Item Search

NameAudit NamePluginCategory
1.1.1.6 Ensure squashfs kernel module is not availableCIS Rocky Linux 9 v2.0.0 L2 WorkstationUnix

CONFIGURATION MANAGEMENT

1.1.1.6 Ensure squashfs kernel module is not availableCIS Red Hat Enterprise Linux 7 v4.0.0 L2 WorkstationUnix

CONFIGURATION MANAGEMENT

1.1.1.6 Ensure squashfs kernel module is not availableCIS Red Hat Enterprise Linux 9 v2.0.0 L2 ServerUnix

CONFIGURATION MANAGEMENT

1.1.1.6 Ensure squashfs kernel module is not availableCIS Rocky Linux 8 Workstation L2 v2.0.0Unix

CONFIGURATION MANAGEMENT

1.8.1 Ensure GNOME Display Manager is removedCIS Rocky Linux 9 v2.0.0 L2 ServerUnix

CONFIGURATION MANAGEMENT

2.2.2 Ensure ldap client is not installedCIS Red Hat Enterprise Linux 9 v2.0.0 L2 WorkstationUnix

CONFIGURATION MANAGEMENT

2.3.2 Ensure ldap client is not installedCIS Rocky Linux 8 Workstation L2 v2.0.0Unix

CONFIGURATION MANAGEMENT

3.2.2 Ensure tipc kernel module is not availableCIS Rocky Linux 9 v2.0.0 L2 WorkstationUnix

CONFIGURATION MANAGEMENT

3.2.3 Ensure rds kernel module is not availableCIS Rocky Linux 9 v2.0.0 L2 ServerUnix

CONFIGURATION MANAGEMENT

3.2.3 Ensure rds kernel module is not availableCIS Red Hat Enterprise Linux 7 v4.0.0 L2 WorkstationUnix

CONFIGURATION MANAGEMENT

3.2.3 Ensure rds kernel module is not availableCIS Red Hat Enterprise Linux 9 v2.0.0 L2 ServerUnix

CONFIGURATION MANAGEMENT

4.2.8 Ensure snmpd is not availableCIS IBM AIX 7 v1.0.0 L1Unix

CONFIGURATION MANAGEMENT

4.3.2.1 Ensure inetd daemon is disabled when no additional services are requiredCIS IBM AIX 7 v1.0.0 L1Unix

CONFIGURATION MANAGEMENT

4.3.2.10 Ensure named is not in useCIS IBM AIX 7 v1.0.0 L1Unix

CONFIGURATION MANAGEMENT

4.3.4.5 Ensure discard daemon is not in useCIS IBM AIX 7 v1.0.0 L1Unix

CONFIGURATION MANAGEMENT

4.3.4.6 Ensure echo daemon is not in useCIS IBM AIX 7 v1.0.0 L1Unix

CONFIGURATION MANAGEMENT

4.3.4.15 Ensure netstat daemon is not in useCIS IBM AIX 7 v1.0.0 L1Unix

CONFIGURATION MANAGEMENT

4.3.4.19 Ensure rexd daemon is not in useCIS IBM AIX 7 v1.0.0 L1Unix

CONFIGURATION MANAGEMENT

4.3.4.28 Ensure telnetd daemon is not in useCIS IBM AIX 7 v1.0.0 L1Unix

CONFIGURATION MANAGEMENT

4.3.4.29 Ensure tftpd daemon is not in useCIS IBM AIX 7 v1.0.0 L1Unix

CONFIGURATION MANAGEMENT

4.4.1.2 Ensure NFS server services are not in useCIS IBM AIX 7 v1.0.0 L1Unix

CONFIGURATION MANAGEMENT

4.5.4 Ensure directed_broadcast is disabledCIS IBM AIX 7 v1.0.0 L1Unix

CONFIGURATION MANAGEMENT

4.5.5 Ensure icmpaddressmask is disabledCIS IBM AIX 7 v1.0.0 L1Unix

CONFIGURATION MANAGEMENT

4.5.11 Ensure ipsrcrouterecv is disabledCIS IBM AIX 7 v1.0.0 L1Unix

CONFIGURATION MANAGEMENT

4.5.15 Ensure nonlocsrcroute is disabledCIS IBM AIX 7 v1.0.0 L1Unix

CONFIGURATION MANAGEMENT

4.5.17 Ensure tcp_tcpsecure is configuredCIS IBM AIX 7 v1.0.0 L1Unix

CONFIGURATION MANAGEMENT

4.7.1.2 Ensure the cmsd service is not availableCIS IBM AIX 7 v1.0.0 L1Unix

CONFIGURATION MANAGEMENT

4.7.1.3 Ensure dtlogin service is not availableCIS IBM AIX 7 v1.0.0 L1Unix

CONFIGURATION MANAGEMENT

4.7.3.12 Ensure sshd MaxAuthTries is configuredCIS IBM AIX 7 v1.0.0 L1Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

5.5 Ensure 'Simple TCP/IP Services (simptcp)' is set to 'Not Installed'CIS Microsoft Windows Server 2016 STIG v3.0.0 STIG DCWindows

CONFIGURATION MANAGEMENT

18.4.1 (L1) Ensure 'MSS: (DisableIPSourceRouting IPv6) IP source routing protection level (protects against packet spoofing)' is set to 'Enabled: Highest protection, source routing is completely disabled'CIS Azure Compute Microsoft Windows Server 2019 v1.0.0 L1 DCWindows

CONFIGURATION MANAGEMENT

18.4.2 Ensure 'MSS: (DisableIPSourceRouting) IP source routing protection level (protects against packet spoofing)' is set to 'Enabled: Highest protection, source routing is completely disabled' - Enabled: Highest protection, source routing is completely disabledCIS Azure Compute Microsoft Windows Server 2022 v1.0.0 L1 DCWindows

CONFIGURATION MANAGEMENT

18.4.3 (L1) Ensure 'MSS: (EnableICMPRedirect) Allow ICMP redirects to override OSPF generated routes' is set to 'Disabled'CIS Azure Compute Microsoft Windows Server 2019 v1.0.0 L1 DCWindows

CONFIGURATION MANAGEMENT

18.4.4 (L1) Ensure 'MSS: (NoNameReleaseOnDemand) Allow the computer to ignore NetBIOS name release requests except from WINS servers' is set to 'Enabled'CIS Azure Compute Microsoft Windows Server 2019 v1.0.0 L1 DCWindows

CONFIGURATION MANAGEMENT

18.4.4 Ensure 'MSS: (NoNameReleaseOnDemand) Allow the computer to ignore NetBIOS name release requests except from WINS servers' is set to 'Enabled' - EnabledCIS Azure Compute Microsoft Windows Server 2022 v1.0.0 L1 DCWindows

CONFIGURATION MANAGEMENT

18.6.4.2 (L1) Ensure 'Turn off multicast name resolution' is set to 'Enabled'CIS Windows Server 2012 R2 MS L1 v3.0.0Windows

CONFIGURATION MANAGEMENT

18.6.19.2.1 (L2) Disable IPv6 (Ensure TCPIP6 Parameter 'DisabledComponents' is set to '0xff (255)')CIS Windows Server 2012 MS L2 v3.0.0Windows

CONFIGURATION MANAGEMENT

18.6.20.2 (L2) Ensure 'Prohibit access of the Windows Connect Now wizards' is set to 'Enabled'CIS Windows Server 2012 MS L2 v3.0.0Windows

CONFIGURATION MANAGEMENT

18.8.21.4 Ensure 'Continue experiences on this device' is set to 'Disabled'CIS Azure Compute Microsoft Windows Server 2022 v1.0.0 L1 DCWindows

CONFIGURATION MANAGEMENT

18.8.36.1 (L1) Ensure 'Configure Offer Remote Assistance' is set to 'Disabled'CIS Azure Compute Microsoft Windows Server 2019 v1.0.0 L1 DCWindows

CONFIGURATION MANAGEMENT

18.9.14.2 (L1) Ensure 'Turn off Microsoft consumer experiences' is set to 'Enabled'CIS Azure Compute Microsoft Windows Server 2019 v1.0.0 L1 DCWindows

CONFIGURATION MANAGEMENT

18.9.17.1 Ensure 'Allow Diagnostic Data' is set to 'Enabled: Send required diagnostic data' - Enabled: Send required diagnostic dataCIS Azure Compute Microsoft Windows Server 2022 v1.0.0 L1 DCWindows

CONFIGURATION MANAGEMENT

18.9.35.1 (L1) Ensure 'Enable RPC Endpoint Mapper Client Authentication' is set to 'Enabled' (MS only)CIS Windows Server 2012 R2 MS L1 v3.0.0Windows

CONFIGURATION MANAGEMENT

18.10.28.3 Ensure 'Turn off heap termination on corruption' is set to 'Disabled'CIS Microsoft Windows Server 2016 STIG v3.0.0 STIG DCWindows

CONFIGURATION MANAGEMENT

18.10.28.4 Ensure 'Turn off shell protocol protected mode' is set to 'Disabled'CIS Microsoft Windows Server 2016 STIG v3.0.0 STIG DCWindows

CONFIGURATION MANAGEMENT

18.10.43.5.2 (L2) Ensure 'Join Microsoft MAPS' is set to 'Disabled'CIS Windows Server 2012 MS L2 v3.0.0Windows

CONFIGURATION MANAGEMENT

18.10.56.2.2 Ensure 'Do not allow passwords to be saved' is set to 'Enabled'CIS Microsoft Windows Server 2016 STIG v3.0.0 STIG MSWindows

CONFIGURATION MANAGEMENT

18.10.56.3.3.2 Ensure 'Do not allow drive redirection' is set to 'Enabled'CIS Microsoft Windows Server 2016 STIG v3.0.0 STIG MSWindows

CONFIGURATION MANAGEMENT

18.10.57.3.3.1 (L2) Ensure 'Do not allow COM port redirection' is set to 'Enabled'CIS Windows Server 2012 MS L2 v3.0.0Windows

CONFIGURATION MANAGEMENT

18.10.89.2.2 (L2) Ensure 'Allow remote server management through WinRM' is set to 'Disabled'CIS Windows Server 2012 MS L2 v3.0.0Windows

CONFIGURATION MANAGEMENT