Item Search

NameAudit NamePluginCategory
2.4 Disable NIS Server Services - domainCIS Solaris 11 L1 v1.1.0Unix
2.5 Disable NIS Client Services - clientCIS Solaris 11 L1 v1.1.0Unix
2.6 Disable Kerberos TGT Expiration WarningCIS Solaris 11.2 L1 v1.1.0Unix
2.7 Disable Generic Security Services (GSS)CIS Solaris 11.2 L1 v1.1.0Unix
2.8 Disable Removable Volume Manager - smserverCIS Solaris 11 L1 v1.1.0Unix
2.9 Disable automount ServiceCIS Solaris 11 L1 v1.1.0Unix
2.12 Configure TCP Wrappers - hosts.allowCIS Solaris 11 L1 v1.1.0Unix

SYSTEM AND COMMUNICATIONS PROTECTION

3.1 Restrict Core Dumps to Protected Directory - /var/share/coresCIS Solaris 11.2 L1 v1.1.0Unix
3.1 Restrict Core Dumps to Protected Directory - global core dumps = enabledCIS Solaris 11.2 L1 v1.1.0Unix

ACCESS CONTROL

3.4 Disable Source Packet Forwarding - current ipv6 = 0CIS Solaris 11.2 L1 v1.1.0Unix

SYSTEM AND COMMUNICATIONS PROTECTION

3.6 Disable Response to ICMP Timestamp Requests - persistent ip = 0CIS Solaris 11.2 L1 v1.1.0Unix

SYSTEM AND COMMUNICATIONS PROTECTION

3.7 Disable Response to ICMP Broadcast Timestamp Requests - persistent ip = 0CIS Solaris 11.2 L1 v1.1.0Unix

SYSTEM AND COMMUNICATIONS PROTECTION

3.11 Ignore ICMP Redirect Messages - persistent ipv6 = 1CIS Solaris 11.2 L1 v1.1.0Unix

SYSTEM AND COMMUNICATIONS PROTECTION

3.12 Set Strict Multihoming - current ipv4 = 1CIS Solaris 11.2 L1 v1.1.0Unix

SYSTEM AND COMMUNICATIONS PROTECTION

6.6 Disable root login for SSHCIS Solaris 11.2 L1 v1.1.0Unix

ACCESS CONTROL

6.8 Disable Host-based Authentication for Login-based Services - rsh auth sufficient pam_rhosts_auth.so.1CIS Solaris 11.2 L1 v1.1.0Unix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

6.8 Disable Host-based Authentication for Login-based Services - rsh auth sufficient pam_rhosts_auth.so.1 /etc/pam.d/*CIS Solaris 11.2 L1 v1.1.0Unix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

6.13 Restrict at/cron to Authorized Users - /etc/cron.d/cron.allowCIS Solaris 11.2 L1 v1.1.0Unix

ACCESS CONTROL

6.14 Restrict root Login to System Console - CONSOLE = /dev/consoleCIS Solaris 11.2 L1 v1.1.0Unix

ACCESS CONTROL

6.15 Set Retry Limit for Account Lockout - LOCK_AFTER_RETRIES = yesCIS Solaris 11.2 L1 v1.1.0Unix

ACCESS CONTROL

6.16 Set EEPROM Security Mode and Log Failed Access (SPARC) - eeprom security-mode = commandCIS Solaris 11.2 L1 v1.1.0Unix

SYSTEM AND INFORMATION INTEGRITY

6.17 Secure the GRUB Menu (Intel) - grub.cfg passwordCIS Solaris 11.2 L1 v1.1.0Unix

SYSTEM AND INFORMATION INTEGRITY

6.17 Secure the GRUB Menu (Intel) - grub.d/01_passwordCIS Solaris 11.2 L1 v1.1.0Unix

SYSTEM AND INFORMATION INTEGRITY

6.17 Secure the GRUB Menu (Intel) - menu.conf timeout = 30CIS Solaris 11.2 L1 v1.1.0Unix

SYSTEM AND INFORMATION INTEGRITY

6.17 Secure the GRUB Menu (Intel) - passwd.cfg - password_pbkdf2CIS Solaris 11.2 L1 v1.1.0Unix

SYSTEM AND INFORMATION INTEGRITY

7.1 Set Password Expiration Parameters on Active Accounts - loginsCIS Solaris 11.2 L1 v1.1.0Unix

IDENTIFICATION AND AUTHENTICATION

7.1 Set Password Expiration Parameters on Active Accounts - WARNWEEKS = 4CIS Solaris 11.2 L1 v1.1.0Unix

IDENTIFICATION AND AUTHENTICATION

7.1 Set Password Expiration Parameters on Active Accounts - MINWEEKS = 1CIS Solaris 11.1 L1 v1.0.0Unix

IDENTIFICATION AND AUTHENTICATION

7.1 Set Password Expiration Parameters on Active Accounts - WARNWEEKS = 4CIS Solaris 11.1 L1 v1.0.0Unix

IDENTIFICATION AND AUTHENTICATION

7.2 Set Strong Password Creation Policies - DICTIONDBDIR = /var/passwdCIS Solaris 11.2 L1 v1.1.0Unix

IDENTIFICATION AND AUTHENTICATION

7.2 Set Strong Password Creation Policies - MAXREPEATS = 0CIS Solaris 11.1 L1 v1.0.0Unix

IDENTIFICATION AND AUTHENTICATION

7.2 Set Strong Password Creation Policies - MINDIFF = 3CIS Solaris 11.1 L1 v1.0.0Unix

IDENTIFICATION AND AUTHENTICATION

7.2 Set Strong Password Creation Policies - WHITESPACE = yesCIS Solaris 11.1 L1 v1.0.0Unix

IDENTIFICATION AND AUTHENTICATION

7.4 Set Default File Creation Mask for FTP UsersCIS Solaris 11.1 L1 v1.0.0Unix

ACCESS CONTROL

7.5 Set 'mesg n' as Default for All Users - /etc/.login mesg = nCIS Solaris 11.1 L1 v1.0.0Unix

CONFIGURATION MANAGEMENT

7.5 Set 'mesg n' as Default for All Users - /etc/profile mesg = nCIS Solaris 11.1 L1 v1.0.0Unix

CONFIGURATION MANAGEMENT

8.1 Create Warnings for Standard Login Services - etc/motd contentsCIS Solaris 11.1 L1 v1.0.0Unix

ACCESS CONTROL

8.3 Enable a Warning Banner for the GNOME ServiceCIS Solaris 11.2 L1 v1.1.0Unix

ACCESS CONTROL

9.6 Ensure root PATH Integrity - dot in pathCIS Solaris 11.2 L1 v1.1.0Unix

CONFIGURATION MANAGEMENT

9.7 Check Permissions on User Home DirectoriesCIS Solaris 11.2 L1 v1.1.0Unix

CONFIGURATION MANAGEMENT

9.8 Check Permissions on User "." (Hidden) FilesCIS Solaris 11.2 L1 v1.1.0Unix

IDENTIFICATION AND AUTHENTICATION

9.9 Check Permissions on User .netrc FilesCIS Solaris 11.2 L1 v1.1.0Unix

CONFIGURATION MANAGEMENT

9.11 Check Groups in passwd(4)CIS Solaris 11.2 L1 v1.1.0Unix

ACCESS CONTROL

9.13 Check That Defined Home Directories ExistCIS Solaris 11.2 L1 v1.1.0Unix

CONFIGURATION MANAGEMENT

9.16 Check for Duplicate GIDsCIS Solaris 11.2 L1 v1.1.0Unix

IDENTIFICATION AND AUTHENTICATION

9.18 Check for Duplicate User NamesCIS Solaris 11.1 L1 v1.0.0Unix

IDENTIFICATION AND AUTHENTICATION

9.20 Check for Presence of User .netrc FilesCIS Solaris 11.1 L1 v1.0.0Unix

IDENTIFICATION AND AUTHENTICATION

9.21 Find World Writable FilesCIS Solaris 11.2 L1 v1.1.0Unix

ACCESS CONTROL

9.24 Find Un-owned Files and DirectoriesCIS Solaris 11.1 L1 v1.0.0Unix

ACCESS CONTROL

10.2 SN.2 Remove Support for Internet Services (inetd)CIS Solaris 11.1 L2 v1.0.0Unix