Item Search

NameAudit NamePluginCategory
1.0.2 Use IP address rather than hostname - 'db2system = IP'CIS IBM DB2 OS L1 v1.2.0Unix

CONFIGURATION MANAGEMENT

1.2.3.3.1 Configure 'Turn Off the Display (seconds):'CIS Windows 8 L1 v1.0.0Windows

CONFIGURATION MANAGEMENT

1.12 Windows registry - 'Set USE_SHARED_SOCKET registry value to TRUE'CIS v1.1.0 Oracle 11g OS Windows Level 2Windows

CONFIGURATION MANAGEMENT

2.2.9 - Configuring SSH - set privilege separation - 'UsePrivilegeSeparation = yes'CIS AIX 5.3/6.1 L1 v1.1.0Unix

CONFIGURATION MANAGEMENT

2.2.10 - Configuring SSH - sshd_config permissions lockdown - '/etc/ssh/sshd_config root:system 600'CIS AIX 5.3/6.1 L1 v1.1.0Unix

CONFIGURATION MANAGEMENT

2.2.11 - Configuring SSH - ssh_config permissions lockdown - '/etc/ssh/ssh_config root:system 644'CIS AIX 5.3/6.1 L1 v1.1.0Unix

CONFIGURATION MANAGEMENT

2.4.6 - CDE - /etc/dt/config/Xconfig permissions and ownership - '/etc/dt/config/Xconfig root:bin 444'CIS AIX 5.3/6.1 L1 v1.1.0Unix

ACCESS CONTROL

2.05 listener.ora - 'Change default name of listener'CIS v1.1.0 Oracle 11g OS Windows Level 1Windows

CONFIGURATION MANAGEMENT

2.9 Pair the remote control infrared receiver if enabledCIS Apple macOS 10.13 L1 v1.1.0Unix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

2.11 listener.ora - 'Change standard ports'CIS v1.1.0 Oracle 11g OS L2Unix

CONFIGURATION MANAGEMENT

2.11.11 - Permissions and Ownership - '/etc/motd bin:bin 644'CIS AIX 5.3/6.1 L1 v1.1.0Unix

CONFIGURATION MANAGEMENT

2.12.7 - Miscellaneous Config - Block talk/write - '/etc/csh.login contains mesg n'CIS AIX 5.3/6.1 L2 v1.1.0Unix

CONFIGURATION MANAGEMENT

3.1.9 Require instance name for discovery requests - 'discover = known'CIS IBM DB2 OS L2 v1.2.0Unix

CONFIGURATION MANAGEMENT

3.1.18 Secure permissions for the secondary archive log location - LOGARCHMETH2 OS PermissionsCIS IBM DB2 v10 v1.1.0 Windows OS Level 2Windows

AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT

3.2.1 Set failed archive retry delay - 'archretrydelay <= 20'CIS IBM DB2 OS L2 v1.2.0Unix

CONFIGURATION MANAGEMENT

3.8 Configure 'Turn off InPrivate Browsing'CIS IE 10 v1.1.0Windows

CONFIGURATION MANAGEMENT

3.9 Verify that docker-network environment file ownership is set to root:rootCIS Docker 1.6 v1.0.0 L1 DockerUnix

CONFIGURATION MANAGEMENT

3.17 Verify that registry certificate file ownership is set to root:rootCIS Docker 1.6 v1.0.0 L1 DockerUnix

CONFIGURATION MANAGEMENT

4.02 init.ora - 'global_names = TRUE'CIS v1.1.0 Oracle 11g OS Windows Level 1Windows

CONFIGURATION MANAGEMENT

4.2 Set a default secure levelCIS FreeBSD v1.0.5Unix

CONFIGURATION MANAGEMENT

4.09 init.ora - 'Avoid using utl_file_dir parameters'CIS v1.1.0 Oracle 11g OS Windows Level 1Windows

CONFIGURATION MANAGEMENT

4.32 init.ora - 'db_securefile = ALWAYS'CIS v1.1.0 Oracle 11g OS L2Unix

CONFIGURATION MANAGEMENT

5.0.3 Enable Database Maintenance - 'auto_maint = on'CIS IBM DB2 OS L2 v1.2.0Unix

CONFIGURATION MANAGEMENT

7.2 Set 'Scripted Window Security Restrictions' to 'Enabled'CIS IE 10 v1.1.0Windows

CONFIGURATION MANAGEMENT

7.4 Restrict at/cron to authorized users (/etc/crontab permissions)CIS FreeBSD v1.0.5Unix

CONFIGURATION MANAGEMENT

7.4 Restrict at/cron to authorized users (/var/cron/allow)CIS FreeBSD v1.0.5Unix

CONFIGURATION MANAGEMENT

7.4 Set 'Notification bar' to 'Enabled'CIS IE 10 v1.1.0Windows

CONFIGURATION MANAGEMENT

8.1.6 Set 'Use Pop-up Blocker' to 'Enabled:Enable'CIS IE 10 v1.1.0Windows

CONFIGURATION MANAGEMENT

8.3.39 Configure 'First-Run Opt-In'CIS IE 10 v1.1.0Windows

CONFIGURATION MANAGEMENT

9.2 Set 'Disable the Advanced page' to 'Enabled'CIS IE 10 v1.1.0Windows

CONFIGURATION MANAGEMENT

9.6 Configure 'Do not display the reveal password button'CIS IE 11 v1.0.0Windows

CONFIGURATION MANAGEMENT, IDENTIFICATION AND AUTHENTICATION

18.8.34.6.1 Ensure 'Allow standby states (S1-S3) when sleeping (on battery)' is set to 'Disabled'CIS Windows 7 Workstation Level 2 + Bitlocker v3.2.0Windows

CONFIGURATION MANAGEMENT

18.8.34.6.2 Ensure 'Allow standby states (S1-S3) when sleeping (plugged in)' is set to 'Disabled'CIS Windows 7 Workstation Level 2 + Bitlocker v3.2.0Windows

CONFIGURATION MANAGEMENT

Allow standby states (S1-S3) when sleeping (on battery)MSCT Windows 10 1803 v1.0.0Windows

CONFIGURATION MANAGEMENT

Allow standby states (S1-S3) when sleeping (on battery)MSCT Windows 10 v21H2 v1.0.0Windows

CONFIGURATION MANAGEMENT

Allow standby states (S1-S3) when sleeping (on battery)MSCT Windows 10 v1507 v1.0.0Windows

CONFIGURATION MANAGEMENT

Allow standby states (S1-S3) when sleeping (on battery)MSCT Windows 10 1903 v1.19.9Windows

CONFIGURATION MANAGEMENT

Allow standby states (S1-S3) when sleeping (on battery)MSCT Windows 10 v2004 v1.0.0Windows

CONFIGURATION MANAGEMENT

Allow standby states (S1-S3) when sleeping (on battery)MSCT Windows 10 v20H2 v1.0.0Windows

CONFIGURATION MANAGEMENT

Allow standby states (S1-S3) when sleeping (plugged in)MSCT Windows 10 1909 v1.0.0Windows

CONFIGURATION MANAGEMENT

Allow standby states (S1-S3) when sleeping (plugged in)MSCT Windows 10 v2004 v1.0.0Windows

CONFIGURATION MANAGEMENT

Allow standby states (S1-S3) when sleeping (plugged in)MSCT Windows 10 1903 v1.19.9Windows

CONFIGURATION MANAGEMENT

Allow standby states (S1-S3) when sleeping (plugged in)MSCT Windows 10 v20H2 v1.0.0Windows

CONFIGURATION MANAGEMENT

FireEye - IPMI is enabledTNS FireEyeFireEye

CONFIGURATION MANAGEMENT

Logs containing auditing information should be secured at the directory level.TNS IBM HTTP Server Best PracticeWindows

AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT

Require a password when a computer wakes (on battery)MSCT Windows 10 1903 v1.19.9Windows

CONFIGURATION MANAGEMENT

Require a password when a computer wakes (on battery)MSCT Windows 10 v21H2 v1.0.0Windows

CONFIGURATION MANAGEMENT

Require a password when a computer wakes (plugged in)MSCT Windows 10 v20H2 v1.0.0Windows

CONFIGURATION MANAGEMENT

Require a password when a computer wakes (plugged in)MSCT Windows 10 1909 v1.0.0Windows

CONFIGURATION MANAGEMENT

XenServer - XAPI SSL certificate is in default locationTNS Citrix XenServerUnix

CONFIGURATION MANAGEMENT