| 2.3 Ensure an IAM Role for Amazon EC2 is created for Web Tier | CIS Amazon Web Services Three-tier Web Architecture L1 1.0.0 | amazon_aws | ACCESS CONTROL |
| 2.4 Ensure an IAM Role for Amazon EC2 is created for App Tier | CIS Amazon Web Services Three-tier Web Architecture L1 1.0.0 | amazon_aws | ACCESS CONTROL |
| 2.5 Ensure AutoScaling Group Launch Configuration for Web Tier is configured to use a customer created Web-Tier IAM Role | CIS Amazon Web Services Three-tier Web Architecture L1 1.0.0 | amazon_aws | ACCESS CONTROL |
| 2.6 Ensure AutoScaling Group Launch Configuration for App Tier is configured to use an App-Tier IAM Role | CIS Amazon Web Services Three-tier Web Architecture L1 1.0.0 | amazon_aws | ACCESS CONTROL |
| 2.13.2 - PCM - enhanced RBAC (AIX 6.1 only) - 'Enhanced RBAC is enabled' | CIS AIX 5.3/6.1 L2 v1.1.0 | Unix | ACCESS CONTROL |
| 2.13.2 - PCM - enhanced RBAC (AIX 6.1 only) - 'lskst -t domobj info' | CIS AIX 5.3/6.1 L2 v1.1.0 | Unix | ACCESS CONTROL |
| 3. OpenStack Compute - Policy.json - 'os_compute_api:os-assisted-volume-snapshots:create' | TNS OpenStack Nova/Compute Security Guide | Unix | ACCESS CONTROL |
| 5. OpenStack Compute - Policy.json - 'os_compute_api:os-migrate-server:migrate_live' | TNS OpenStack Nova/Compute Security Guide | Unix | ACCESS CONTROL |
| 5.3 Reduce the sudo timeout period | CIS Apple OSX 10.9 L1 v1.3.0 | Unix | ACCESS CONTROL |
| 5.3 Reduce the sudo timeout period | CIS Apple macOS 10.12 L1 v1.2.0 | Unix | ACCESS CONTROL |
| 5.3 Reduce the sudo timeout period | CIS Apple macOS 10.13 L1 v1.1.0 | Unix | ACCESS CONTROL |
| 5.3 Reduce the sudo timeout period | CIS Apple OSX 10.10 Yosemite L1 v1.2.0 | Unix | ACCESS CONTROL |
| 5.3 Reduce the sudo timeout period | CIS Apple OSX 10.11 El Capitan L1 v1.1.0 | Unix | ACCESS CONTROL |
| 5.4 Use a separate timestamp for each user/tty combo | CIS Apple macOS 10.12 L1 v1.2.0 | Unix | ACCESS CONTROL |
| 5.5 Use a separate timestamp for each user/tty combo | CIS Apple macOS 10.13 L1 v1.1.0 | Unix | ACCESS CONTROL |
| 8. OpenStack Compute - Policy.json - 'os_compute_api:os-tenant-networks' | TNS OpenStack Nova/Compute Security Guide | Unix | ACCESS CONTROL |
| 9. OpenStack Compute - Policy.json - 'os_compute_api:os-pci:index' | TNS OpenStack Nova/Compute Security Guide | Unix | ACCESS CONTROL |
| 10. OpenStack Identity - Policy.json - 'identity:list_access_token_roles' | TNS OpenStack Keystone/Identity Security Guide | Unix | ACCESS CONTROL |
| 11. OpenStack Compute - Policy.json - 'os_compute_api:os-lock-server:unlock' | TNS OpenStack Nova/Compute Security Guide | Unix | ACCESS CONTROL |
| 18 - Role Based Authentication per queue | TNS Best Practice JBoss 7 Linux | Unix | ACCESS CONTROL |
| 18. OpenStack Compute - Policy.json - 'compute_extension:flavor_access:removeTenantAccess' | TNS OpenStack Nova/Compute Security Guide | Unix | ACCESS CONTROL |
| 19 - Cluster Authentication | TNS Best Practice JBoss 7 Linux | Unix | ACCESS CONTROL |
| 22. OpenStack Compute - Policy.json - 'compute_extension:cells:delete' | TNS OpenStack Nova/Compute Security Guide | Unix | ACCESS CONTROL |
| 25. OpenStack Compute - Policy.json - 'os_compute_api:os-migrate-server:migrate' | TNS OpenStack Nova/Compute Security Guide | Unix | ACCESS CONTROL |
| 28. OpenStack Compute - Policy.json - 'os_compute_api:os-availability-zone:detail' | TNS OpenStack Nova/Compute Security Guide | Unix | ACCESS CONTROL |
| 36. OpenStack Compute - Policy.json - 'os_compute_api:os-admin-actions:reset_network' | TNS OpenStack Nova/Compute Security Guide | Unix | ACCESS CONTROL |
| 42. OpenStack Compute - Policy.json - 'os_compute_api:os-cells:update' | TNS OpenStack Nova/Compute Security Guide | Unix | ACCESS CONTROL |
| 52. OpenStack Compute - Policy.json - 'os_compute_api:ips:show' | TNS OpenStack Nova/Compute Security Guide | Unix | ACCESS CONTROL |
| 55. OpenStack Compute - Policy.json - 'compute_extension:flavormanage' | TNS OpenStack Nova/Compute Security Guide | Unix | ACCESS CONTROL |
| 61. OpenStack Compute - Policy.json - 'compute_extension:users' | TNS OpenStack Nova/Compute Security Guide | Unix | ACCESS CONTROL |
| 69. OpenStack Compute - Policy.json - 'os_compute_api:os-hide-server-addresses' | TNS OpenStack Nova/Compute Security Guide | Unix | ACCESS CONTROL |
| 78. OpenStack Compute - Policy.json - 'os_compute_api:os-assisted-volume-snapshots:delete' | TNS OpenStack Nova/Compute Security Guide | Unix | ACCESS CONTROL |
| 85. OpenStack Compute - Policy.json - 'compute_extension:console_auth_tokens' | TNS OpenStack Nova/Compute Security Guide | Unix | ACCESS CONTROL |
| 96. OpenStack Compute - Policy.json - 'os_compute_api:os-preserve-ephemeral-rebuild:discoverable' | TNS OpenStack Nova/Compute Security Guide | Unix | ACCESS CONTROL |
| 99. OpenStack Compute - Policy.json - 'os_compute_api:os-used-limits' | TNS OpenStack Nova/Compute Security Guide | Unix | ACCESS CONTROL |
| 103. OpenStack Identity - Policy.json - 'identity:list_endpoints' | TNS OpenStack Keystone/Identity Security Guide | Unix | ACCESS CONTROL |
| 106. OpenStack Compute - Policy.json - 'os_compute_api:os-flavor-extra-specs:create' | TNS OpenStack Nova/Compute Security Guide | Unix | ACCESS CONTROL |
| 110. OpenStack Identity - Policy.json - 'identity:delete_group' | TNS OpenStack Keystone/Identity Security Guide | Unix | ACCESS CONTROL |
| 113. OpenStack Identity - Policy.json - 'identity:delete_consumer' | TNS OpenStack Keystone/Identity Security Guide | Unix | ACCESS CONTROL |
| 116. OpenStack Compute - Policy.json - 'os_compute_api:os-aggregates:create' | TNS OpenStack Nova/Compute Security Guide | Unix | ACCESS CONTROL |
| 118. OpenStack Compute - Policy.json - 'os_compute_api:os-flavor-access:add_tenant_access' | TNS OpenStack Nova/Compute Security Guide | Unix | ACCESS CONTROL |
| 120. OpenStack Compute - Policy.json - 'compute_extension:server_diagnostics' | TNS OpenStack Nova/Compute Security Guide | Unix | ACCESS CONTROL |
| 123. OpenStack Compute - Policy.json - 'compute_extension:admin_actions:pause' | TNS OpenStack Nova/Compute Security Guide | Unix | ACCESS CONTROL |
| 128. OpenStack Compute - Policy.json - 'compute_extension:flavorextraspecs:create' | TNS OpenStack Nova/Compute Security Guide | Unix | ACCESS CONTROL |
| 130. OpenStack Compute - Policy.json - 'compute_extension:os-server-external-events:create' | TNS OpenStack Nova/Compute Security Guide | Unix | ACCESS CONTROL |
| 132. OpenStack Compute - Policy.json - 'os_compute_api:os-lock-server:lock' | TNS OpenStack Nova/Compute Security Guide | Unix | ACCESS CONTROL |
| 139. OpenStack Compute - Policy.json - 'os_compute_api:os-cells' | TNS OpenStack Nova/Compute Security Guide | Unix | ACCESS CONTROL |
| Review the list of active Rackspace Role Names (RBAC) | Tenable Best Practices RackSpace v2.0.0 | Rackspace | ACCESS CONTROL |
| Review the List of Users with ROLE_NAME | Tenable Best Practices RackSpace v2.0.0 | Rackspace | ACCESS CONTROL |
| XenServer - List security roles | TNS Citrix XenServer | Unix | ACCESS CONTROL |