2.1.3 Disable Local Graphical Login Environment - Make sure that /application/graphical-login/cde-login is disabled | CIS Solaris 10 L1 v5.2 | Unix | |
2.2 Configure sendmail Service for Local-Only Mode | CIS Solaris 11.1 L1 v1.0.0 | Unix | |
2.2 Configure sendmail Service for Local-Only Mode | CIS Solaris 11.2 L1 v1.1.0 | Unix | |
2.2.2 Disable NIS Server Daemons - Make sure that /network/nis/xfr is disabled | CIS Solaris 10 L1 v5.2 | Unix | |
2.2.4 Disable NIS+ daemons - Make sure that /network/rpc/nisplus is disabled | CIS Solaris 10 L1 v5.2 | Unix | |
2.2.7 Disable Generic Security Services (GSS) daemons - Make sure that /network/rpc/gss is disabled | CIS Solaris 10 L1 v5.2 | Unix | |
2.2.8 Disable Volume Manager - Make sure that system/filesystem/volfs is disabled | CIS Solaris 10 L1 v5.2 | Unix | |
2.2.11 Disable Apache services - Make sure that network/http:apache2 is disabled. | CIS Solaris 10 L1 v5.2 | Unix | |
2.2.12 Disable Solaris Volume Manager Services - Make sure that /system/metainit is disabled - Solaris 10 <= 11/06 | CIS Solaris 10 L1 v5.2 | Unix | |
2.2.12 Disable Solaris Volume Manager Services - Make sure that system/mdmonitor is disabled - Solaris 10 >= 8/07 | CIS Solaris 10 L1 v5.2 | Unix | |
2.2.13 Disable Solaris Volume Manager GUI - Make sure that network/rpc/meta is disabled. | CIS Solaris 10 L1 v5.2 | Unix | |
2.2.14 Disable Local RPC Port Mapping Service - Make sure that network/rpc/bind is disabled. | CIS Solaris 10 L1 v5.2 | Unix | |
2.3 Disable RPC Encryption Key | CIS Solaris 11.1 L1 v1.0.0 | Unix | |
2.3 Disable RPC Encryption Key | CIS Solaris 11.2 L1 v1.1.0 | Unix | |
2.3 Establish a Secure Baseline - Make sure that /network/smtp:sendmail only allows local connections (netservices limited) | CIS Solaris 10 L1 v5.2 | Unix | |
2.3 Establish a Secure Baseline - Make sure that application/management/seaport:default is disabled (netservices limited) | CIS Solaris 10 L1 v5.2 | Unix | |
2.3 Establish a Secure Baseline - Make sure that application/print/rfc1179:default is only limited to local connections | CIS Solaris 10 L1 v5.2 | Unix | |
2.3 Establish a Secure Baseline - Make sure that application/x11/x11-server only allows local connections (netservices limited) | CIS Solaris 10 L1 v5.2 | Unix | |
2.3 Establish a Secure Baseline - Make sure that network/finger:default is disabled (netservices limited) | CIS Solaris 10 L1 v5.2 | Unix | |
2.3 Establish a Secure Baseline - Make sure that network/ftp:default is disabled (netservices limited) | CIS Solaris 10 L1 v5.2 | Unix | |
2.3 Establish a Secure Baseline - Make sure that network/login:rlogin is disabled (netservices limited) | CIS Solaris 10 L1 v5.2 | Unix | |
2.3 Establish a Secure Baseline - Make sure that network/nfs/server:default is disabled (netservices limited) | CIS Solaris 10 L1 v5.2 | Unix | |
2.3 Establish a Secure Baseline - Make sure that network/rpc/meta is disabled (netservices limited) | CIS Solaris 10 L1 v5.2 | Unix | |
2.3 Establish a Secure Baseline - Make sure that network/rpc/metamed:default is disabled (netservices limited) | CIS Solaris 10 L1 v5.2 | Unix | |
2.3 Establish a Secure Baseline - Make sure that system/system-log only allows local connections (netservices limited) | CIS Solaris 10 L1 v5.2 | Unix | |
2.3 Establish a Secure Baseline - Make sure that system/webconsole:console only allows local connections (netservices limited) | CIS Solaris 10 L1 v5.2 | Unix | |
2.4 Disable NIS Server Services - domain | CIS Solaris 11.2 L1 v1.1.0 | Unix | |
2.4.4 Ensure idle timeout time is configured | CIS Fortigate 7.0.x v1.3.0 L1 | FortiGate | ACCESS CONTROL, CONFIGURATION MANAGEMENT |
2.5 Disable NIS Client Services - client | CIS Solaris 11.1 L1 v1.0.0 | Unix | |
2.10 Disable Apache Service | CIS Solaris 11 L1 v1.1.0 | Unix | |
2.12 Ensure centralized and remote logging is configured | CIS Docker Community Edition v1.1.0 L2 Docker | Unix | AUDIT AND ACCOUNTABILITY |
3.1.3 Check Responses TTL Field - check-response-ttl=yes | CIS Red Hat Enterprise Linux 5 L1 v2.2.1 | Unix | CONFIGURATION MANAGEMENT |
3.1.4 Disable data links support | CIS IBM DB2 9 Benchmark v3.0.1 Level 1 DB | IBM_DB2DB | |
3.1.10 Disable instance discoverability | CIS IBM DB2 9 Benchmark v3.0.1 Level 2 DB | IBM_DB2DB | |
6.1 Disable login: Services on Serial Ports 'terma' | CIS Solaris 11 L1 v1.1.0 | Unix | |
6.1 Disable login: Services on Serial Ports 'termb' | CIS Solaris 11 L1 v1.1.0 | Unix | |
6.6 (L1) Ensure 'Account Management Audit Application Group Management' is set to 'Success and Failure' | CIS Microsoft Intune for Windows 10 v4.0.0 L1 | Windows | AUDIT AND ACCOUNTABILITY |
7.1 Ensure SSL Certificates are Configured For Replication - ssl key file | CIS PostgreSQL 9.6 DB v1.0.0 | PostgreSQLDB | SYSTEM AND COMMUNICATIONS PROTECTION |
7.1.1 Set Password Expiration Days - 1-90 | CIS Red Hat Enterprise Linux 5 L1 v2.2.1 | Unix | ACCESS CONTROL |
7.1.2 Set Password Change Minimum Number of Days - 7+ | CIS Red Hat Enterprise Linux 5 L1 v2.2.1 | Unix | IDENTIFICATION AND AUTHENTICATION |
17.2.1 (L1) Ensure 'Audit Application Group Management' is set to 'Success and Failure' | CIS Microsoft Windows 10 EMS Gateway v3.0.0 L1 | Windows | AUDIT AND ACCOUNTABILITY |
17.2.1 (L1) Ensure 'Audit Application Group Management' is set to 'Success and Failure' | CIS Microsoft Windows Server 2016 v3.0.0 L1 DC | Windows | AUDIT AND ACCOUNTABILITY |
17.2.1 (L1) Ensure 'Audit Application Group Management' is set to 'Success and Failure' | CIS Microsoft Windows 10 Enterprise v4.0.0 L1 | Windows | AUDIT AND ACCOUNTABILITY |
17.2.1 (L1) Ensure 'Audit Application Group Management' is set to 'Success and Failure' | CIS Microsoft Windows 11 Stand-alone v4.0.0 L1 BL | Windows | AUDIT AND ACCOUNTABILITY |
17.2.1 Ensure 'Audit Application Group Management' is set to 'Success and Failure' | CIS Microsoft Windows Server 2019 STIG v3.0.0 L1 DC | Windows | AUDIT AND ACCOUNTABILITY |
17.2.1 Ensure 'Audit Application Group Management' is set to 'Success and Failure' | CIS Microsoft Windows Server 2022 STIG v2.0.0 L1 Domain Controller | Windows | AUDIT AND ACCOUNTABILITY |
ALMA-09-046550 - AlmaLinux OS 9 must enable Linux audit logging for the USBGuard daemon. | DISA CloudLinux AlmaLinux OS 9 STIG v1r2 | Unix | AUDIT AND ACCOUNTABILITY |
ALMA-09-056780 - AlmaLinux OS 9 audit system must protect logon UIDs from unauthorized change. | DISA CloudLinux AlmaLinux OS 9 STIG v1r2 | Unix | AUDIT AND ACCOUNTABILITY |
EX16-ED-000620 - Exchange software must be installed on a separate partition from the OS. | DISA Microsoft Exchange 2016 Edge Transport Server STIG v2r5 | Windows | SYSTEM AND COMMUNICATIONS PROTECTION |
EX19-ED-000230 - Exchange software must be installed on a separate partition from the OS. | DISA Microsoft Exchange 2019 Edge Server STIG v2r2 | Windows | SYSTEM AND COMMUNICATIONS PROTECTION |