Item Search

NameAudit NamePluginCategory
1.1.1.5 Set 'Enforce password history' to '24 or more password(s)'CIS Windows 8 L1 v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

1.1.1.8 Set 'Minimum password age' to '1 or more day(s)'CIS Windows 8 L1 v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

1.1.2.5 Set 'Audit Policy: DS Access: Directory Service Access' to 'No Auditing'CIS Windows 8 L1 v1.0.0Windows

AUDIT AND ACCOUNTABILITY

1.1.2.12 Set 'Audit Policy: System: Security System Extension' to 'Success and Failure'CIS Windows 8 L1 v1.0.0Windows

AUDIT AND ACCOUNTABILITY

1.1.2.22 Set 'Audit Policy: Object Access: Central Access Policy Staging' to 'No Auditing'CIS Windows 8 L1 v1.0.0Windows

AUDIT AND ACCOUNTABILITY

1.1.2.24 Set 'Audit Policy: Account Logon: Kerberos Authentication Service' to 'No Auditing'CIS Windows 8 L1 v1.0.0Windows

AUDIT AND ACCOUNTABILITY

1.1.2.25 Set 'Audit Policy: Logon-Logoff: Logoff' to 'Success'CIS Windows 8 L1 v1.0.0Windows

AUDIT AND ACCOUNTABILITY

1.1.2.27 Set 'Audit Policy: DS Access: Directory Service Changes' to 'No Auditing'CIS Windows 8 L1 v1.0.0Windows

AUDIT AND ACCOUNTABILITY

1.1.2.31 Set 'Audit Policy: Logon-Logoff: Account Lockout' to 'No Auditing'CIS Windows 8 L1 v1.0.0Windows

AUDIT AND ACCOUNTABILITY

1.1.2.33 Set 'Audit Policy: Object Access: File Share' to 'No Auditing'CIS Windows 8 L1 v1.0.0Windows

AUDIT AND ACCOUNTABILITY

1.1.2.39 Set 'Audit Policy: DS Access: Detailed Directory Service Replication' to 'No Auditing'CIS Windows 8 L1 v1.0.0Windows

AUDIT AND ACCOUNTABILITY

1.1.2.42 Set 'Audit Policy: Privilege Use: Non Sensitive Privilege Use' to 'No Auditing'CIS Windows 8 L1 v1.0.0Windows

AUDIT AND ACCOUNTABILITY

1.1.2.43 Set 'Audit Policy: Object Access: Certification Services' to 'No Auditing'CIS Windows 8 L1 v1.0.0Windows

AUDIT AND ACCOUNTABILITY

1.1.2.44 Set 'Audit Policy: Logon-Logoff: Special Logon' to 'Success'CIS Windows 8 L1 v1.0.0Windows

AUDIT AND ACCOUNTABILITY

1.1.2.52 Set 'Audit Policy: Logon-Logoff: IPsec Extended Mode' to 'No AuditingCIS Windows 8 L1 v1.0.0Windows

AUDIT AND ACCOUNTABILITY

1.1.2.54 Set 'Audit Policy: Object Access: File System' to 'No Auditing'CIS Windows 8 L1 v1.0.0Windows

AUDIT AND ACCOUNTABILITY

1.1.3.2.2 Enable 'Audit: Force audit policy subcategory settings (Windows Vista or later) to override audit policy category settings'CIS Windows 8 L1 v1.0.0Windows

AUDIT AND ACCOUNTABILITY

1.1.3.2.4 Configure 'Audit: Audit the access of global system objects'CIS Windows 8 L1 v1.0.0Windows

AUDIT AND ACCOUNTABILITY

1.1.3.5.3 Set 'Domain member: Digitally encrypt secure channel data (when possible)' to 'Enabled'CIS Windows 8 L1 v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

1.1.3.6.2 Set 'Interactive logon: Smart card removal behavior' to 'Lock Workstation'CIS Windows 8 L1 v1.0.0Windows

ACCESS CONTROL

1.1.3.6.5 Set 'Interactive logon: Number of previous logons to cache (in case domain controller is not available)' to '4 or fewer logon(s)'CIS Windows 8 L1 v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

1.1.3.6.7 Set 'Interactive logon: Prompt user to change password before expiration' to '14 or more day(s)'CIS Windows 8 L1 v1.0.0Windows

CONFIGURATION MANAGEMENT

1.1.3.6.10 Set 'Interactive logon: Machine inactivity limit' to '900 or fewer seconds'CIS Windows 8 L1 v1.0.0Windows

ACCESS CONTROL

1.1.3.8.2 Set 'Microsoft network server: Amount of idle time required before suspending session' to '15 or fewer minute(s)'CIS Windows 8 L1 v1.0.0Windows

CONFIGURATION MANAGEMENT

1.1.3.8.4 Set 'Microsoft network server: Server SPN target name validation level' to 'Accept if provided by client'CIS Windows 8 L1 v1.0.0Windows

CONFIGURATION MANAGEMENT

1.1.3.9.2 Configure 'MSS: (NtfsDisable8dot3NameCreation) Enable the computer to stop generating 8.3 style filenames'CIS Windows 8 L1 v1.0.0Windows

CONFIGURATION MANAGEMENT

1.1.3.9.3 Set 'MSS: (AutoAdminLogon) Enable Automatic Logon (not recommended)' to 'Disabled'CIS Windows 8 L1 v1.0.0Windows

ACCESS CONTROL

1.1.3.9.6 Set 'MSS: (AutoReboot) Allow Windows to automatically restart after a system crash' to 'Not Defined'CIS Windows 8 L1 v1.0.0Windows

CONFIGURATION MANAGEMENT

1.1.3.9.7 Configure 'MSS: (TcpMaxDataRetransmissions) How many times unacknowledged data is retransmitted (3 recommended, 5 is default)'CIS Windows 8 L1 v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

1.1.3.9.12 Configure 'MSS: (NoNameReleaseOnDemand) Allow the computer to ignore NetBIOS name release requests except from WINS servers'CIS Windows 8 L1 v1.0.0Windows

SYSTEM AND INFORMATION INTEGRITY

1.1.3.9.14 Set 'MSS: (ScreenSaverGracePeriod) The time in seconds before the screen saver grace period expires (0 recommended)' to '0'CIS Windows 8 L1 v1.0.0Windows

ACCESS CONTROL

1.1.3.10.6 Set 'Network access: Sharing and security model for local accounts' to 'Classic - local users authenticate as themselves'CIS Windows 8 L1 v1.0.0Windows

CONFIGURATION MANAGEMENT, IDENTIFICATION AND AUTHENTICATION

1.1.3.11.1 Set 'Network security: Do not store LAN Manager hash value on next password change' to 'Enabled'CIS Windows 8 L1 v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

1.1.3.11.4 Set 'Network security: Allow LocalSystem NULL session fallback' to 'Disabled'CIS Windows 8 L1 v1.0.0Windows

ACCESS CONTROL

1.1.3.11.11 Set 'Network security: LAN Manager authentication level' to 'Send NTLMv2 response only. Refuse LM & NTLM'CIS Windows 8 L1 v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

1.1.3.11.14 Configure 'Network Security: Restrict NTLM: Incoming NTLM traffic'CIS Windows 8 L1 v1.0.0Windows

CONFIGURATION MANAGEMENT

1.1.3.11.17 Configure 'Network security: Force logoff when logon hours expire'CIS Windows 8 L1 v1.0.0Windows

ACCESS CONTROL

1.1.3.13.2 Set 'Shutdown: Allow system to be shut down without having to log on' to 'Enabled'CIS Windows 8 L1 v1.0.0Windows

ACCESS CONTROL

1.1.3.14.1 Configure 'System cryptography: Force strong key protection for user keys stored on the computer'CIS Windows 8 L1 v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

1.1.3.14.2 Set 'System cryptography: Use FIPS compliant algorithms for encryption, hashing, and signing' to 'Enabled'CIS Windows 8 L1 v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

1.1.3.17.8 Set 'User Account Control: Allow UIAccess applications to prompt for elevation without using the secure desktop' to 'Disabled'CIS Windows 8 L1 v1.0.0Windows

ACCESS CONTROL

1.1.4.1 Configure 'Allow log on through Remote Desktop Services'CIS Windows 8 L1 v1.0.0Windows

ACCESS CONTROL

1.1.4.18 Set 'Back up files and directories' to 'Administrators'CIS Windows 8 L1 v1.0.0Windows

ACCESS CONTROL

1.1.4.23 Set 'Restore files and directories' to 'Administrators'CIS Windows 8 L1 v1.0.0Windows

ACCESS CONTROL

1.1.4.25 Set 'Impersonate a client after authentication' to 'Administrators, SERVICE, Local Service, Network Service'CIS Windows 8 L1 v1.0.0Windows

ACCESS CONTROL

1.1.4.26 Configure 'Log on as a batch job'CIS Windows 8 L1 v1.0.0Windows

ACCESS CONTROL

2.7.1 Ensure 'Document Information Panel Beaconing UI' is set to Enabled (Always show UI)CIS Microsoft Office 2016 v1.1.0Windows

CONFIGURATION MANAGEMENT

2.34.2.1 Ensure 'Online Content Options' is set to Enabled (Allow Office to connect to the internet)CIS Microsoft Office 2016 v1.1.0Windows

CONFIGURATION MANAGEMENT

2.35.1.1 Ensure 'Allow PNG As an Output Format' is set to DisabledCIS Microsoft Office 2016 v1.1.0Windows

CONFIGURATION MANAGEMENT

2.36.1.1 Ensure 'Improve Proofing Tools' is set to DisabledCIS Microsoft Office 2016 v1.1.0Windows

CONFIGURATION MANAGEMENT