Item Search

NameAudit NamePluginCategory
1.2.1 Ensure 'Permitted IP Addresses' is set to those necessary for device managementCIS Palo Alto Firewall 10 v1.0.0 L1Palo_Alto
1.2.1 Ensure 'Permitted IP Addresses' is set to those necessary for device managementCIS Palo Alto Firewall 9 v1.0.1 L1Palo_Alto
1.2.2 Ensure 'Permitted IP Addresses' is set for all management profiles where SSH, HTTPS, or SNMP is enabled - HTTPSCIS Palo Alto Firewall 10 v1.0.0 L1Palo_Alto
1.2.2 Ensure 'Permitted IP Addresses' is set for all management profiles where SSH, HTTPS, or SNMP is enabled - HTTPSCIS Palo Alto Firewall 9 v1.0.1 L1Palo_Alto
1.2.2 Ensure 'Permitted IP Addresses' is set for all management profiles where SSH, HTTPS, or SNMP is enabled - SNMPCIS Palo Alto Firewall 9 v1.0.1 L1Palo_Alto
1.2.2 Ensure 'Permitted IP Addresses' is set for all management profiles where SSH, HTTPS, or SNMP is enabled - SNMPCIS Palo Alto Firewall 10 v1.0.0 L1Palo_Alto
1.2.2 Ensure 'Permitted IP Addresses' is set for all management profiles where SSH, HTTPS, or SNMP is enabled - SSHCIS Palo Alto Firewall 10 v1.0.0 L1Palo_Alto
1.2.2 Ensure 'Permitted IP Addresses' is set for all management profiles where SSH, HTTPS, or SNMP is enabled - SSHCIS Palo Alto Firewall 9 v1.0.1 L1Palo_Alto
1.2.4 Create 'access-list' for use with 'line vty' - 'ACL deny is configured'CIS Cisco IOS 17 L1 v1.0.0Cisco
1.2.4 Create 'access-list' for use with 'line vty' - 'ACL deny is configured'CIS Cisco IOS 16 L1 v1.1.2Cisco
1.2.4 Create 'access-list' for use with 'line vty' - 'ACL deny is configured'CIS Cisco IOS 15 L1 v4.1.0Cisco
1.2.4 Create 'access-list' for use with 'line vty' - 'ACL deny is configured'CIS Cisco IOS 16 L1 v1.1.1Cisco
1.2.4 Create 'access-list' for use with 'line vty' - 'ACL permit tcp is configured'CIS Cisco IOS 17 L1 v1.0.0Cisco
1.2.4 Create 'access-list' for use with 'line vty' - 'ACL permit tcp is configured'CIS Cisco IOS 16 L1 v1.1.2Cisco
1.2.4 Create 'access-list' for use with 'line vty' - 'ACL permit tcp is configured'CIS Cisco IOS 15 L1 v4.1.0Cisco
1.2.4 Create 'access-list' for use with 'line vty' - 'ACL permit tcp is configured'CIS Cisco IOS 16 L1 v1.1.1Cisco
1.2.5 Set 'access-class' for 'line vty'CIS Cisco IOS 16 L1 v1.1.2Cisco
1.2.5 Set 'access-class' for 'line vty'CIS Cisco IOS 17 L1 v1.0.0Cisco
1.2.5 Set 'access-class' for 'line vty'CIS Cisco IOS 15 L1 v4.1.0Cisco
1.2.5 Set 'access-class' for 'line vty'CIS Cisco IOS 16 L1 v1.1.1Cisco
1.5.5 Set the ACL for each 'snmp-server community'CIS Cisco IOS 16 L1 v1.1.2Cisco
1.5.5 Set the ACL for each 'snmp-server community'CIS Cisco IOS 17 L1 v1.0.0Cisco
1.5.5 Set the ACL for each 'snmp-server community'CIS Cisco IOS 15 L1 v4.1.0Cisco
1.5.5 Set the ACL for each 'snmp-server community'CIS Cisco IOS 16 L1 v1.1.1Cisco
1.5.5 Set the ACL for each 'snmp-server community'CIS Cisco IOS 16 L1 v1.1.0Cisco
1.5.6 Create an 'access-list' for use with SNMP - 'SNMP deny secured by ACL'CIS Cisco IOS 17 L1 v1.0.0Cisco
1.5.6 Create an 'access-list' for use with SNMP - 'SNMP deny secured by ACL'CIS Cisco IOS 16 L1 v1.1.2Cisco
1.5.6 Create an 'access-list' for use with SNMP - 'SNMP deny secured by ACL'CIS Cisco IOS 15 L1 v4.1.0Cisco
1.5.6 Create an 'access-list' for use with SNMP - 'SNMP deny secured by ACL'CIS Cisco IOS 16 L1 v1.1.1Cisco
1.5.6 Create an 'access-list' for use with SNMP - 'SNMP permit secured by ACL'CIS Cisco IOS 16 L1 v1.1.2Cisco
1.5.6 Create an 'access-list' for use with SNMP - 'SNMP permit secured by ACL'CIS Cisco IOS 17 L1 v1.0.0Cisco
1.5.6 Create an 'access-list' for use with SNMP - 'SNMP permit secured by ACL'CIS Cisco IOS 15 L1 v4.1.0Cisco
1.5.6 Create an 'access-list' for use with SNMP - 'SNMP permit secured by ACL'CIS Cisco IOS 16 L1 v1.1.1Cisco
1.5.7 Set 'snmp-server host' when using SNMPCIS Cisco IOS 16 L1 v1.1.2Cisco
1.5.7 Set 'snmp-server host' when using SNMPCIS Cisco IOS 17 L1 v1.0.0Cisco
1.5.7 Set 'snmp-server host' when using SNMPCIS Cisco IOS 16 L1 v1.1.0Cisco
1.5.7 Set 'snmp-server host' when using SNMPCIS Cisco IOS 15 L1 v4.1.0Cisco
1.5.7 Set 'snmp-server host' when using SNMPCIS Cisco IOS 16 L1 v1.1.1Cisco
1.5.8 Set 'snmp-server enable traps snmp'CIS Cisco IOS 17 L1 v1.0.0Cisco
1.5.8 Set 'snmp-server enable traps snmp'CIS Cisco IOS 16 L1 v1.1.2Cisco
1.5.8 Set 'snmp-server enable traps snmp'CIS Cisco IOS 16 L1 v1.1.0Cisco
1.5.8 Set 'snmp-server enable traps snmp'CIS Cisco IOS 15 L1 v4.1.0Cisco
1.5.8 Set 'snmp-server enable traps snmp'CIS Cisco IOS 16 L1 v1.1.1Cisco
2.4.2 Ensure all the login accounts having specific trusted hosts enabledCIS Fortigate Level 1 v1.0.0FortiGate
3.1 Enable the Firewall Stealth RuleCIS Check Point Firewall L2 v1.1.0CheckPoint

SYSTEM AND COMMUNICATIONS PROTECTION

3.1.1 Ensure Caller ID is setCIS Juniper OS Benchmark v2.0.0 L1Juniper

CONFIGURATION MANAGEMENT

3.1.1 Ensure Caller ID is setCIS Juniper OS Benchmark v2.1.0 L1Juniper

SYSTEM AND COMMUNICATIONS PROTECTION

3.1.2 Ensure access profile is set to use CHAPCIS Juniper OS Benchmark v2.0.0 L1Juniper

IDENTIFICATION AND AUTHENTICATION

5.1 Ensure Common SNMP Community Strings are NOT usedCIS Juniper OS Benchmark v2.0.0 L1Juniper

IDENTIFICATION AND AUTHENTICATION

6.10.2.7 Ensure Web-Management Interface Restriction is set to OOB ManagementCIS Juniper OS Benchmark v2.1.0 L2Juniper

SYSTEM AND COMMUNICATIONS PROTECTION