Item Search

NameAudit NamePluginCategory
1.2 O19C-00-000200CIS Oracle Database 19c STIG v1.1.0 CAT II UnixUnix

ACCESS CONTROL

1.10.2 (L2) Ensure 'Configure extension management settings' is set to 'Enabled: { '*': {'installation_mode': 'blocked' }}'CIS Microsoft Edge v4.0.0 L2Windows

CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION

1.10.2 (L2) Ensure 'Configure extension management settings' is set to 'Enabled: { '*': {'installation_mode': 'blocked' }}'CIS Microsoft Intune for Edge v1.0.0 L2Windows

CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION

1.52 MADB-10-006200CIS MariaDB Enterprise 10.x STIG v1.1.0 CAT II MySQLDBMySQLDB

ACCESS CONTROL

1.53 MADB-10-006300CIS MariaDB Enterprise 10.x STIG v1.1.0 CAT II MySQLDBMySQLDB

ACCESS CONTROL

2.1.3 Ensure Organizations management account is not used for workloadsCIS Amazon Web Services Foundations v7.0.0 L2amazon_aws

SYSTEM AND COMMUNICATIONS PROTECTION

2.4.4 (L2) Ensure 'Extension management settings' is set to 'Enabled: { '*': {'installation_mode': 'blocked' }}'CIS Google Chrome Group Policy v1.1.0 L2Windows

CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION

2.5 Only enable TFTP if absolutely necessary - Uncomment service tftp in /etc/inet/inetd.confCIS Solaris 9 v1.3Unix

CONFIGURATION MANAGEMENT

4.1 Ensure yearly rekeying is enabled for a Snowflake accountCIS Snowflake Foundations v2.0.0 L2Snowflake

IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION

4.1.3 Minimize wildcard use in Roles and ClusterRolesCIS Google Kubernetes Engine GKE Autopilot v2.0.0 L1GCP

IDENTIFICATION AND AUTHENTICATION

6.2.3.8 Ensure events that modify the system's network environment are collectedCIS Debian Linux 13 v1.1.0 L2 ServerUnix

AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT

6.2.3.8 Ensure events that modify the system's network environment are collectedCIS Debian Linux 13 v1.1.0 L2 WorkstationUnix

AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT

6.2.3.8 Ensure events that modify the system's network environment are collectedCIS Ubuntu Linux 26.04 LTS v1.0.0 L2 ServerUnix

AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT

6.2.3.8 Ensure events that modify the system's network environment are collectedCIS Ubuntu Linux 26.04 LTS v1.0.0 L2 WorkstationUnix

AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT

6.2.3.20 Ensure session initiation information is collectedCIS SUSE Linux Enterprise 16 v1.0.0 L2 ServerUnix

AUDIT AND ACCOUNTABILITY

6.2.3.22 Ensure session initiation information is collectedCIS Debian Linux 13 v1.1.0 L2 ServerUnix

AUDIT AND ACCOUNTABILITY

6.2.3.22 Ensure session initiation information is collectedCIS Ubuntu Linux 26.04 LTS v1.0.0 L2 WorkstationUnix

AUDIT AND ACCOUNTABILITY

6.2.3.24 Ensure events that modify the system's Mandatory Access Controls are collectedCIS SUSE Linux Enterprise 16 v1.0.0 L2 ServerUnix

AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT

6.2.3.24 Ensure unlink file deletion events by users are collectedCIS Debian Linux 13 v1.1.0 L2 WorkstationUnix

AUDIT AND ACCOUNTABILITY

6.2.3.24 Ensure unlink file deletion events by users are collectedCIS Ubuntu Linux 26.04 LTS v1.0.0 L2 ServerUnix

AUDIT AND ACCOUNTABILITY

6.2.3.24 Ensure unlink file deletion events by users are collectedCIS Debian Linux 13 v1.1.0 L2 ServerUnix

AUDIT AND ACCOUNTABILITY

6.2.3.25 Ensure rename file deletion events by users are collectedCIS Ubuntu Linux 26.04 LTS v1.0.0 L2 WorkstationUnix

AUDIT AND ACCOUNTABILITY

6.2.3.25 Ensure rename file deletion events by users are collectedCIS Debian Linux 13 v1.1.0 L2 ServerUnix

AUDIT AND ACCOUNTABILITY

6.2.3.27 Ensure successful and unsuccessful attempts to use the chcon command are collectedCIS Debian Linux 13 v1.1.0 L2 ServerUnix

AUDIT AND ACCOUNTABILITY

6.2.3.27 Ensure successful and unsuccessful attempts to use the chcon command are collectedCIS Debian Linux 13 v1.1.0 L2 WorkstationUnix

AUDIT AND ACCOUNTABILITY

6.2.3.27 Ensure successful and unsuccessful attempts to use the chcon command are collectedCIS Ubuntu Linux 26.04 LTS v1.0.0 L2 ServerUnix

AUDIT AND ACCOUNTABILITY

6.2.3.32 Ensure kernel "init_module" and "finit_module" loading unloading and modification is collectedCIS Ubuntu Linux 26.04 LTS v1.0.0 L2 WorkstationUnix

AUDIT AND ACCOUNTABILITY

6.3.3.6 Ensure events that modify /etc/issue and /etc/issue.net are collectedCIS Rocky Linux 10 v1.0.0 L2 ServerUnix

AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT

6.3.3.7 Ensure events that modify /etc/hosts and /etc/hostname are collectedCIS Oracle Linux 10 v1.0.0 L2 WorkstationUnix

AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT

6.3.3.14 Ensure events that modify /etc/shadow and /etc/gshadow are collectedCIS Rocky Linux 10 v1.0.0 L2 WorkstationUnix

AUDIT AND ACCOUNTABILITY

6.3.3.17 Ensure events that modify /etc/pam.conf and /etc/pam.d/ information are collectedCIS Rocky Linux 10 v1.0.0 L2 WorkstationUnix

AUDIT AND ACCOUNTABILITY

6.3.3.22 Ensure session initiation information is collectedCIS Rocky Linux 10 v1.0.0 L2 ServerUnix

AUDIT AND ACCOUNTABILITY

6.3.3.22 Ensure session initiation information is collectedCIS AlmaLinux OS 10 v1.0.0 L2 WorkstationUnix

AUDIT AND ACCOUNTABILITY

6.3.3.22 Ensure session initiation information is collectedCIS Oracle Linux 10 v1.0.0 L2 ServerUnix

AUDIT AND ACCOUNTABILITY

6.3.3.22 Ensure session initiation information is collectedCIS Red Hat Enterprise Linux 10 v1.0.1 L2 ServerUnix

AUDIT AND ACCOUNTABILITY

6.3.3.22 Ensure session initiation information is collectedCIS AlmaLinux OS 10 v1.0.0 L2 ServerUnix

AUDIT AND ACCOUNTABILITY

6.3.3.24 Ensure unlink file deletion events by users are collectedCIS AlmaLinux OS 10 v1.0.0 L2 ServerUnix

AUDIT AND ACCOUNTABILITY

6.3.3.26 Ensure events that modify the system's Mandatory Access Controls are collectedCIS AlmaLinux OS 10 v1.0.0 L2 ServerUnix

AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT

6.3.3.30 Ensure successful and unsuccessful attempts to use the usermod command are collectedCIS Rocky Linux 10 v1.0.0 L2 WorkstationUnix

AUDIT AND ACCOUNTABILITY

6.3.3.30 Ensure successful and unsuccessful attempts to use the usermod command are collectedCIS AlmaLinux OS 10 v1.0.0 L2 ServerUnix

AUDIT AND ACCOUNTABILITY

7.1 Ensure HSTS Header is setCIS IIS 8.0 v1.5.1 Level 2Windows

SYSTEM AND COMMUNICATIONS PROTECTION

7.1 Ensure HSTS Header is setCIS IIS 7 L2 v1.8.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

ALMA-09-002770 - AlmaLinux OS 9 must log SSH connection attempts and failures to the server.DISA Cloud Linux AlmaLinux OS 9 STIG v1r7Unix

ACCESS CONTROL

BIND-9X-001010 - A BIND 9.x primary name server must limit the number of concurrent zone transfers between authorized secondary name servers.DISA BIND 9.x STIG v3r3Unix

ACCESS CONTROL

BIND-9X-001020 - The BIND 9.x secondary name server must limit the number of zones requested from a single primary name server.DISA BIND 9.x STIG v3r3Unix

ACCESS CONTROL

BIND-9X-001030 - The BIND 9.x secondary name server must limit the total number of zones the name server can request at any one time.DISA BIND 9.x STIG v3r3Unix

ACCESS CONTROL

BIND-9X-001040 - The BIND 9.x server implementation must limit the number of concurrent session client connections.DISA BIND 9.x STIG v3r3Unix

ACCESS CONTROL

BIND-9X-002480 - The BIND 9.x server implementation must limit the number of allowed dynamic update clients.DISA BIND 9.x STIG v3r3Unix

ACCESS CONTROL

MYS8-00-005100 - If passwords are used for authentication, the MySQL Database Server 8.0 must store only hashed, salted representations of passwords.DISA Oracle MySQL 8.0 v2r2 DBMySQLDB

IDENTIFICATION AND AUTHENTICATION

Review the list of Database BackupsTenable Best Practices RackSpace v2.0.0Rackspace

CONTINGENCY PLANNING