Item Search

NameAudit NamePluginCategory
1.47 UBTU-24-200610CIS Ubuntu Linux 24.04 LTS STIG v1.0.0 CAT IIIUnix

ACCESS CONTROL

1.80 UBTU-22-411045CIS Ubuntu Linux 22.04 LTS STIG v1.0.0 CAT IIIUnix

ACCESS CONTROL

2.3.8 Ensure 'SEC_MAX_FAILED_LOGIN_ATTEMPTS' Is Set To '3' Or LessCIS Oracle Database 23ai v1.1.0 L1 RDBMSOracleDB

ACCESS CONTROL

4.1.8 Avoid binding RBAC roles to unauthenticated users and groupsCIS Google Kubernetes Engine GKE Autopilot v2.0.0 L2GCP

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

4.1.9 Avoid binding RBAC roles to all authenticated usersCIS Google Kubernetes Engine GKE Autopilot v2.0.0 L1GCP

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

4.3 Ensure the maximum failed login attempts is set to 5CIS VMware ESXi 6.7 v1.3.0 Level 1VMware

ACCESS CONTROL

4.4.2.1.2 Ensure password failed attempts lockout is configuredCIS Red Hat Enterprise Linux 7 v4.0.0 L1 WorkstationUnix

ACCESS CONTROL

4.4.2.1.2 Ensure password failed attempts lockout is configuredCIS CentOS Linux 7 v4.0.0 L1 ServerUnix

ACCESS CONTROL

4.5.2 Ensure lockout for failed password attempts is configuredCIS Amazon Linux 2023 v1.0.0 L1 ServerUnix

ACCESS CONTROL

5.2.1 Ensure Password Account Lockout Threshold Is ConfiguredCIS Apple macOS 13.0 Ventura v4.0.0 L1Unix

ACCESS CONTROL

5.3.2.1.1 Ensure password failed attempts lockout is configuredCIS SUSE Linux Enterprise 16 v1.0.0 L1 ServerUnix

ACCESS CONTROL

5.3.2.1.1 Ensure password failed attempts lockout is configuredCIS Rocky Linux 10 v1.0.0 L1 WorkstationUnix

ACCESS CONTROL

5.3.2.1.2 Ensure password unlock time is configuredCIS AlmaLinux OS 10 v1.0.0 L1 ServerUnix

ACCESS CONTROL

5.3.2.1.2 Ensure password unlock time is configuredCIS SUSE Linux Enterprise 15 v2.0.1 L1 WorkstationUnix

ACCESS CONTROL

5.3.2.1.3 Ensure password failed attempts lockout includes root accountCIS Red Hat Enterprise Linux 10 v1.0.1 L2 ServerUnix

ACCESS CONTROL

5.3.2.2 Ensure pam_faillock module is enabledCIS Ubuntu Linux 22.04 LTS v3.0.0 L1 WorkstationUnix

ACCESS CONTROL

5.3.3.1.1 Ensure password failed attempts lockout is configuredCIS Ubuntu Linux 22.04 LTS v3.0.0 L1 ServerUnix

ACCESS CONTROL

5.3.3.1.1 Ensure password failed attempts lockout is configuredCIS Ubuntu Linux 24.04 LTS v2.0.0 L1 ServerUnix

ACCESS CONTROL

5.3.3.1.2 Ensure password unlock time is configuredCIS Rocky Linux 9 v2.0.0 L1 WorkstationUnix

ACCESS CONTROL

5.3.3.1.2 Ensure password unlock time is configuredCIS Red Hat Enterprise Linux 9 v2.0.0 L1 ServerUnix

ACCESS CONTROL

5.3.3.1.3 Ensure password failed attempts lockout includes root accountCIS Ubuntu Linux 20.04 LTS v3.0.0 L2 ServerUnix

ACCESS CONTROL

5.3.3.1.3 Ensure password failed attempts lockout includes root accountCIS Ubuntu Linux 22.04 LTS v3.0.0 L2 WorkstationUnix

ACCESS CONTROL

5.3.3.1.3 Ensure password failed attempts lockout includes root accountCIS Rocky Linux 9 v2.0.0 L2 WorkstationUnix

ACCESS CONTROL

5.3.3.1.3 Ensure password failed attempts lockout includes root accountCIS Red Hat Enterprise Linux 9 v2.0.0 L2 ServerUnix

ACCESS CONTROL

5.4.12 Ensure accounts lock for a minimum of 15 minutes after three unsuccessful logon attempts within a 15-minute timeframe - password-auth denyCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

ACCESS CONTROL

5.4.12 Ensure accounts lock for a minimum of 15 minutes after three unsuccessful logon attempts within a 15-minute timeframe - system-auth denyCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

ACCESS CONTROL

5.4.12 Ensure accounts lock for a minimum of 15 minutes after three unsuccessful logon attempts within a 15-minute timeframe - system-auth even_deny_rootCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

ACCESS CONTROL

5.4.12 Ensure accounts lock for a minimum of 15 minutes after three unsuccessful logon attempts within a 15-minute timeframe - system-auth fail_intervalCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

ACCESS CONTROL

5.4.12 Ensure accounts lock for a minimum of 15 minutes after three unsuccessful logon attempts within a 15-minute timeframe - system-auth unlock_timeCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

ACCESS CONTROL

5.4.13 Ensure lockout for unsuccessful root logon attemptsCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

ACCESS CONTROL

5.4.13 Ensure lockout for unsuccessful root logon attemptsCIS Amazon Linux 2 STIG v2.0.1 STIGUnix

ACCESS CONTROL

5.4.13 Ensure lockout for unsuccessful root logon attempts - password-auth defaultCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

ACCESS CONTROL

5.4.13 Ensure lockout for unsuccessful root logon attempts - system-auth defaultCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

ACCESS CONTROL

5.4.13 Ensure lockout for unsuccessful root logon attempts - system-auth requiredCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

ACCESS CONTROL

5.5.2 Ensure lockout for failed password attempts is configuredCIS CentOS Linux 8 Server L1 v2.0.0Unix

ACCESS CONTROL

6.2.3 Ensure all groups in /etc/passwd exist in /etc/groupCIS Ubuntu Linux 16.04 LTS Workstation L1 v2.0.0Unix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

6.2.3 Ensure all groups in /etc/passwd exist in /etc/groupCIS Ubuntu Linux 16.04 LTS Server L1 v2.0.0Unix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

6.2.12 Ensure all groups in /etc/passwd exist in /etc/groupCIS Debian Family Server L1 v1.0.0Unix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

6.2.12 Ensure all groups in /etc/passwd exist in /etc/groupCIS Debian Family Workstation L1 v1.0.0Unix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

6.2.15 Ensure all groups in /etc/passwd exist in /etc/groupCIS Ubuntu Linux 18.04 LXD Host L1 Workstation v1.0.0Unix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

6.2.15 Ensure all groups in /etc/passwd exist in /etc/groupCIS Ubuntu Linux 18.04 LXD Container L1 v1.0.0Unix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

6.2.15 Ensure all groups in /etc/passwd exist in /etc/groupCIS Ubuntu Linux 18.04 LXD Host L1 Server v1.0.0Unix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

8.3.1 Ensure that the Expiration Date is Set for all Keys in Key Vaults using RBACCIS Microsoft Azure Foundations v6.0.0 L1microsoft_azure

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, SYSTEM AND INFORMATION INTEGRITY

8.3.2 Ensure that the Expiration Date is set for All Keys in Key Vaults using access policies (legacy)CIS Microsoft Azure Foundations v6.0.0 L1microsoft_azure

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, SYSTEM AND INFORMATION INTEGRITY

8.3.3 Ensure that the Expiration Date is set for All Secrets in Key Vaults using RBACCIS Microsoft Azure Foundations v6.0.0 L1microsoft_azure

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, SYSTEM AND INFORMATION INTEGRITY

8.3.4 Ensure that the Expiration Date is set for All Secrets in Key Vaults using access policies (legacy)CIS Microsoft Azure Foundations v6.0.0 L1microsoft_azure

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, SYSTEM AND INFORMATION INTEGRITY

9.2 Check for Duplicate User NamesCIS Oracle Solaris 11.4 L1 v1.1.0Unix

ACCESS CONTROL

9.3.1.2 Ensure That Storage Account Access keys are Periodically RegeneratedCIS Microsoft Azure Foundations v6.0.0 L1microsoft_azure

ACCESS CONTROL, CONFIGURATION MANAGEMENT, MAINTENANCE

9.3.1.3 Ensure 'Allow storage account key access' for Azure Storage Accounts is 'Disabled'CIS Microsoft Azure Foundations v6.0.0 L1microsoft_azure

ACCESS CONTROL, MEDIA PROTECTION

9.13 Check Groups in passwdCIS Oracle Solaris 11.4 L1 v1.1.0Unix

ACCESS CONTROL