Item Search

NameAudit NamePluginCategory
1.1.2.1.2 Ensure nodev option set on /tmp partitionCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

ACCESS CONTROL, MEDIA PROTECTION

1.1.2.3.2 Ensure nodev option set on /home partitionCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

ACCESS CONTROL, MEDIA PROTECTION

1.1.2.3.3 Ensure nosuid option set on /home partitionCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

ACCESS CONTROL, MEDIA PROTECTION

1.2.1.4 Ensure package manager repositories are configuredCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

1.3.1.1 Ensure SELinux is installedCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

ACCESS CONTROL, MEDIA PROTECTION

1.5.2 Ensure fs.protected_hardlinks is configuredCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

CONFIGURATION MANAGEMENT

1.5.6 Ensure kernel.kptr_restrict is configuredCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT

1.8.1 Ensure GDM login banner is configuredCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

ACCESS CONTROL

2.1.4 Ensure dhcp server services are not in useCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

CONFIGURATION MANAGEMENT

2.1.5 Ensure dns server services are not in useCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

CONFIGURATION MANAGEMENT

2.1.7 Ensure ftp server services are not in useCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

CONFIGURATION MANAGEMENT

2.1.16 Ensure tftp server services are not in useCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

CONFIGURATION MANAGEMENT

3.1.3 Ensure bluetooth services are not in useCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

CONFIGURATION MANAGEMENT

3.2.2 Ensure can kernel module is not availableCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

CONFIGURATION MANAGEMENT

3.2.4 Ensure tipc kernel module is not availableCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

CONFIGURATION MANAGEMENT

3.2.6 Ensure sctp kernel module is not availableCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

CONFIGURATION MANAGEMENT

3.3.1.3 Ensure net.ipv4.conf.default.forwarding is configuredCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

CONFIGURATION MANAGEMENT

3.3.1.6 Ensure net.ipv4.icmp_ignore_bogus_error_responses is configuredCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

CONFIGURATION MANAGEMENT

3.3.1.9 Ensure net.ipv4.conf.default.accept_redirects is configuredCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

CONFIGURATION MANAGEMENT

3.3.1.18 Ensure net.ipv4.tcp_syncookies is configuredCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

CONFIGURATION MANAGEMENT

4.1.1 Ensure firewalld is installedCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

SECURITY ASSESSMENT AND AUTHORIZATION, SYSTEM AND COMMUNICATIONS PROTECTION

4.1.4 Ensure firewalld active zone target is configuredCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

SECURITY ASSESSMENT AND AUTHORIZATION, SYSTEM AND COMMUNICATIONS PROTECTION

5.1.2 Ensure access to SSH private host key files is configuredCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

ACCESS CONTROL, MEDIA PROTECTION

5.1.5 Ensure sshd Banner is configuredCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

ACCESS CONTROL

5.1.6 Ensure sshd Ciphers are configuredCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION

5.1.11 Ensure sshd IgnoreRhosts is enabledCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

IDENTIFICATION AND AUTHENTICATION

5.1.16 Ensure sshd MaxAuthTries is configuredCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

AUDIT AND ACCOUNTABILITY

5.1.17 Ensure sshd MaxStartups is configuredCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

ACCESS CONTROL

5.1.18 Ensure sshd MaxSessions is configuredCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

ACCESS CONTROL

5.1.20 Ensure sshd PermitRootLogin is disabledCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

ACCESS CONTROL

5.1.22 Ensure sshd UsePAM is enabledCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

IDENTIFICATION AND AUTHENTICATION

5.2.1 Ensure sudo is installedCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

ACCESS CONTROL

5.2.2 Ensure sudo commands use ptyCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

ACCESS CONTROL

5.2.6 Ensure sudo timestamp_timeout is configuredCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

ACCESS CONTROL

5.3.1.3 Ensure pam_pwquality module is enabledCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

IDENTIFICATION AND AUTHENTICATION

5.3.1.4 Ensure pam_pwhistory module is enabledCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

IDENTIFICATION AND AUTHENTICATION

5.3.1.5 Ensure pam_unix module is enabledCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

IDENTIFICATION AND AUTHENTICATION

5.3.2.2.2 Ensure password length is configuredCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

IDENTIFICATION AND AUTHENTICATION

5.3.2.2.5 Ensure password maximum sequential characters is configuredCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

IDENTIFICATION AND AUTHENTICATION

5.3.2.2.7 Ensure password quality is enforced for the root userCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

IDENTIFICATION AND AUTHENTICATION

5.3.2.3.2 Ensure password history is enforced for the root userCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

IDENTIFICATION AND AUTHENTICATION

6.1.1 Ensure AIDE is installedCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY

6.2.1.3 Ensure journald log file rotation is configuredCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

AUDIT AND ACCOUNTABILITY

6.2.1.4 Ensure only one logging system is in useCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

AUDIT AND ACCOUNTABILITY

6.2.3.4 Ensure rsyslog log file creation mode is configuredCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, MEDIA PROTECTION

7.1.4 Ensure access to /etc/group- is configuredCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

ACCESS CONTROL, MEDIA PROTECTION

7.1.9 Ensure access to /etc/shells is configuredCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

ACCESS CONTROL, MEDIA PROTECTION

7.1.13 Ensure SUID and SGID files are reviewedCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

ACCESS CONTROL, MEDIA PROTECTION

7.2.7 Ensure no duplicate group names existCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

IDENTIFICATION AND AUTHENTICATION

7.2.9 Ensure local interactive user dot files access is configuredCIS Red Hat Enterprise Linux 10 v1.0.0 L1 ServerUnix

ACCESS CONTROL, MEDIA PROTECTION