Item Search

NameAudit NamePluginCategory
2.3.1.1 (L1) Ensure 'Accounts: Block Microsoft accounts' is set to 'Users can't add or log on with Microsoft accounts'CIS Microsoft Windows Server 2016 v4.0.0 L1 MSWindows

ACCESS CONTROL

6.1.1.8 Ensure that a Microsoft Entra Diagnostic Setting Exists to Send Microsoft Entra Activity Logs to an Appropriate DestinationCIS Microsoft Azure Foundations v6.0.0 L2microsoft_azure

AUDIT AND ACCOUNTABILITY

18.8.4.1 (L1) Ensure 'Encryption Oracle Remediation' is set to 'Enabled: Force Updated Clients'CIS Microsoft Windows 8.1 v2.4.1 L1 BitlockerWindows

IDENTIFICATION AND AUTHENTICATION

18.9.4.1 (L1) Ensure 'Encryption Oracle Remediation' is set to 'Enabled: Force Updated Clients'CIS Microsoft Windows 10 EMS Gateway v3.0.0 L1Windows

SYSTEM AND INFORMATION INTEGRITY

Domain member: Digitally encrypt secure channel data (when possible) - sealsecurechannelMSCT Windows Server 2025 MS v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

Don't run antimalware programs against ActiveX controls - Intranet ZoneMSCT Windows Server 2025 MS v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Enable insecure guest logons - AllowInsecureGuestAuthMSCT Windows Server 2025 MS v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

Enable Structured Exception Handling Overwrite Protection (SEHOP) - DisableExceptionChainValidationMSCT Windows Server 2025 MS v1.0.0Windows

CONFIGURATION MANAGEMENT

Enforce password historyMSCT Windows Server 2025 MS v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

Enumerate local users on domain-joined computersMSCT Windows Server 2025 MS v1.0.0Windows

ACCESS CONTROL

Interactive logon: Machine inactivity limit - InactivityTimeoutSecsMSCT Windows Server 2025 MS v1.0.0Windows

ACCESS CONTROL

Internet Explorer Processes - FEATURE_DISABLE_MK_PROTOCOL - (Reserved)MSCT Windows Server 2025 MS v1.0.0Windows

CONFIGURATION MANAGEMENT

Internet Explorer Processes - FEATURE_DISABLE_MK_PROTOCOL - explorer.exeMSCT Windows Server 2025 MS v1.0.0Windows

CONFIGURATION MANAGEMENT

Internet Explorer Processes - FEATURE_DISABLE_MK_PROTOCOL - iexplore.exeMSCT Windows Server 2025 MS v1.0.0Windows

CONFIGURATION MANAGEMENT

Internet Explorer Processes - FEATURE_RESTRICT_FILEDOWNLOAD - explorer.exeMSCT Windows Server 2025 MS v1.0.0Windows

CONFIGURATION MANAGEMENT

Java permissions - Locked-Down Restricted Sites ZoneMSCT Windows Server 2025 MS v1.0.0Windows

CONFIGURATION MANAGEMENT

Launching applications and files in an IFRAME - Internet ZoneMSCT Windows Server 2025 MS v1.0.0Windows

CONFIGURATION MANAGEMENT

Modify firmware environment valuesMSCT Windows Server 2025 MS v1.0.0Windows

ACCESS CONTROL

Network security: Allow LocalSystem NULL session fallback - allownullsessionfallbackMSCT Windows Server 2025 MS v1.0.0Windows

ACCESS CONTROL

Perform volume maintenance tasksMSCT Windows Server 2025 MS v1.0.0Windows

ACCESS CONTROL

Prevent bypassing SmartScreen Filter warnings about files that are not commonly downloaded from the InternetMSCT Windows Server 2025 MS v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Prevent enabling lock screen slide show - NoLockScreenSlideshowMSCT Windows Server 2025 MS v1.0.0Windows

CONFIGURATION MANAGEMENT

Profile single processMSCT Windows Server 2025 MS v1.0.0Windows

ACCESS CONTROL

Require secure RPC communication - fEncryptRPCTrafficMSCT Windows Server 2025 MS v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Select the channel for Microsoft Defender daily security intelligence updatesMSCT Windows Server 2025 MS v1.0.0Windows
Show security warning for potentially unsafe files - Restricted Sites ZoneMSCT Windows Server 2025 MS v1.0.0Windows

SYSTEM AND INFORMATION INTEGRITY

Sign-in and lock last interactive user automatically after a restart - DisableAutomaticRestartSignOnMSCT Windows Server 2025 MS v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

Specify the maximum log file size (KB) - ApplicationMSCT Windows Server 2025 MS v1.0.0Windows

AUDIT AND ACCOUNTABILITY

Specify the maximum log file size (KB) - SystemMSCT Windows Server 2025 MS v1.0.0Windows

AUDIT AND ACCOUNTABILITY

Turn off blocking of outdated ActiveX controls for Internet ExplorerMSCT Windows Server 2025 MS v1.0.0Windows

CONFIGURATION MANAGEMENT

Turn on Cross-Site Scripting Filter - Restricted Sites ZoneMSCT Windows Server 2025 MS v1.0.0Windows

CONFIGURATION MANAGEMENT

Turn on Enhanced Protected ModeMSCT Windows Server 2025 MS v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Turn on PowerShell Script Block Logging - EnableScriptBlockInvocationLoggingMSCT Windows Server 2025 MS v1.0.0Windows

ACCESS CONTROL

Turn on PowerShell Script Block Logging - EnableScriptBlockInvocationLoggingMSCT Windows 10 1809 v1.0.0Windows

ACCESS CONTROL

Turn on PowerShell Script Block Logging - EnableScriptBlockInvocationLoggingMSCT Windows 10 v21H1 v1.0.0Windows

ACCESS CONTROL

Turn on PowerShell Script Block Logging - EnableScriptBlockInvocationLoggingMSCT Windows Server v1909 DC v1.0.0Windows

ACCESS CONTROL

Turn on PowerShell Script Block Logging - EnableScriptBlockInvocationLoggingMSCT Windows 11 v24H2 v1.0.0Windows

ACCESS CONTROL

Turn on PowerShell Script Block Logging - EnableScriptBlockInvocationLoggingMSCT Windows 11 v23H2 v1.0.0Windows

ACCESS CONTROL

Turn on PowerShell Script Block Logging - EnableScriptBlockInvocationLoggingMSCT Windows 10 v2004 v1.0.0Windows

ACCESS CONTROL

Turn on PowerShell Script Block Logging - EnableScriptBlockLoggingMSCT Windows 10 1909 v1.0.0Windows

ACCESS CONTROL

Turn on PowerShell Script Block Logging - EnableScriptBlockLoggingMSCT Windows Server 2019 MS v1.0.0Windows

ACCESS CONTROL

Turn on PowerShell Script Block Logging - EnableScriptBlockLoggingMSCT Windows 10 1903 v1.19.9Windows

ACCESS CONTROL

Turn on Protected Mode - Restricted Sites ZoneMSCT Windows Server 2025 MS v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Turn on SmartScreen Filter scan - Restricted Sites ZoneMSCT Windows Server 2025 MS v1.0.0Windows

SYSTEM AND INFORMATION INTEGRITY

User Account Control: Admin Approval Mode for the Built-in Administrator account - FilterAdministratorTokenMSCT Windows Server 2025 MS v1.0.0Windows

ACCESS CONTROL

User Account Control: Only elevate UIAccess applications that are installed in secure locations - EnableSecureUIAPathsMSCT Windows Server 2025 MS v1.0.0Windows

ACCESS CONTROL

Web sites in less privileged Web content zones can navigate into this zone - Internet ZoneMSCT Windows Server 2025 MS v1.0.0Windows

ACCESS CONTROL

Windows Defender Firewall: Protect all network connections - Domain ProfileMSCT Windows Server 2025 MS v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

WN10-00-000040 - Windows 10 systems must be maintained at a supported servicing level.DISA Microsoft Windows 10 STIG v3r6Windows

SYSTEM AND SERVICES ACQUISITION

WNDF-AV-000008 - Microsoft Defender AV must be configured to disable local setting override for reporting to Microsoft MAPS.DISA Microsoft Defender Antivirus STIG v2r9Windows

SYSTEM AND COMMUNICATIONS PROTECTION