1.1 Set 'Turn on Enhanced Protected Mode' to 'Enabled' | CIS IE 11 v1.0.0 | Windows | SYSTEM AND COMMUNICATIONS PROTECTION |
1.1.1.1.2 Ensure passcode is set to have at least 1 letter | CIS Zoom L2 v1.0.0 | Zoom | CONFIGURATION MANAGEMENT |
1.1.1.1.8 Ensure only allow numeric passcode is set to disabled | CIS Zoom L2 v1.0.0 | Zoom | CONFIGURATION MANAGEMENT |
1.1.1.9 Ensure only authenticated users can join meetings is set to enabled | CIS Zoom L2 v1.0.0 | Zoom | CONFIGURATION MANAGEMENT |
1.1.2.8 Ensure add watermark is set to enabled | CIS Zoom L2 v1.0.0 | Zoom | CONFIGURATION MANAGEMENT |
1.1.3.1.2 Ensure prevent participants from saving chat is set to enabled | CIS Zoom L2 v1.0.0 | Zoom | CONFIGURATION MANAGEMENT |
1.1.3.4.3 Ensure 'Who can start sharing when someone else is sharing?' is set to 'Host Only' | CIS Zoom L2 v1.0.0 | Zoom | CONFIGURATION MANAGEMENT |
1.1.3.6.2 Ensure allow saving of whiteboard content is set to disabled | CIS Zoom L2 v1.0.0 | Zoom | CONFIGURATION MANAGEMENT |
1.1.3.6.3 Ensure auto save whiteboard content when sharing is stopped is set to disabled | CIS Zoom L2 v1.0.0 | Zoom | CONFIGURATION MANAGEMENT |
1.1.3.11 Ensure co-host is set to enabled | CIS Zoom L2 v1.0.0 | Zoom | CONFIGURATION MANAGEMENT |
1.1.3.12 Ensure polling is set to enabled | CIS Zoom L2 v1.0.0 | Zoom | CONFIGURATION MANAGEMENT |
1.1.3.15 Ensure disable desktop/screen share for users is set to enabled | CIS Zoom L2 v1.0.0 | Zoom | CONFIGURATION MANAGEMENT |
1.1.4.7 Ensure closed captioning is set to disabled | CIS Zoom L2 v1.0.0 | Zoom | CONFIGURATION MANAGEMENT |
1.1.4.8 Ensure save captions is set to disabled | CIS Zoom L2 v1.0.0 | Zoom | CONFIGURATION MANAGEMENT |
1.1.4.9 Ensure far end camera control is set to disabled | CIS Zoom L1 v1.0.0 | Zoom | CONFIGURATION MANAGEMENT |
1.1.4.16 Ensure allow Skype for Business (Lync) client to join a Zoom meeting is set to disabled | CIS Zoom L2 v1.0.0 | Zoom | CONFIGURATION MANAGEMENT |
1.1.5.3 Ensure consent to Office 365 calendar integration permissions on behalf of entire account is set to disabled | CIS Zoom L2 v1.0.0 | Zoom | CONFIGURATION MANAGEMENT |
1.1.6.1.2 Ensure Send a copy to the person who scheduled the meeting/webinar for the host is set to enabled | CIS Zoom L2 v1.0.0 | Zoom | CONFIGURATION MANAGEMENT |
1.1.6.1.3 Ensure send a copy to the Alternative Hosts is set to enabled | CIS Zoom L2 v1.0.0 | Zoom | CONFIGURATION MANAGEMENT |
1.1.6.4 Ensure when an alternative host is set or removed from a meeting is set to enabled | CIS Zoom L2 v1.0.0 | Zoom | CONFIGURATION MANAGEMENT |
1.1.6.5 Enable when someone scheduled a meeting for a host is set to enabled | CIS Zoom L1 v1.0.0 | Zoom | CONFIGURATION MANAGEMENT |
1.1.7.4 Ensure allow users to contact Zoom's support via chat is set to enabled | CIS Zoom L2 v1.0.0 | Zoom | CONFIGURATION MANAGEMENT |
1.2 Set 'Allow software to run or install even if the signature is invalid' to 'Disabled' | CIS IE 11 v1.0.0 | Windows | SYSTEM AND COMMUNICATIONS PROTECTION |
1.2.6.4 Ensure passcode have at least 1 special character is set to enabled | CIS Zoom L2 v1.0.0 | Zoom | CONFIGURATION MANAGEMENT |
1.2.6.5 Ensure allow numeric passcode is set to disabled | CIS Zoom L1 v1.0.0 | Zoom | CONFIGURATION MANAGEMENT |
1.2.7.2 Ensure ask participants for consent when a recording starts is set to enabled | CIS Zoom L2 v1.0.0 | Zoom | CONFIGURATION MANAGEMENT |
1.3.1 Ensure toll call is set to enabled | CIS Zoom L2 v1.0.0 | Zoom | CONFIGURATION MANAGEMENT |
1.3.2 Ensure mask phone number in the participant list is set to enabled | CIS Zoom L2 v1.0.0 | Zoom | CONFIGURATION MANAGEMENT |
1.3.3 Ensure global dial-in countries/regions is set to enabled | CIS Zoom L2 v1.0.0 | Zoom | CONFIGURATION MANAGEMENT |
2.1 Set 'Prevent per-user installation of ActiveX controls' to 'Enabled' | CIS IE 11 v1.0.0 | Windows | SYSTEM AND COMMUNICATIONS PROTECTION |
2.1.2.1 Ensure set chat as a default tab for first-time users is set to disabled | CIS Zoom L2 v1.0.0 | Zoom | CONFIGURATION MANAGEMENT |
2.1.2.2 Ensure show H.323 contacts is set to disabled | CIS Zoom L2 v1.0.0 | Zoom | CONFIGURATION MANAGEMENT |
2.1.4.2 Ensure delete local data is set to disabled | CIS Zoom L2 v1.0.0 | Zoom | CONFIGURATION MANAGEMENT |
2.1.4.3 Ensure store edited and deleted message revisions is set to disabled | CIS Zoom L2 v1.0.0 | Zoom | CONFIGURATION MANAGEMENT |
2.2 Enable IM groups is set to the organization's needs | CIS Zoom L2 v1.0.0 | Zoom | CONFIGURATION MANAGEMENT |
2.2 Set 'Specify use of ActiveX Installer Service for installation of ActiveX controls' to 'Enabled' | CIS IE 11 v1.0.0 | Windows | CONFIGURATION MANAGEMENT |
2.3 Set 'Turn on ActiveX Filtering' to 'Enabled' | CIS IE 11 v1.0.0 | Windows | CONFIGURATION MANAGEMENT |
2.5 Set 'Do not allow ActiveX controls to run in Protected Mode when Enhanced Protected Mode is enabled' to 'Enabled' | CIS IE 11 v1.0.0 | Windows | SYSTEM AND COMMUNICATIONS PROTECTION |
3.1.1.1.3 Ensure password cannot contain consecutive characters is set to enabled | CIS Zoom L2 v1.0.0 | Zoom | CONFIGURATION MANAGEMENT |
3.1.1.2.4 Enable users can change their password 1 time every 24 hours | CIS Zoom L2 v1.0.0 | Zoom | CONFIGURATION MANAGEMENT |
3.3 Set 'Disable 'Configuring History' to 'Enabled' | CIS IE 11 v1.0.0 | Windows | AUDIT AND ACCOUNTABILITY |
3.8 Configure 'Turn off InPrivate Browsing' | CIS IE 11 v1.0.0 | Windows | CONFIGURATION MANAGEMENT |
4.1 Configure 'URL to be displayed for updates:' | CIS IE 11 v1.0.0 | Windows | SYSTEM AND INFORMATION INTEGRITY |
4.2 Set 'Update check interval (in days):' to 'Enabled:30' | CIS IE 11 v1.0.0 | Windows | SYSTEM AND INFORMATION INTEGRITY |
4.4 Configure 'Install new versions of Internet Explorer automatically' | CIS IE 11 v1.0.0 | Windows | SYSTEM AND INFORMATION INTEGRITY |
5.1 Set 'Turn off Encryption Support' to 'Use TLS 1.1 and TLS 1.2' | CIS IE 11 v1.0.0 | Windows | SYSTEM AND COMMUNICATIONS PROTECTION |
6.1 Set 'Turn off browser geolocation' to 'Enabled' | CIS IE 11 v1.0.0 | Windows | CONFIGURATION MANAGEMENT |
7.2 Set 'Scripted Window Security Restrictions' to 'Enabled' | CIS IE 11 v1.0.0 | Windows | CONFIGURATION MANAGEMENT |
7.4 Set 'Notification bar' to 'Enabled' | CIS IE 11 v1.0.0 | Windows | CONFIGURATION MANAGEMENT |
8.1.13 Set 'Download signed ActiveX controls' to 'Enabled:Disable' | CIS IE 11 v1.0.0 | Windows | SYSTEM AND COMMUNICATIONS PROTECTION |