUnencryptedTrafficMSCT Windows Server 2025 MS v1.0.0Windows

ACCESS CONTROL

Brocade - Set SNMP security level to authentication and privacyTenable Best Practices Brocade FabricOSBrocade

ACCESS CONTROL

Configure Solicited Remote Assistance - fAllowToGetHelpMSCT Windows 11 v23H2 v1.0.0Windows

ACCESS CONTROL

Disallow Digest authenticationMSCT Windows 11 v22H2 v1.0.0Windows

ACCESS CONTROL

Disallow Digest authenticationMSCT Windows 11 v1.0.0Windows

ACCESS CONTROL

Disallow Digest authenticationMSCT MSCT Windows Server 2022 DC v1.0.0Windows

ACCESS CONTROL

Disallow Digest authentication - Client - AllowDigestMSCT Windows Server 2025 DC v1.0.0Windows

ACCESS CONTROL

Disallow Digest authentication - Client - AllowDigestMSCT Windows Server 2025 MS v1.0.0Windows

ACCESS CONTROL

FireEye - SNMP v3 uses AES instead of DESTNS FireEyeFireEye

ACCESS CONTROL

Fortigate - VPN SSL cipher suite > than 128 bitsTNS Fortigate FortiOS Best Practices v2.0.0FortiGate

ACCESS CONTROL

Set client connection encryption levelMSCT Windows 10 v21H1 v1.0.0Windows

ACCESS CONTROL

Set client connection encryption levelMSCT Windows 11 v1.0.0Windows

ACCESS CONTROL

Set client connection encryption levelMSCT MSCT Windows Server 2022 DC v1.0.0Windows

ACCESS CONTROL

Set client connection encryption levelMSCT Windows Server 2025 MS v2506 v1.0.0Windows

ACCESS CONTROL

Set client connection encryption level - MinEncryptionLevelMSCT Windows Server 2025 DC v1.0.0Windows

ACCESS CONTROL

WatchGuard : SNMP Configuration - v3 user has password - auth protocolTNS Best Practice WatchGuard Audit 1.0.0WatchGuard

ACCESS CONTROL