Item Search

NameAudit NamePluginCategory
1.1.4.1.8 Ensure 'Navigate URL' is set to 'Enabled'CIS Microsoft Office Enterprise v1.1.0 L1Windows

SYSTEM AND COMMUNICATIONS PROTECTION

1.1.4.1.13 Ensure 'Saved from URL' is set to 'Enabled'CIS Microsoft Office Enterprise v1.1.0 L1Windows

SYSTEM AND COMMUNICATIONS PROTECTION

1.2.1 Ensure 'Configure the list of domains on which Safe Browsing will not trigger warnings' is set to 'Disabled'CIS Google Chrome L1 v3.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

1.2.2 Ensure 'Safe Browsing Protection Level' is set to 'Enabled: Safe Browsing is active in the standard mode.' or higherCIS Google Chrome L1 v3.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

1.3.3 Ensure 'Control use of insecure content exceptions' is set to 'Enabled: Do not allow any site to load mixed content'CIS Microsoft Edge L1 v2.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

1.4.2 Verify that the scheduler API service is protected by RBACCIS RedHat OpenShift Container Platform 4 v1.5.0 L1OpenShift

SYSTEM AND COMMUNICATIONS PROTECTION

1.8 Ensure 'Control SafeSites adult content filtering' is set to 'Enabled: Filter top level sites (but not embedded iframes) for adult content'CIS Google Chrome L2 v3.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

1.25 Ensure 'List of names that will bypass the HSTS policy check' is set to 'Disabled'CIS Google Chrome L1 v3.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

1.27 Ensure 'Suppress lookalike domain warnings on domains' is set to 'Disabled'CIS Google Chrome L1 v3.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

2.2.1 Ensure 'Control use of insecure content exceptions' is set to 'Enabled: Do not allow any site to load mixed content'CIS Google Chrome L1 v3.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

2.12 Ensure 'Allow proceeding from the SSL warning page' is set to 'Disabled'CIS Google Chrome L2 v3.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

2.13 Ensure 'Disable proceeding from the Safe Browsing warning page' is set to 'Enabled'CIS Google Chrome L1 v3.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

2.15 Ensure 'Force Google SafeSearch' is set to 'Enabled'CIS Google Chrome L2 v3.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

3.1 Disable Network PrefetchCIS Mozilla Firefox 102 ESR Linux L1 v1.0.0Unix

SYSTEM AND COMMUNICATIONS PROTECTION

3.1 Disable Network PrefetchCIS Mozilla Firefox 102 ESR Windows L1 v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

5.4 (L1) Host must filter Bridge Protocol Data Unit (BPDU) packetsCIS VMware ESXi 8.0 v1.1.0 L1VMware

SYSTEM AND COMMUNICATIONS PROTECTION

6.8 Ensure that PAN-DB URL Filtering is usedCIS Palo Alto Firewall 11 v1.0.0 L1Palo_Alto

SYSTEM AND COMMUNICATIONS PROTECTION

6.8 Ensure that PAN-DB URL Filtering is usedCIS Palo Alto Firewall 10 v1.1.0 L1Palo_Alto

SYSTEM AND COMMUNICATIONS PROTECTION

6.9 Ensure that PAN-DB URL Filtering is usedCIS Palo Alto Firewall 9 v1.1.0 L1Palo_Alto

SYSTEM AND COMMUNICATIONS PROTECTION

6.9 Ensure that URL Filtering uses the action of 'block' or 'override' on the URL categoriesCIS Palo Alto Firewall 11 v1.0.0 L1Palo_Alto

SYSTEM AND COMMUNICATIONS PROTECTION

6.9 Ensure that URL Filtering uses the action of 'block' or 'override' on the URL categories - override on the URL categoriesCIS Palo Alto Firewall 10 v1.1.0 L1Palo_Alto

SYSTEM AND COMMUNICATIONS PROTECTION

6.10 Ensure that URL Filtering uses the action of 'block' or 'override' on the URL categories - override on the URL categoriesCIS Palo Alto Firewall 9 v1.1.0 L1Palo_Alto

SYSTEM AND COMMUNICATIONS PROTECTION

6.12 Ensure secure URL filtering is enabled for all security policies allowing traffic to the InternetCIS Palo Alto Firewall 10 v1.1.0 L1Palo_Alto

SYSTEM AND COMMUNICATIONS PROTECTION

6.12 Ensure secure URL filtering is enabled for all security policies allowing traffic to the InternetCIS Palo Alto Firewall 11 v1.0.0 L1Palo_Alto

SYSTEM AND COMMUNICATIONS PROTECTION

6.13 Ensure secure URL filtering is enabled for all security policies allowing traffic to the InternetCIS Palo Alto Firewall 9 v1.1.0 L1Palo_Alto

SYSTEM AND COMMUNICATIONS PROTECTION

6.23 Ensure that 'Cloud Inline Categorization' on URL Filtering profiles are enabled if 'Advanced Threat Prevention' is availableCIS Palo Alto Firewall 11 v1.0.0 L1Palo_Alto

SYSTEM AND COMMUNICATIONS PROTECTION

18.9.47.5.3.1 Ensure 'Prevent users and apps from accessing dangerous websites' is set to 'Enabled: Block'CIS Azure Compute Microsoft Windows Server 2022 v1.0.0 L1 DCWindows

SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

18.9.47.5.3.1 Ensure 'Prevent users and apps from accessing dangerous websites' is set to 'Enabled: Block'CIS Azure Compute Microsoft Windows Server 2022 v1.0.0 L1 MSWindows

SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

18.10.42.6.3.1 (L1) Ensure 'Prevent users and apps from accessing dangerous websites' is set to 'Enabled: Block'CIS Microsoft Windows Server 2022 v3.0.0 L1 Domain ControllerWindows

SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

18.10.42.6.3.1 (L1) Ensure 'Prevent users and apps from accessing dangerous websites' is set to 'Enabled: Block'CIS Microsoft Windows Server 2022 v3.0.0 L1 Member ServerWindows

SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

18.10.42.6.3.1 (L1) Ensure 'Prevent users and apps from accessing dangerous websites' is set to 'Enabled: Block'CIS Microsoft Windows 11 Enterprise v3.0.0 L1 + BLWindows

SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

18.10.42.6.3.1 (L1) Ensure 'Prevent users and apps from accessing dangerous websites' is set to 'Enabled: Block'CIS Microsoft Windows 11 Enterprise v3.0.0 L1Windows

SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

18.10.43.4.3.1 Ensure 'Prevent users and apps from accessing dangerous websites' is set to 'Enabled: Block'CIS Microsoft Intune for Windows 10 v2.0.0 L1Windows

SYSTEM AND COMMUNICATIONS PROTECTION

18.10.43.4.3.1 Ensure 'Prevent users and apps from accessing dangerous websites' is set to 'Enabled: Block'CIS Microsoft Intune for Windows 10 v2.0.0 L1 + BLWindows

SYSTEM AND COMMUNICATIONS PROTECTION

18.10.43.4.3.1 Ensure 'Prevent users and apps from accessing dangerous websites' is set to 'Enabled: Block'CIS Microsoft Intune for Windows 10 v2.0.0 L1 + NGWindows

SYSTEM AND COMMUNICATIONS PROTECTION

18.10.43.4.3.1 Ensure 'Prevent users and apps from accessing dangerous websites' is set to 'Enabled: Block'CIS Microsoft Intune for Windows 11 v2.0.0 L1 + BL + NGWindows

SYSTEM AND COMMUNICATIONS PROTECTION

18.10.43.4.3.1 Ensure 'Prevent users and apps from accessing dangerous websites' is set to 'Enabled: Block'CIS Microsoft Intune for Windows 10 v2.0.0 L1 + BL + NGWindows

SYSTEM AND COMMUNICATIONS PROTECTION

18.10.43.4.3.1 Ensure 'Prevent users and apps from accessing dangerous websites' is set to 'Enabled: Block'CIS Microsoft Intune for Windows 11 v2.0.0 L1 + BLWindows

SYSTEM AND COMMUNICATIONS PROTECTION

18.10.43.4.3.1 Ensure 'Prevent users and apps from accessing dangerous websites' is set to 'Enabled: Block'CIS Microsoft Intune for Windows 11 v2.0.0 L1 + NGWindows

SYSTEM AND COMMUNICATIONS PROTECTION

18.10.43.6.3.1 Ensure 'Prevent users and apps from accessing dangerous websites' is set to 'Enabled: Block'CIS Microsoft Windows 10 Enterprise v2.0.0 L1 + BLWindows

SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

18.10.43.6.3.1 Ensure 'Prevent users and apps from accessing dangerous websites' is set to 'Enabled: Block'CIS Microsoft Windows 10 Enterprise v2.0.0 L1 + NGWindows

SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

18.10.43.6.3.1 Ensure 'Prevent users and apps from accessing dangerous websites' is set to 'Enabled: Block'CIS Microsoft Windows 10 EMS Gateway v2.0.0 L1Windows

SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

18.10.43.6.3.1 Ensure 'Prevent users and apps from accessing dangerous websites' is set to 'Enabled: Block' - Enabled: BlockCIS Microsoft Windows Server 2016 DC L1 v2.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

18.10.43.6.3.1 Ensure 'Prevent users and apps from accessing dangerous websites' is set to 'Enabled: Block' - Enabled: BlockCIS Microsoft Windows Server 2019 MS L1 v2.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

18.10.43.6.3.1 Ensure 'Prevent users and apps from accessing dangerous websites' is set to 'Enabled: Block' - Enabled: BlockCIS Microsoft Windows 10 Stand-alone v2.0.0 L1 + BLWindows

SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

18.10.43.6.3.1 Ensure 'Prevent users and apps from accessing dangerous websites' is set to 'Enabled: Block' - Enabled: BlockCIS Microsoft Windows 10 Stand-alone v2.0.0 L1 + NGWindows

SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

18.10.43.6.3.1 Ensure 'Prevent users and apps from accessing dangerous websites' is set to 'Enabled: Block' - Enabled: BlockCIS Microsoft Windows 11 Stand-alone v2.0.0 L1 + BLWindows

SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

18.10.43.6.3.1 Ensure 'Prevent users and apps from accessing dangerous websites' is set to 'Enabled: Block' - Enabled: BlockCIS Microsoft Windows Server 2016 MS L1 v2.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

20.12 Ensure 'Unnecessary websites are blocked'CIS Microsoft Windows 10 EMS Gateway v2.0.0 L1Windows

SYSTEM AND COMMUNICATIONS PROTECTION

21.9 (L1) Ensure 'Enable Network Protection' is set to 'Enabled (block mode)'CIS Microsoft Intune for Windows 11 v3.0.1 L1Windows

SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY