Item Search

NameAudit NamePluginCategory
1.5.2 Ensure fs.protected_hardlinks is configuredCIS AlmaLinux OS 10 v1.0.0 L1 WorkstationUnix

ACCESS CONTROL

1.5.2 Ensure fs.protected_hardlinks is configuredCIS AlmaLinux OS 8 v4.0.0 L1 ServerUnix

ACCESS CONTROL

1.5.2 Ensure fs.protected_hardlinks is configuredCIS Rocky Linux 8 v3.0.0 L1 WorkstationUnix

ACCESS CONTROL

1.5.2 Ensure fs.protected_hardlinks is configuredCIS Oracle Linux 8 v4.0.0 L1 ServerUnix

ACCESS CONTROL

1.5.2 Ensure fs.protected_hardlinks is configuredCIS Red Hat Enterprise Linux 10 v1.0.1 L1 ServerUnix

ACCESS CONTROL

1.5.2 Ensure fs.protected_hardlinks is configuredCIS AlmaLinux OS 10 v1.0.0 L1 ServerUnix

ACCESS CONTROL

1.5.2 Ensure fs.protected_hardlinks is configuredCIS AlmaLinux OS 8 v4.0.0 L1 WorkstationUnix

ACCESS CONTROL

1.5.3 Ensure fs.protected_symlinks is configuredCIS Red Hat Enterprise Linux 10 v1.0.1 L2 ServerUnix

ACCESS CONTROL

1.5.3 Ensure fs.protected_symlinks is configuredCIS Red Hat Enterprise Linux 8 v4.0.0 L2 WorkstationUnix

ACCESS CONTROL

1.5.3 Ensure fs.protected_symlinks is configuredCIS AlmaLinux OS 8 v4.0.0 L2 ServerUnix

ACCESS CONTROL

1.5.3 Ensure fs.suid_dumpable is configuredCIS SUSE Linux Enterprise 16 v1.0.0 L1 WorkstationUnix

ACCESS CONTROL

1.5.4 Ensure fs.suid_dumpable is configuredCIS Debian Linux 12 v2.0.0 L1 ServerUnix

ACCESS CONTROL

1.5.4 Ensure fs.suid_dumpable is configuredCIS Debian Linux 12 v2.0.0 L1 WorkstationUnix

ACCESS CONTROL

1.6.1.3 Ensure SELinux policy is configured - 'SELINUXTYPE'CIS Ubuntu Linux 14.04 LTS Server L2 v2.1.0Unix

ACCESS CONTROL

1.6.1.3 Ensure SELinux policy is configured - 'SELINUXTYPE'CIS Ubuntu Linux 14.04 LTS Workstation L2 v2.1.0Unix

ACCESS CONTROL

1.6.1.5 Ensure the SELinux mode is enforcing - getenforceCIS CentOS 6 Server L2 v3.0.0Unix

ACCESS CONTROL

1.6.2.1 Ensure SELinux is not disabled in bootloader configuration - enforcing=0CIS Distribution Independent Linux Server L2 v2.0.0Unix

ACCESS CONTROL

1.6.2.1 Ensure SELinux is not disabled in bootloader configuration - selinux=0CIS Distribution Independent Linux Workstation L2 v2.0.0Unix

ACCESS CONTROL

2.1 Ensure IAM Policy for EC2 IAM Roles for Web tier is configuredCIS Amazon Web Services Three-tier Web Architecture L1 1.0.0amazon_aws

ACCESS CONTROL

2.2 Ensure IAM Policy for EC2 IAM Roles for App tier is configuredCIS Amazon Web Services Three-tier Web Architecture L1 1.0.0amazon_aws

ACCESS CONTROL

2.2.45 (L1) Ensure 'Take ownership of files or other objects' is set to 'Administrators'CIS Azure Compute Microsoft Windows Server 2019 v1.0.0 L1 DCWindows

ACCESS CONTROL

2.2.45 (L1) Ensure 'Take ownership of files or other objects' is set to 'Administrators'CIS Azure Compute Microsoft Windows Server 2022 v1.0.0 L1 MSWindows

ACCESS CONTROL

2.3.10.12 Ensure 'Network access: Shares that can be accessed anonymously' is set to 'None'CIS Microsoft Windows Server 2019 v5.0.0 L1 DCWindows

ACCESS CONTROL

2.3.10.12 Ensure 'Network access: Shares that can be accessed anonymously' is set to 'None'CIS Microsoft Windows Server 2019 v5.0.0 L1 MSWindows

ACCESS CONTROL

2.6 Ensure AutoScaling Group Launch Configuration for App Tier is configured to use an App-Tier IAM RoleCIS Amazon Web Services Three-tier Web Architecture L1 1.0.0amazon_aws

ACCESS CONTROL

4.5 Activate AppArmor - '0 processes unconfined'CIS Ubuntu 12.04 LTS Benchmark L2 v1.1.0Unix

ACCESS CONTROL

4.5 Activate AppArmor - 'Profiles are loaded' - ReviewCIS Ubuntu 12.04 LTS Benchmark L2 v1.1.0Unix

ACCESS CONTROL

4.5 Activate AppArmor - GRUB_CMDLINE_LINUX - 0 processes are unconfirmedCIS Debian Linux 7 L2 v1.0.0Unix

ACCESS CONTROL

4.5 Activate AppArmor - GRUB_CMDLINE_LINUX - security=apparmorCIS Debian Linux 7 L2 v1.0.0Unix

ACCESS CONTROL

5.1 Use secure RealmsCIS Apache Tomcat 8 L2 v1.1.0 MiddlewareUnix

ACCESS CONTROL

5.1 Verify AppArmorCIS Docker 1.11.0 v1.0.0 L2 DockerUnix

ACCESS CONTROL

5.2 Verify SELinux security options, if applicableCIS Docker 1.12.0 v1.0.0 L2 DockerUnix

ACCESS CONTROL

5.2 Verify SELinux security options, if applicable (Scored)CIS Docker 1.6 v1.0.0 L2 DockerUnix

ACCESS CONTROL

5.3 Reduce the sudo timeout periodCIS Apple macOS 10.12 L1 v1.2.0Unix

ACCESS CONTROL

5.3 Reduce the sudo timeout periodCIS Apple macOS 10.13 L1 v1.1.0Unix

ACCESS CONTROL

5.3 Reduce the sudo timeout periodCIS Apple OSX 10.10 Yosemite L1 v1.2.0Unix

ACCESS CONTROL

5.3 Reduce the sudo timeout periodCIS Apple OSX 10.11 El Capitan L1 v1.1.0Unix

ACCESS CONTROL

5.3.2 Ensure permissions on SSH private host key files are configuredCIS CentOS 6 Server L1 v3.0.0Unix

ACCESS CONTROL

5.5 Use a separate timestamp for each user/tty comboCIS Apple macOS 10.13 L1 v1.1.0Unix

ACCESS CONTROL

7.6 Ensure directory in logging.properties is a secure location - check log directory locationCIS Apache Tomcat 9 L1 v1.2.0Unix

ACCESS CONTROL

10.19 Setting Security Lifecycle Listener (check for umask uncommented in startup)CIS Apache Tomcat 7 L1 v1.1.0 MiddlewareUnix

ACCESS CONTROL

18 - Role Based Authentication per queueTNS Best Practice JBoss 7 LinuxUnix

ACCESS CONTROL

18.10.4.1 Ensure 'Allow a Windows app to share application data between users' is set to 'Disabled'CIS Microsoft Windows Server 2019 v5.0.0 L2 MSWindows

ACCESS CONTROL

19 - Cluster AuthenticationTNS Best Practice JBoss 7 LinuxUnix

ACCESS CONTROL

19.7.26.1 Ensure 'Prevent users from sharing files within their profile.' is set to 'Enabled'CIS Microsoft Windows 11 Stand-alone v5.0.0 L1Windows

ACCESS CONTROL

IBM i : Allow User Domain Objects (QALWUSRDMN) - '*ALL'IBM System i Security Reference for V7R3AS/400

ACCESS CONTROL

IBM i : Use Adopted Authority (QUSEADPAUT) - AUTH_LIST_NAMEIBM System i Security Reference for V7R1 and V6R1AS/400

ACCESS CONTROL

IBM i : Use Adopted Authority (QUSEADPAUT) - AUTH_LIST_NAMEIBM System i Security Reference for V7R2AS/400

ACCESS CONTROL

Review the list of active Rackspace Role Names (RBAC)Tenable Best Practices RackSpace v2.0.0Rackspace

ACCESS CONTROL

Review the List of Users with ROLE_NAMETenable Best Practices RackSpace v2.0.0Rackspace

ACCESS CONTROL