Item Search

NameAudit NamePluginCategory
2.2.10 Ensure 'SEC_MAX_FAILED_LOGIN_ATTEMPTS' Is '3' or LessCIS Oracle Server 19c DB Traditional Auditing v1.2.0OracleDB

ACCESS CONTROL

2.2.10 Ensure 'SEC_MAX_FAILED_LOGIN_ATTEMPTS' Is '3' or LessCIS Oracle Server 19c DB Unified Auditing v1.2.0OracleDB

ACCESS CONTROL

2.3.6.4 (L1) Ensure 'Domain member: Disable machine account password changes' is set to 'Disabled'CIS Microsoft Windows Server 2016 v3.0.0 L1 MSWindows

ACCESS CONTROL

2.3.6.4 (L1) Ensure 'Domain member: Disable machine account password changes' is set to 'Disabled'CIS Microsoft Windows 11 Enterprise v4.0.0 L1Windows

ACCESS CONTROL

2.3.6.4 (L1) Ensure 'Domain member: Disable machine account password changes' is set to 'Disabled'CIS Microsoft Windows Server 2019 v3.0.1 L1 DCWindows

ACCESS CONTROL

3.1 - Roles, Applications, and Authentication - Review custom rolesNetApp Security Hardening Guide for ONTAP 9 v1.7.0Netapp_API

ACCESS CONTROL

3.1.1 Client certificate authentication should not be used for usersCIS Kubernetes v1.20 Benchmark v1.0.1 L1 MasterUnix

ACCESS CONTROL

3.1.2 Service account token authentication should not be used for usersCIS Kubernetes v1.10.0 L1 MasterUnix

ACCESS CONTROL

3.3 Ensure 'PASSWORD_LIFE_TIME + PASSWORD_GRACE_TIME' Is Less Than Or Equal To '365'CIS Oracle Database 23ai v1.0.0 L1 RDBMSOracleDB

ACCESS CONTROL

3.12 (L1) Host must lock an account after a specified number of failed login attemptsCIS VMware ESXi 8.0 v1.2.0 L1VMware

ACCESS CONTROL

4.2.19 Ensure SSH LoginGraceTime is set to one minute or lessCIS Amazon Linux 2023 Server L1 v1.0.0Unix

ACCESS CONTROL

4.2.20 Ensure SSH LoginGraceTime is set to one minute or lessCIS Debian 10 Server L1 v2.0.0Unix

ACCESS CONTROL

4.4 Lock Out Accounts if Not Currently in UseCIS PostgreSQL 14 DB v 1.2.0PostgreSQLDB

ACCESS CONTROL

4.4 Lock Out Accounts if Not Currently in UseCIS PostgreSQL 17 v1.0.0 L1 PostgreSQLPostgreSQLDB

ACCESS CONTROL

4.4.2.1.2 Ensure password failed attempts lockout is configuredCIS Oracle Linux 7 v4.0.0 L1 ServerUnix

ACCESS CONTROL

4.4.3.1.1 Ensure password failed attempts lockout is configuredCIS AlmaLinux OS 8 Workstation L1 v3.0.0Unix

ACCESS CONTROL

4.4.3.1.1 Ensure password failed attempts lockout is configuredCIS Rocky Linux 8 Workstation L1 v2.0.0Unix

ACCESS CONTROL

4.4.3.1.3 Ensure password failed attempts lockout includes root accountCIS AlmaLinux OS 8 Server L2 v3.0.0Unix

ACCESS CONTROL

4.4.3.1.3 Ensure password failed attempts lockout includes root accountCIS AlmaLinux OS 8 Workstation L2 v3.0.0Unix

ACCESS CONTROL

4.4.3.1.3 Ensure password failed attempts lockout includes root accountCIS Red Hat EL8 Server L2 v3.0.0Unix

ACCESS CONTROL

4.5.2 Ensure lockout for failed password attempts is configuredCIS Amazon Linux 2023 Server L1 v1.0.0Unix

ACCESS CONTROL

5.2.1 Ensure Password Account Lockout Threshold Is ConfiguredCIS Apple macOS 10.14 v2.0.0 L1Unix

ACCESS CONTROL

5.2.1 Ensure Password Account Lockout Threshold Is ConfiguredCIS Apple macOS 10.15 Catalina v3.0.0 L1Unix

ACCESS CONTROL

5.2.1 Ensure Password Account Lockout Threshold Is ConfiguredCIS Apple macOS 15.0 Sequoia v1.0.0 L1Unix

ACCESS CONTROL

5.2.5 Ensure maxexpired is configuredCIS IBM AIX 7 v1.0.0 L1Unix

ACCESS CONTROL

5.3.3.1.2 Ensure password unlock time is configuredCIS Debian Linux 12 v1.1.0 L1 WorkstationUnix

ACCESS CONTROL

5.3.3.1.2 Ensure password unlock time is configuredCIS Red Hat Enterprise Linux 9 v2.0.0 L1 WorkstationUnix

ACCESS CONTROL

5.3.3.1.2 Ensure password unlock time is configuredCIS Rocky Linux 9 v2.0.0 L1 WorkstationUnix

ACCESS CONTROL

5.3.3.1.3 Ensure password failed attempts lockout includes root accountCIS Debian Linux 12 v1.1.0 L2 WorkstationUnix

ACCESS CONTROL

5.3.3.1.3 Ensure password failed attempts lockout includes root accountCIS Rocky Linux 9 v2.0.0 L2 WorkstationUnix

ACCESS CONTROL

5.3.3.1.3 Ensure password failed attempts lockout includes root accountCIS Red Hat Enterprise Linux 9 v2.0.0 L2 WorkstationUnix

ACCESS CONTROL

5.4 CIFS - 'cifs.guest_account is not configured'TNS NetApp Data ONTAP 7GNetApp

ACCESS CONTROL

5.5 NFS - 'wafl.default_unix_user has been configured'TNS NetApp Data ONTAP 7GNetApp

ACCESS CONTROL

5.5.2 Ensure lockout for failed password attempts is configuredCIS Fedora 28 Family Linux Workstation L1 v2.0.0Unix

ACCESS CONTROL

6.1.4 Disable 'Allow guests to connect to shared folders' - SMB SharingCIS Apple macOS 10.12 L1 v1.2.0Unix

ACCESS CONTROL

6.1.4 Disable 'Allow guests to connect to shared folders' - SMB SharingCIS Apple macOS 10.13 L1 v1.1.0Unix

ACCESS CONTROL

6.1.5 Remove Guest home folderCIS Apple OSX 10.9 L1 v1.3.0Unix

ACCESS CONTROL

6.3.2 Ensure that guest users are reviewed on a regular basisCIS Microsoft Azure Foundations v4.0.0 L1microsoft_azure

ACCESS CONTROL

8.5.2 (L1) Ensure anonymous users and dial-in callers can't start a meetingCIS Microsoft 365 Foundations v5.0.0 L1 E3microsoft_azure

ACCESS CONTROL

8.5.4 (L1) Ensure users dialing in can't bypass the lobbyCIS Microsoft 365 Foundations v5.0.0 L1 E3microsoft_azure

ACCESS CONTROL

18.10.12.1 (L1) Ensure 'Turn off cloud consumer account state content' is set to 'Enabled'CIS Microsoft Windows 10 Stand-alone v3.0.0 L1Windows

ACCESS CONTROL

18.10.12.1 (L1) Ensure 'Turn off cloud consumer account state content' is set to 'Enabled'CIS Microsoft Windows 10 Stand-alone v3.0.0 L1 BLWindows

ACCESS CONTROL

18.10.13.1 (L1) Ensure 'Turn off cloud consumer account state content' is set to 'Enabled'CIS Microsoft Windows 11 Enterprise v4.0.0 L1 BitLockerWindows

ACCESS CONTROL

18.10.13.1 (L1) Ensure 'Turn off cloud consumer account state content' is set to 'Enabled'CIS Microsoft Windows Server 2022 v4.0.0 L1 DCWindows

ACCESS CONTROL

Big Sur - Disable Guest Access to Shared SMB FoldersNIST macOS Big Sur v1.4.0 - All ProfilesUnix

ACCESS CONTROL

Monterey - Disable Guest Access to Shared SMB FoldersNIST macOS Monterey v1.0.0 - 800-53r5 HighUnix

ACCESS CONTROL

Review the List of Rackspace Users with Admin RolesTenable Best Practices RackSpace v2.0.0Rackspace

ACCESS CONTROL

Salesforce.com : Administrator Access - 'No System Administrator accounts have been created since the last scan'TNS Salesforce Best Practices Audit v1.2.0Salesforce.com

ACCESS CONTROL

Salesforce.com : Administrator Access - 'No System Administrator accounts have been modified since the last scan'TNS Salesforce Best Practices Audit v1.2.0Salesforce.com

ACCESS CONTROL

SalesForce.com : User Permissions - 'Review Active System Administrators'TNS Salesforce Best Practices Audit v1.2.0Salesforce.com

ACCESS CONTROL