Item Search

NameAudit NamePluginCategory
1.0.4 Use non-standard account names - '!= db2inst1'CIS IBM DB2 OS L1 v1.2.0Unix

CONFIGURATION MANAGEMENT

1.1.22 Disable AutomountingCIS Debian Family Workstation L2 v1.0.0Unix

SYSTEM AND INFORMATION INTEGRITY

1.1.22 Disable AutomountingCIS Red Hat 6 Server L1 v3.0.0Unix

SYSTEM AND INFORMATION INTEGRITY

1.1.22 Disable AutomountingCIS Red Hat 6 Workstation L2 v3.0.0Unix

SYSTEM AND INFORMATION INTEGRITY

1.1.22 Disable AutomountingCIS CentOS 6 Server L1 v3.0.0Unix

SYSTEM AND INFORMATION INTEGRITY

1.1.22 Disable AutomountingCIS Oracle Linux 6 Workstation L2 v2.0.0Unix

SYSTEM AND INFORMATION INTEGRITY

1.2.2 - MobileIron - Enable Fraudulent Website WarningMobileIron - CIS Apple iOS 8 v1.0.0 L1MDM

ACCESS CONTROL, CONFIGURATION MANAGEMENT

1.2.3 - MobileIron - Disable Auto Fill for Contact InformationMobileIron - CIS Apple iOS 9 v1.0.0 L2MDM

ACCESS CONTROL, CONFIGURATION MANAGEMENT

1.2.4 - MobileIron - Disable Auto Fill for Names and PasswordsMobileIron - CIS Apple iOS 8 v1.0.0 L2MDM

ACCESS CONTROL, CONFIGURATION MANAGEMENT

1.2.5 - MobileIron - Disable Auto Fill for Credit Card InformationMobileIron - CIS Apple iOS 8 v1.0.0 L2MDM

ACCESS CONTROL, CONFIGURATION MANAGEMENT

1.3.26 - /etc/inetd.conf - 'daytime-tcp has been disabled'CIS AIX 5.3/6.1 L2 v1.1.0Unix

CONFIGURATION MANAGEMENT

1.3.28 - /etc/inetd.conf - 'cmsd has been disabled'CIS AIX 5.3/6.1 L2 v1.1.0Unix

CONFIGURATION MANAGEMENT

1.3.34 - /etc/inetd.conf - 'ntalk has been disabled'CIS AIX 5.3/6.1 L2 v1.1.0Unix

CONFIGURATION MANAGEMENT

1.3.36 - /etc/inetd.conf - 'chargen-tcp has been disabled'CIS AIX 5.3/6.1 L2 v1.1.0Unix

CONFIGURATION MANAGEMENT

1.3.41 - /etc/inetd.conf - 'rstatd has been disabled'CIS AIX 5.3/6.1 L2 v1.1.0Unix

CONFIGURATION MANAGEMENT

1.3.43 - /etc/inetd.conf - 'rwalld has been disabled'CIS AIX 5.3/6.1 L2 v1.1.0Unix

CONFIGURATION MANAGEMENT

1.3.47 - /etc/inetd.conf - 'rquotad has been disabled'CIS AIX 5.3/6.1 L2 v1.1.0Unix

CONFIGURATION MANAGEMENT

1.3.50 - /etc/inetd.conf - 'pop3 has been disabled'CIS AIX 5.3/6.1 L2 v1.1.0Unix

CONFIGURATION MANAGEMENT

1.3.51 - /etc/inetd.conf - 'fingerd has been disabled'CIS AIX 5.3/6.1 L2 v1.1.0Unix

CONFIGURATION MANAGEMENT

2.1 Disable all inetd daemonsCIS FreeBSD v1.0.5Unix

CONFIGURATION MANAGEMENT

2.1.11 Ensure openbsd-inetd is not installedCIS Ubuntu Linux 14.04 LTS Server L1 v2.1.0Unix

CONFIGURATION MANAGEMENT

2.2.12 - Configuring SSH - removal of .shosts files - 'no .shosts files exist in user home directories'CIS AIX 5.3/6.1 L2 v1.1.0Unix

CONFIGURATION MANAGEMENT

2.2.13 - Configuring SSH - removal of /etc/shosts.equiv fileCIS AIX 5.3/6.1 L2 v1.1.0Unix

CONFIGURATION MANAGEMENT

2.3 Only enable FTP if absolutely necessary - Uncomment service ftp in /etc/inet/inetd.confCIS Solaris 9 v1.3Unix

CONFIGURATION MANAGEMENT

2.3 Only enable ftpd if absolutely necessaryCIS FreeBSD v1.0.5Unix

CONFIGURATION MANAGEMENT

2.4 Only enable rlogin/rsh/rcp if absolutely necessary (login)CIS FreeBSD v1.0.5Unix

CONFIGURATION MANAGEMENT

2.5 Only enable TFTP if absolutely necessary - Uncomment service tftp in /etc/inet/inetd.confCIS Solaris 9 v1.3Unix

CONFIGURATION MANAGEMENT

2.6 Only enable finger if absolutely necessaryCIS FreeBSD v1.0.5Unix

CONFIGURATION MANAGEMENT

2.7 Only enable Kerberos-related daemons if absolutely necessary (kadmind5_server_enable)CIS FreeBSD v1.0.5Unix

CONFIGURATION MANAGEMENT

2.12 Only enable GSS daemon if absolutely necessary - Uncomment service 100234 in /etc/inet/inetd.con (Solaris 7 or later)CIS Solaris 9 v1.3Unix

CONFIGURATION MANAGEMENT

2.12.10 - Miscellaneous Config - 'ftp umask at least 027'CIS AIX 5.3/6.1 L1 v1.1.0Unix

CONFIGURATION MANAGEMENT

3.3.4 Do not execute expired tasks - 'exec_exp_task = no'CIS IBM DB2 OS L2 v1.2.0Unix

CONFIGURATION MANAGEMENT

3.5 Disable boot services if possible - Ensure file /etc/rc3.d/S16boot.server does not exist (Solaris 9)CIS Solaris 9 v1.3Unix

CONFIGURATION MANAGEMENT

3.6 Disable other standard boot services - Ensure file /etc/rc2.d/S72autoinstall does not exist.CIS Solaris 9 v1.3Unix

CONFIGURATION MANAGEMENT

3.7 Only enable other RPC-based services if absolutely necessary (rpcbind_enable)CIS FreeBSD v1.0.5Unix

CONFIGURATION MANAGEMENT

3.10 Only enable automount daemon if absolutely necessary - Ensure file /etc/rc2.d/S74autofs does NOT exist.CIS Solaris 9 v1.3Unix

CONFIGURATION MANAGEMENT

3.11 Only enable other RPC-based services if absolutely necessary - Ensure file /etc/rc2.d/S71rpc does NOT exist.CIS Solaris 9 v1.3Unix

CONFIGURATION MANAGEMENT

3.12 Only enable Kerberos server daemons if absolutely necessary - Ensure file /etc/rc3.d/S13kdc.master does NOT exist.CIS Solaris 9 v1.3Unix

CONFIGURATION MANAGEMENT

3.12 Only enable NIS if absolutely necessary (nis_server_enable)CIS FreeBSD v1.0.5Unix

CONFIGURATION MANAGEMENT

3.13 Only enable NIS client daemons if absolutely necessary (nis_ypset_enable)CIS FreeBSD v1.0.5Unix

CONFIGURATION MANAGEMENT

3.14 Only enable the LDAP cache manager if absolutely necessary - Ensure file /etc/rc2.d/S71ldap.client does NOT exist.CIS Solaris 9 v1.3Unix

CONFIGURATION MANAGEMENT

3.17 Only enable GUI login if absolutely necessary - Ensure file /etc/rc2.d/S99dtlogin does NOT exist (Solaris 2.6 or later)CIS Solaris 9 v1.3Unix

CONFIGURATION MANAGEMENT

4.4.2 Disable IPv6 - options ipv6 disable=1CIS Red Hat Enterprise Linux 5 L1 v2.2.1Unix

CONFIGURATION MANAGEMENT

4.05 init.ora - 'remote_listener = NULL String'CIS v1.1.0 Oracle 11g OS L1Unix

CONFIGURATION MANAGEMENT

4.17 spfile<sid>.ora - 'Remove the following from the spfile: dispatches= (PROTOCOL=TCP) (SERVICE=<sid>XDB)'CIS v1.1.0 Oracle 11g OS L2Unix

CONFIGURATION MANAGEMENT

4.29 cman.ora - 'remote_admin = NO'CIS v1.1.0 Oracle 11g OS L2Unix

CONFIGURATION MANAGEMENT

4.31 init.ora - 'sec_return_server_release_banner = FALSE'CIS v1.1.0 Oracle 11g OS L2Unix

CONFIGURATION MANAGEMENT

5.13 OAS - 'SSL Version - Set SSL version ssl_version = 3.0'CIS v1.1.0 Oracle 11g OS L2Unix

CONFIGURATION MANAGEMENT

5.13 OAS - 'SSL Version - Set SSL version ssl_version = 3.0'CIS v1.1.0 Oracle 11g OS Windows Level 2Windows

CONFIGURATION MANAGEMENT

Fortigate - Review and disable unused interfacesTNS Fortigate FortiOS Best Practices v2.0.0FortiGate

CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION