Item Search

NameAudit NamePluginCategory
2.2.6 Ensure 'REMOTE_LOGIN_PASSWORDFILE' Is Set to 'NONE'CIS Oracle Server 19c DB Unified Auditing v1.2.0OracleDB

ACCESS CONTROL

5.2.15 Ensure 'GRANT ANY ROLE' Is Revoked from Unauthorized 'GRANTEE'CIS Oracle Server 19c DB Unified Auditing v1.2.0OracleDB

ACCESS CONTROL, MEDIA PROTECTION

Access data sources across domains - Internet ZoneMSCT Windows Server 2016 MS v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Access this computer from the networkMSCT Windows Server 2016 MS v1.0.0Windows

ACCESS CONTROL

Act as part of the operating systemMSCT Windows Server 2016 MS v1.0.0Windows

ACCESS CONTROL

Allow cut copy or paste operations from the clipboard via script - Restricted Sites ZoneMSCT Windows Server 2016 MS v1.0.0Windows

CONFIGURATION MANAGEMENT

Allow drag and drop or copy and paste files - Restricted Sites ZoneMSCT Windows Server 2016 MS v1.0.0Windows

CONFIGURATION MANAGEMENT

Allow script-initiated windows without size or position constraints - Internet ZoneMSCT Windows Server 2016 MS v1.0.0Windows

CONFIGURATION MANAGEMENT

Allow updates to status bar via script - Restricted Sites ZoneMSCT Windows Server 2016 MS v1.0.0Windows

CONFIGURATION MANAGEMENT

Always install with elevated privilegesMSCT Windows Server 2016 MS v1.0.0Windows

ACCESS CONTROL

Always prompt for password upon connectionMSCT Windows Server 2016 MS v1.0.0Windows

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

Apply UAC restrictions to local accounts on network logonMSCT Windows Server 2016 MS v1.0.0Windows

ACCESS CONTROL

Audit LogoffMSCT Windows Server 2016 MS v1.0.0Windows

AUDIT AND ACCOUNTABILITY

Audit Process CreationMSCT Windows Server 2016 MS v1.0.0Windows

AUDIT AND ACCOUNTABILITY

Audit Removable StorageMSCT Windows Server 2016 MS v1.0.0Windows

AUDIT AND ACCOUNTABILITY

Audit System IntegrityMSCT Windows Server 2016 MS v1.0.0Windows

AUDIT AND ACCOUNTABILITY

Configure Windows SmartScreenMSCT Windows Server 2016 MS v1.0.0Windows

ACCESS CONTROL

Disallow Digest authenticationMSCT Windows Server 2016 MS v1.0.0Windows

ACCESS CONTROL

Do not allow drive redirectionMSCT Windows Server 2016 MS v1.0.0Windows

CONFIGURATION MANAGEMENT

Domain member: Digitally encrypt secure channel data (when possible)MSCT Windows Server 2016 MS v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

Domain member: Require strong (Windows 2000 or later) session keyMSCT Windows Server 2016 MS v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

Download signed ActiveX controls - Internet ZoneMSCT Windows Server 2016 MS v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Download signed ActiveX controls - Restricted Sites ZoneMSCT Windows Server 2016 MS v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Enable insecure guest logonsMSCT Windows Server 2016 MS v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

Enable local admin password managementMSCT Windows Server 2016 MS v1.0.0Windows

ACCESS CONTROL

Enforce password historyMSCT Windows Server 2016 MS v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

Enumerate local users on domain-joined computersMSCT Windows Server 2016 MS v1.0.0Windows

ACCESS CONTROL

Internet Explorer Processes - FEATURE_DISABLE_MK_PROTOCOL - (Reserved)MSCT Windows Server 2016 MS v1.0.0Windows

CONFIGURATION MANAGEMENT

Internet Explorer Processes - FEATURE_RESTRICT_FILEDOWNLOAD - explorer.exeMSCT Windows Server 2016 MS v1.0.0Windows

CONFIGURATION MANAGEMENT

Internet Explorer Processes - FEATURE_WINDOW_RESTRICTIONS - (Reserved)MSCT Windows Server 2016 MS v1.0.0Windows

CONFIGURATION MANAGEMENT

Internet Explorer Processes - FEATURE_WINDOW_RESTRICTIONS - iexplore.exeMSCT Windows Server 2016 MS v1.0.0Windows

CONFIGURATION MANAGEMENT

Java permissions - Trusted Sites ZoneMSCT Windows Server 2016 MS v1.0.0Windows

CONFIGURATION MANAGEMENT

Minimum password lengthMSCT Windows Server 2016 MS v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

Modify firmware environment valuesMSCT Windows Server 2016 MS v1.0.0Windows

ACCESS CONTROL

Network security: Minimum session security for NTLM SSP based (including secure RPC) serversMSCT Windows Server 2016 MS v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Password protect the screen saverMSCT Windows Server 2016 MS v1.0.0Windows

ACCESS CONTROL

Prevent enabling lock screen slide showMSCT Windows Server 2016 MS v1.0.0Windows

CONFIGURATION MANAGEMENT

Prevent managing SmartScreen FilterMSCT Windows Server 2016 MS v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Prevent per-user installation of ActiveX controlsMSCT Windows Server 2016 MS v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Remove 'Run this time' button for outdated ActiveX controls in Internet ExplorerMSCT Windows Server 2016 MS v1.0.0Windows

CONFIGURATION MANAGEMENT

Restore files and directoriesMSCT Windows Server 2016 MS v1.0.0Windows

ACCESS CONTROL

Run .NET Framework-reliant components not signed with Authenticode - Restricted Sites ZoneMSCT Windows Server 2016 MS v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Run ActiveX controls and pluginsMSCT Windows Server 2016 MS v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Security Zones: Do not allow users to add/delete sitesMSCT Windows Server 2016 MS v1.0.0Windows

CONFIGURATION MANAGEMENT

Turn off Data Execution Prevention for ExplorerMSCT Windows Server 2016 MS v1.0.0Windows

CONFIGURATION MANAGEMENT

Turn on PowerShell Script Block Logging - EnableScriptBlockLoggingMSCT Windows Server 2016 MS v1.0.0Windows

ACCESS CONTROL

Turn on Protected Mode - Internet ZoneMSCT Windows Server 2016 MS v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Turn on SmartScreen Filter scan - Internet ZoneMSCT Windows Server 2016 MS v1.0.0Windows

SYSTEM AND INFORMATION INTEGRITY

Turn On Virtualization Based Security - HypervisorEnforcedCodeIntegrityMSCT Windows Server 2016 MS v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

User Account Control: Behavior of the elevation prompt for administrators in Admin Approval ModeMSCT Windows Server 2016 MS v1.0.0Windows

ACCESS CONTROL