Item Search

NameAudit NamePluginCategory
1.5.2 Ensure fs.protected_hardlinks is configuredCIS Oracle Linux 10 v1.0.0 L1 ServerUnix

ACCESS CONTROL

1.5.2 Ensure fs.protected_hardlinks is configuredCIS Oracle Linux 10 v1.0.0 L1 WorkstationUnix

ACCESS CONTROL

1.5.2 Ensure fs.protected_hardlinks is configuredCIS Red Hat Enterprise Linux 10 v1.0.1 L1 WorkstationUnix

ACCESS CONTROL

1.5.2 Ensure fs.protected_hardlinks is configuredCIS Rocky Linux 8 v3.0.0 L1 ServerUnix

ACCESS CONTROL

1.5.2 Ensure fs.protected_hardlinks is configuredCIS Red Hat Enterprise Linux 8 v4.0.0 L1 WorkstationUnix

ACCESS CONTROL

1.5.2 Ensure fs.protected_hardlinks is configuredCIS Red Hat Enterprise Linux 8 v4.0.0 L1 ServerUnix

ACCESS CONTROL

1.5.2 Ensure fs.protected_hardlinks is configuredCIS Oracle Linux 8 v4.0.0 L1 WorkstationUnix

ACCESS CONTROL

1.5.3 Ensure fs.protected_symlinks is configuredCIS Oracle Linux 10 v1.0.0 L2 ServerUnix

ACCESS CONTROL

1.5.3 Ensure fs.protected_symlinks is configuredCIS Oracle Linux 8 v4.0.0 L2 ServerUnix

ACCESS CONTROL

1.5.3 Ensure fs.protected_symlinks is configuredCIS Red Hat Enterprise Linux 10 v1.0.1 L2 WorkstationUnix

ACCESS CONTROL

1.5.3 Ensure fs.protected_symlinks is configuredCIS Rocky Linux 8 v3.0.0 L2 ServerUnix

ACCESS CONTROL

1.5.3 Ensure fs.protected_symlinks is configuredCIS AlmaLinux OS 10 v1.0.0 L2 WorkstationUnix

ACCESS CONTROL

1.5.3 Ensure fs.protected_symlinks is configuredCIS Red Hat Enterprise Linux 8 v4.0.0 L2 ServerUnix

ACCESS CONTROL

1.5.3 Ensure fs.protected_symlinks is configuredCIS AlmaLinux OS 10 v1.0.0 L2 ServerUnix

ACCESS CONTROL

1.5.3 Ensure fs.protected_symlinks is configuredCIS AlmaLinux OS 8 v4.0.0 L2 WorkstationUnix

ACCESS CONTROL

1.5.3 Ensure fs.protected_symlinks is configuredCIS Oracle Linux 10 v1.0.0 L2 WorkstationUnix

ACCESS CONTROL

1.5.3 Ensure fs.protected_symlinks is configuredCIS Oracle Linux 8 v4.0.0 L2 WorkstationUnix

ACCESS CONTROL

1.5.3 Ensure fs.protected_symlinks is configuredCIS Rocky Linux 8 v3.0.0 L2 WorkstationUnix

ACCESS CONTROL

1.5.3 Ensure fs.suid_dumpable is configuredCIS SUSE Linux Enterprise 16 v1.0.0 L1 ServerUnix

ACCESS CONTROL

1.5.4 Ensure fs.suid_dumpable is configuredCIS Ubuntu Linux 24.04 LTS v2.0.0 L1 WorkstationUnix

ACCESS CONTROL

1.5.4 Ensure fs.suid_dumpable is configuredCIS Ubuntu Linux 24.04 LTS v2.0.0 L1 ServerUnix

ACCESS CONTROL

1.6.1.3 Ensure SELinux policy is configuredCIS Amazon Linux v2.1.0 L2Unix

ACCESS CONTROL

1.6.1.3 Ensure SELinux policy is configuredCIS Ubuntu Linux 14.04 LTS Server L2 v2.1.0Unix

ACCESS CONTROL

1.6.1.3 Ensure SELinux policy is configuredCIS Ubuntu Linux 14.04 LTS Workstation L2 v2.1.0Unix

ACCESS CONTROL

1.6.1.3 Ensure SELinux policy is configured - 'Policy from config file'CIS Ubuntu Linux 14.04 LTS Server L2 v2.1.0Unix

ACCESS CONTROL

1.6.1.3 Ensure SELinux policy is configured - 'Policy from config file'CIS Ubuntu Linux 14.04 LTS Workstation L2 v2.1.0Unix

ACCESS CONTROL

1.6.2.1 Ensure SELinux is not disabled in bootloader configuration - enforcing=0CIS Distribution Independent Linux Workstation L2 v2.0.0Unix

ACCESS CONTROL

1.6.2.1 Ensure SELinux is not disabled in bootloader configuration - selinux=0CIS Distribution Independent Linux Server L2 v2.0.0Unix

ACCESS CONTROL

2.3 Ensure an IAM Role for Amazon EC2 is created for Web TierCIS Amazon Web Services Three-tier Web Architecture L1 1.0.0amazon_aws

ACCESS CONTROL

2.4 Ensure an IAM Role for Amazon EC2 is created for App TierCIS Amazon Web Services Three-tier Web Architecture L1 1.0.0amazon_aws

ACCESS CONTROL

2.5 Ensure AutoScaling Group Launch Configuration for Web Tier is configured to use a customer created Web-Tier IAM RoleCIS Amazon Web Services Three-tier Web Architecture L1 1.0.0amazon_aws

ACCESS CONTROL

4.5 Activate AppArmor - '0 profiles in complain mode'CIS Ubuntu 12.04 LTS Benchmark L2 v1.1.0Unix

ACCESS CONTROL

4.5 Activate AppArmor - GRUB_CMDLINE_LINUX - 0 profiles are in complain modeCIS Debian Linux 7 L2 v1.0.0Unix

ACCESS CONTROL

4.5 Activate AppArmor - GRUB_CMDLINE_LINUX - apparmor=1CIS Debian Linux 7 L2 v1.0.0Unix

ACCESS CONTROL

4.5 Activate AppArmor - profiles are loadedCIS Debian Linux 7 L2 v1.0.0Unix

ACCESS CONTROL

5.1 Do not disable AppArmorCIS Docker 1.12.0 v1.0.0 L2 DockerUnix

ACCESS CONTROL

5.1 Do not disable AppArmor ProfileCIS Docker 1.13.0 v1.0.0 L1 DockerUnix

ACCESS CONTROL

5.1 Verify AppArmorCIS Docker 1.6 v1.0.0 L2 DockerUnix

ACCESS CONTROL

5.2 Verify SELinux security options, if applicableCIS Docker 1.11.0 v1.0.0 L2 DockerUnix

ACCESS CONTROL

5.2 Verify SELinux security options, if applicableCIS Docker 1.13.0 v1.0.0 L2 DockerUnix

ACCESS CONTROL

5.3 Reduce the sudo timeout periodCIS Apple OSX 10.9 L1 v1.3.0Unix

ACCESS CONTROL

5.4 CIFS - 'cifs.gpo.enable = on'TNS NetApp Data ONTAP 7GNetApp

ACCESS CONTROL

5.4 CIFS - 'cifs.LMCompatibilityLevel <= 3'TNS NetApp Data ONTAP 7GNetApp

ACCESS CONTROL

5.4 Use a separate timestamp for each user/tty comboCIS Apple macOS 10.12 L1 v1.2.0Unix

ACCESS CONTROL

5.5 NFS - 'nfs.v4.acl.enable = on'TNS NetApp Data ONTAP 7GNetApp

ACCESS CONTROL

20.2 (L1) Ensure 'Event Logs are protected'CIS Microsoft Windows 10 EMS Gateway v3.0.0 L1Windows

ACCESS CONTROL

IBM i : Allow User Domain Objects (QALWUSRDMN) - '*ALL'IBM System i Security Reference for V7R1 and V6R1AS/400

ACCESS CONTROL

IBM i : Allow User Domain Objects (QALWUSRDMN) - '*ALL'IBM System i Security Reference for V7R2AS/400

ACCESS CONTROL

IBM i : Use Adopted Authority (QUSEADPAUT) - AUTH_LIST_NAMEIBM System i Security Reference for V7R3AS/400

ACCESS CONTROL

Network access: Allow anonymous SID/Name translationMSCT Windows Server v20H2 MS v1.0.0Windows

ACCESS CONTROL