Item Search

NameAudit NamePluginCategory
2.1.3 Disable Local Graphical Login Environment - Make sure that /application/graphical-login/cde-login is disabledCIS Solaris 10 L1 v5.2Unix
2.2 Configure sendmail Service for Local-Only ModeCIS Solaris 11.1 L1 v1.0.0Unix
2.2 Configure sendmail Service for Local-Only ModeCIS Solaris 11.2 L1 v1.1.0Unix
2.2.2 Disable NIS Server Daemons - Make sure that /network/nis/xfr is disabledCIS Solaris 10 L1 v5.2Unix
2.2.4 Disable NIS+ daemons - Make sure that /network/rpc/nisplus is disabledCIS Solaris 10 L1 v5.2Unix
2.2.7 Disable Generic Security Services (GSS) daemons - Make sure that /network/rpc/gss is disabledCIS Solaris 10 L1 v5.2Unix
2.2.8 Disable Volume Manager - Make sure that system/filesystem/volfs is disabledCIS Solaris 10 L1 v5.2Unix
2.2.11 Disable Apache services - Make sure that network/http:apache2 is disabled.CIS Solaris 10 L1 v5.2Unix
2.2.12 Disable Solaris Volume Manager Services - Make sure that /system/metainit is disabled - Solaris 10 <= 11/06CIS Solaris 10 L1 v5.2Unix
2.2.12 Disable Solaris Volume Manager Services - Make sure that system/mdmonitor is disabled - Solaris 10 >= 8/07CIS Solaris 10 L1 v5.2Unix
2.2.13 Disable Solaris Volume Manager GUI - Make sure that network/rpc/meta is disabled.CIS Solaris 10 L1 v5.2Unix
2.2.14 Disable Local RPC Port Mapping Service - Make sure that network/rpc/bind is disabled.CIS Solaris 10 L1 v5.2Unix
2.3 Disable RPC Encryption KeyCIS Solaris 11.1 L1 v1.0.0Unix
2.3 Disable RPC Encryption KeyCIS Solaris 11.2 L1 v1.1.0Unix
2.3 Establish a Secure Baseline - Make sure that /network/smtp:sendmail only allows local connections (netservices limited)CIS Solaris 10 L1 v5.2Unix
2.3 Establish a Secure Baseline - Make sure that application/management/seaport:default is disabled (netservices limited)CIS Solaris 10 L1 v5.2Unix
2.3 Establish a Secure Baseline - Make sure that application/print/rfc1179:default is only limited to local connectionsCIS Solaris 10 L1 v5.2Unix
2.3 Establish a Secure Baseline - Make sure that application/x11/x11-server only allows local connections (netservices limited)CIS Solaris 10 L1 v5.2Unix
2.3 Establish a Secure Baseline - Make sure that network/finger:default is disabled (netservices limited)CIS Solaris 10 L1 v5.2Unix
2.3 Establish a Secure Baseline - Make sure that network/ftp:default is disabled (netservices limited)CIS Solaris 10 L1 v5.2Unix
2.3 Establish a Secure Baseline - Make sure that network/login:rlogin is disabled (netservices limited)CIS Solaris 10 L1 v5.2Unix
2.3 Establish a Secure Baseline - Make sure that network/nfs/server:default is disabled (netservices limited)CIS Solaris 10 L1 v5.2Unix
2.3 Establish a Secure Baseline - Make sure that network/rpc/meta is disabled (netservices limited)CIS Solaris 10 L1 v5.2Unix
2.3 Establish a Secure Baseline - Make sure that network/rpc/metamed:default is disabled (netservices limited)CIS Solaris 10 L1 v5.2Unix
2.3 Establish a Secure Baseline - Make sure that system/system-log only allows local connections (netservices limited)CIS Solaris 10 L1 v5.2Unix
2.3 Establish a Secure Baseline - Make sure that system/webconsole:console only allows local connections (netservices limited)CIS Solaris 10 L1 v5.2Unix
2.4 Disable NIS Server Services - domainCIS Solaris 11.2 L1 v1.1.0Unix
2.4.4 Ensure idle timeout time is configuredCIS Fortigate 7.0.x v1.3.0 L1FortiGate

ACCESS CONTROL, CONFIGURATION MANAGEMENT

2.5 Disable NIS Client Services - clientCIS Solaris 11.1 L1 v1.0.0Unix
2.10 Disable Apache ServiceCIS Solaris 11 L1 v1.1.0Unix
2.12 Ensure centralized and remote logging is configuredCIS Docker Community Edition v1.1.0 L2 DockerUnix

AUDIT AND ACCOUNTABILITY

3.1.3 Check Responses TTL Field - check-response-ttl=yesCIS Red Hat Enterprise Linux 5 L1 v2.2.1Unix

CONFIGURATION MANAGEMENT

3.1.4 Disable data links supportCIS IBM DB2 9 Benchmark v3.0.1 Level 1 DBIBM_DB2DB
3.1.10 Disable instance discoverabilityCIS IBM DB2 9 Benchmark v3.0.1 Level 2 DBIBM_DB2DB
6.1 Disable login: Services on Serial Ports 'terma'CIS Solaris 11 L1 v1.1.0Unix
6.1 Disable login: Services on Serial Ports 'termb'CIS Solaris 11 L1 v1.1.0Unix
6.6 (L1) Ensure 'Account Management Audit Application Group Management' is set to 'Success and Failure'CIS Microsoft Intune for Windows 10 v4.0.0 L1Windows

AUDIT AND ACCOUNTABILITY

7.1 Ensure SSL Certificates are Configured For Replication - ssl key fileCIS PostgreSQL 9.6 DB v1.0.0PostgreSQLDB

SYSTEM AND COMMUNICATIONS PROTECTION

7.1.1 Set Password Expiration Days - 1-90CIS Red Hat Enterprise Linux 5 L1 v2.2.1Unix

ACCESS CONTROL

7.1.2 Set Password Change Minimum Number of Days - 7+CIS Red Hat Enterprise Linux 5 L1 v2.2.1Unix

IDENTIFICATION AND AUTHENTICATION

17.2.1 (L1) Ensure 'Audit Application Group Management' is set to 'Success and Failure'CIS Microsoft Windows 10 EMS Gateway v3.0.0 L1Windows

AUDIT AND ACCOUNTABILITY

17.2.1 (L1) Ensure 'Audit Application Group Management' is set to 'Success and Failure'CIS Microsoft Windows Server 2016 v3.0.0 L1 DCWindows

AUDIT AND ACCOUNTABILITY

17.2.1 (L1) Ensure 'Audit Application Group Management' is set to 'Success and Failure'CIS Microsoft Windows 10 Enterprise v4.0.0 L1Windows

AUDIT AND ACCOUNTABILITY

17.2.1 (L1) Ensure 'Audit Application Group Management' is set to 'Success and Failure'CIS Microsoft Windows 11 Stand-alone v4.0.0 L1 BLWindows

AUDIT AND ACCOUNTABILITY

17.2.1 Ensure 'Audit Application Group Management' is set to 'Success and Failure'CIS Microsoft Windows Server 2019 STIG v3.0.0 L1 DCWindows

AUDIT AND ACCOUNTABILITY

17.2.1 Ensure 'Audit Application Group Management' is set to 'Success and Failure'CIS Microsoft Windows Server 2022 STIG v2.0.0 L1 Domain ControllerWindows

AUDIT AND ACCOUNTABILITY

ALMA-09-046550 - AlmaLinux OS 9 must enable Linux audit logging for the USBGuard daemon.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

ALMA-09-056780 - AlmaLinux OS 9 audit system must protect logon UIDs from unauthorized change.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

EX16-ED-000620 - Exchange software must be installed on a separate partition from the OS.DISA Microsoft Exchange 2016 Edge Transport Server STIG v2r5Windows

SYSTEM AND COMMUNICATIONS PROTECTION

EX19-ED-000230 - Exchange software must be installed on a separate partition from the OS.DISA Microsoft Exchange 2019 Edge Server STIG v2r2Windows

SYSTEM AND COMMUNICATIONS PROTECTION