Item Search

NameAudit NamePluginCategory
2.3.17.4 Ensure 'User Account Control: Detect application installations and prompt for elevation' is set to 'Enabled'CIS Azure Compute Microsoft Windows Server 2022 v1.0.0 L1 DCWindows

ACCESS CONTROL

2.3.17.4 Ensure 'User Account Control: Detect application installations and prompt for elevation' is set to 'Enabled'CIS Microsoft Windows 8.1 v2.4.1 L1Windows

CONFIGURATION MANAGEMENT

3. OpenStack Compute - Policy.json - 'os_compute_api:os-assisted-volume-snapshots:create'TNS OpenStack Nova/Compute Security GuideUnix

ACCESS CONTROL

6. OpenStack Compute - Policy.json - 'os_compute_api:os-aggregates:delete'TNS OpenStack Nova/Compute Security GuideUnix

ACCESS CONTROL

10. OpenStack Compute - Policy.json - 'os_compute_api:os-console-auth-tokens'TNS OpenStack Nova/Compute Security GuideUnix

ACCESS CONTROL

11. OpenStack Compute - Policy.json - 'os_compute_api:os-lock-server:unlock'TNS OpenStack Nova/Compute Security GuideUnix

ACCESS CONTROL

18. OpenStack Compute - Policy.json - 'compute_extension:flavor_access:removeTenantAccess'TNS OpenStack Nova/Compute Security GuideUnix

ACCESS CONTROL

26. OpenStack Compute - Policy.json - 'compute_extension:admin_actions'TNS OpenStack Nova/Compute Security GuideUnix

ACCESS CONTROL

30. OpenStack Compute - Policy.json - 'os_compute_api:os-pci:detail'TNS OpenStack Nova/Compute Security GuideUnix

ACCESS CONTROL

32. OpenStack Compute - Policy.json - 'os_compute_api:os-cells:create'TNS OpenStack Nova/Compute Security GuideUnix

ACCESS CONTROL

36. OpenStack Compute - Policy.json - 'os_compute_api:os-admin-actions:reset_network'TNS OpenStack Nova/Compute Security GuideUnix

ACCESS CONTROL

42. OpenStack Compute - Policy.json - 'os_compute_api:os-cells:update'TNS OpenStack Nova/Compute Security GuideUnix

ACCESS CONTROL

43. OpenStack Compute - Policy.json - 'os_compute_api:os-hypervisors'TNS OpenStack Nova/Compute Security GuideUnix

ACCESS CONTROL

52. OpenStack Compute - Policy.json - 'os_compute_api:ips:show'TNS OpenStack Nova/Compute Security GuideUnix

ACCESS CONTROL

62. OpenStack Networking - Policy.json - 'delete_agent'TNS OpenStack Neutron/Networking Security GuideUnix

ACCESS CONTROL

63. OpenStack Networking - Policy.json - 'delete_firewall'TNS OpenStack Neutron/Networking Security GuideUnix

ACCESS CONTROL

65. OpenStack Compute - Policy.json - 'os_compute_api:os-quota-sets:delete'TNS OpenStack Nova/Compute Security GuideUnix

ACCESS CONTROL

65. OpenStack Networking - Policy.json - 'update_network'TNS OpenStack Neutron/Networking Security GuideUnix

ACCESS CONTROL

66. OpenStack Compute - Policy.json - 'os_compute_api:os-pci:show'TNS OpenStack Nova/Compute Security GuideUnix

ACCESS CONTROL

72. OpenStack Networking - Policy.json - 'create_port:binding:profile'TNS OpenStack Neutron/Networking Security GuideUnix

ACCESS CONTROL

77. OpenStack Networking - Policy.json - 'get_metering_label_rule'TNS OpenStack Neutron/Networking Security GuideUnix

ACCESS CONTROL

81. OpenStack Networking - Policy.json - 'delete_firewall_rule'TNS OpenStack Neutron/Networking Security GuideUnix

ACCESS CONTROL

89. OpenStack Networking - Policy.json - 'delete_metering_label_rule'TNS OpenStack Neutron/Networking Security GuideUnix

ACCESS CONTROL

89.30 (L1) Ensure 'Profile System Performance' is set to 'Administrators, NT SERVICE\WdiServiceHost'CIS Microsoft Intune for Windows 11 v4.0.0 L1Windows

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY

90. OpenStack Networking - Policy.json - 'create_floatingip'TNS OpenStack Neutron/Networking Security GuideUnix

ACCESS CONTROL

91. OpenStack Networking - Policy.json - 'get_port:binding:profile'TNS OpenStack Neutron/Networking Security GuideUnix

ACCESS CONTROL

98. OpenStack Networking - Policy.json - 'delete_subnet'TNS OpenStack Neutron/Networking Security GuideUnix

ACCESS CONTROL

105. OpenStack Compute - Policy.json - 'os_compute_api:os-flavor-extra-specs:delete'TNS OpenStack Nova/Compute Security GuideUnix

ACCESS CONTROL

108. OpenStack Compute - Policy.json - 'admin_or_owner'TNS OpenStack Nova/Compute Security GuideUnix

ACCESS CONTROL

111. OpenStack Compute - Policy.json - 'os_compute_api:os-aggregates:add_host'TNS OpenStack Nova/Compute Security GuideUnix

ACCESS CONTROL

117. OpenStack Compute - Policy.json - 'compute_extension:floating_ips_bulk'TNS OpenStack Nova/Compute Security GuideUnix

ACCESS CONTROL

122. OpenStack Compute - Policy.json - 'compute_extension:admin_actions:resume'TNS OpenStack Nova/Compute Security GuideUnix

ACCESS CONTROL

127. OpenStack Compute - Policy.json - 'compute_extension:admin_actions:createBackup'TNS OpenStack Nova/Compute Security GuideUnix

ACCESS CONTROL

145. OpenStack Compute - Policy.json - 'os_compute_api:server-metadata:update_all'TNS OpenStack Nova/Compute Security GuideUnix

ACCESS CONTROL

ACLs: Filter for RFC 3330 addresses (192.0.2.0/24)TNS Alcatel-Lucent TiMOS/Nokia SR-OS Best Practice AuditAlcatel

SYSTEM AND COMMUNICATIONS PROTECTION

ACLs: Filter for RFC 3330 addresses (240.0.0.0/4)TNS Alcatel-Lucent TiMOS/Nokia SR-OS Best Practice AuditAlcatel

SYSTEM AND COMMUNICATIONS PROTECTION

Authentication: local authentication is available as a last resortTNS Alcatel-Lucent TiMOS/Nokia SR-OS Best Practice AuditAlcatel

IDENTIFICATION AND AUTHENTICATION

BGP: Disable Capability NegotiationTNS Alcatel-Lucent TiMOS/Nokia SR-OS Best Practice AuditAlcatel

SYSTEM AND COMMUNICATIONS PROTECTION

CPM Filtering: Filter for ICMP - echo-replyTNS Alcatel-Lucent TiMOS/Nokia SR-OS Best Practice AuditAlcatel

SYSTEM AND COMMUNICATIONS PROTECTION

EX16-ED-002400 - The application must update malicious code protection mechanisms whenever new releases are available in accordance with organizational configuration management policy and procedures.DISA Microsoft Exchange 2016 Edge Transport Server STIG v2r6Windows

SYSTEM AND INFORMATION INTEGRITY

GEN006560 - The system vulnerability assessment tool, host-based intrusion detection tool, and file integrity tool must notify the SA and the IAO of a security breach or a suspected security breach.DISA STIG Solaris 10 X86 v2r4Unix

CONFIGURATION MANAGEMENT, SYSTEM AND INFORMATION INTEGRITY

ICMP: Do not return Proxy ARP requestsTNS Alcatel-Lucent TiMOS/Nokia SR-OS Best Practice AuditAlcatel

SYSTEM AND COMMUNICATIONS PROTECTION

PANW-IP-000033 - To protect against unauthorized data mining, the Palo Alto Networks security platform must detect and prevent code injection attacks launched against application objects including, at a minimum, application URLs and application code.DISA STIG Palo Alto IDPS v3r2Palo_Alto

ACCESS CONTROL

PANW-IP-000045 - Palo Alto Networks security platform components, including sensors, event databases, and management consoles must integrate with a network-wide monitoring capability.DISA STIG Palo Alto IDPS v3r2Palo_Alto

SYSTEM AND INFORMATION INTEGRITY

Password Complexity: Require a minimum length of 8 charactersTNS Alcatel-Lucent TiMOS/Nokia SR-OS Best Practice AuditAlcatel

IDENTIFICATION AND AUTHENTICATION

SNMP: Use SNMPv3 onlyTNS Alcatel-Lucent TiMOS/Nokia SR-OS Best Practice AuditAlcatel

IDENTIFICATION AND AUTHENTICATION

Time: System has a primary NTP server setTNS Alcatel-Lucent TiMOS/Nokia SR-OS Best Practice AuditAlcatel

AUDIT AND ACCOUNTABILITY

TiMOS/SR-OS : OS Version is up to dateTNS Alcatel-Lucent TiMOS/Nokia SR-OS Best Practice AuditAlcatel

CONFIGURATION MANAGEMENT

TNS_IBM_HTTP_Server_Linux_Best_Practice.auditTNS IBM HTTP Server Best PracticeUnix
TNS_OpenStack_Networking_Security_Guide.auditTNS OpenStack Neutron/Networking Security GuideUnix