Item Search

NameAudit NamePluginCategory
1.1 Use a Split-Horizon ArchitectureCIS BIND DNS v3.0.1 Caching Only Name ServerUnix
1.1 Use a Split-Horizon ArchitectureCIS BIND DNS v3.0.1 Authoritative Name ServerUnix
1.1 Use a Split-Horizon ArchitectureCIS BIND DNS v1.0.0 L1 Caching Only Name ServerUnix

SYSTEM AND COMMUNICATIONS PROTECTION

1.1 Use a Split-Horizon ArchitectureCIS BIND DNS v1.0.0 L1 Authoritative Name ServerUnix

SYSTEM AND COMMUNICATIONS PROTECTION

1.2.1.2 Configure 'Minimize the number of simultaneous connections to the Internet or a Windows DomainCIS Windows 8 L1 v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

1.2.1.3 Configure 'Prohibit connection to non-domain networks when connected to domain authenticated network'CIS Windows 8 L1 v1.0.0Windows

ACCESS CONTROL

1.4 Use Secure Upstream Caching DNS ServersCIS BIND DNS v3.0.1 Caching Only Name ServerUnix
1.4 Use Secure Upstream Caching DNS ServersCIS BIND DNS v1.0.0 L2 Caching Only Name ServerUnix

ACCESS CONTROL

1.6.7 Configure Network policies as appropriateCIS Kubernetes 1.11 Benchmark v1.3.0 L2Unix
1.6.7 Configure Network policies as appropriateCIS Kubernetes 1.13 Benchmark v1.4.1 L2Unix
1.6.8 Configure Network policies as appropriateCIS Kubernetes 1.7.0 Benchmark v1.1.0 L2Unix
1.6.8 Configure Network policies as appropriateCIS Kubernetes 1.8 Benchmark v1.2.0 L2Unix
3.9 Ensure that SharePoint application servers are protected by a reverse proxyCIS Microsoft SharePoint 2019 OS v1.0.0Windows

SYSTEM AND INFORMATION INTEGRITY

3.9 Ensure that SharePoint application servers are protected by a reverse proxyCIS Microsoft SharePoint 2016 OS v1.1.0Windows

SYSTEM AND INFORMATION INTEGRITY

3.11 Ensure that the SharePoint Central Administration interface is not hosted in the DMZ.CIS Microsoft SharePoint 2019 OS v1.0.0Windows

SYSTEM AND INFORMATION INTEGRITY

3.11 Ensure that the SharePoint Central Administration interface is not hosted in the DMZ.CIS Microsoft SharePoint 2016 OS v1.1.0Windows

SYSTEM AND INFORMATION INTEGRITY

4.1 Ensure 'Antivirus Update Schedule' is set to download and install updates hourlyCIS Palo Alto Firewall 8 Benchmark L1 v1.0.0Palo_Alto

SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

4.2 Ensure 'Applications and Threats Update Schedule' is set to download and install updates at daily or shorter intervalsCIS Palo Alto Firewall 8 Benchmark L1 v1.0.0Palo_Alto

SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

5.7 Ensure 'WildFire Update Schedule' is set to download and install updates every 15 minutesCIS Palo Alto Firewall 6 Benchmark L1 v1.0.0Palo_Alto

SYSTEM AND INFORMATION INTEGRITY

5.7 Ensure 'WildFire Update Schedule' is set to download and install updates every 15 minutesCIS Palo Alto Firewall 7 Benchmark L1 v1.0.0Palo_Alto

SYSTEM AND INFORMATION INTEGRITY

5.7 Ensure 'WildFire Update Schedule' is set to download and install updates every minuteCIS Palo Alto Firewall 8 Benchmark L1 v1.0.0Palo_Alto

SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

5.9 Ensure the host's network namespace is not sharedCIS Docker Community Edition v1.1.0 L1 DockerUnix

SYSTEM AND COMMUNICATIONS PROTECTION

5.30 Ensure the host's user namespaces is not sharedCIS Docker Community Edition v1.1.0 L1 DockerUnix

SYSTEM AND COMMUNICATIONS PROTECTION

8.1 Ensure 'SSL Forward Proxy Policy' for traffic destined to the Internet is configured - Invalid CategoriesCIS Palo Alto Firewall 8 Benchmark L1 v1.0.0Palo_Alto

SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

8.1 Ensure 'SSL Forward Proxy Policy' for traffic destined to the Internet is configured - PoliciesCIS Palo Alto Firewall 8 Benchmark L1 v1.0.0Palo_Alto

SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

8.2 Ensure 'SSL Inbound Inspection' is required for all untrusted traffic destined for servers using SSL or TLSCIS Palo Alto Firewall 8 Benchmark L1 v1.0.0Palo_Alto

SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

18.5.21.1 (L1) Ensure 'Minimize the number of simultaneous connections to the Internet or a Windows Domain' is set to 'Enabled: 1 = Minimize simultaneous connections'CIS Microsoft Windows 8.1 v2.4.1 L1 BitlockerWindows

ACCESS CONTROL

18.5.21.2 (L1) Ensure 'Prohibit connection to non-domain networks when connected to domain authenticated network' is set to 'Enabled'CIS Microsoft Windows 8.1 v2.4.1 L1 BitlockerWindows

ACCESS CONTROL

Prohibit connection to non-domain networks when connected to domain authenticated networkMSCT Windows 10 v2004 v1.0.0Windows

ACCESS CONTROL

Prohibit connection to non-domain networks when connected to domain authenticated networkMSCT Windows 10 1909 v1.0.0Windows

ACCESS CONTROL

Prohibit connection to non-domain networks when connected to domain authenticated networkMSCT Windows 10 1809 v1.0.0Windows

ACCESS CONTROL

Prohibit connection to non-domain networks when connected to domain authenticated networkMSCT Windows 10 v1507 v1.0.0Windows

ACCESS CONTROL

Prohibit connection to non-domain networks when connected to domain authenticated networkMSCT Windows 10 1803 v1.0.0Windows

ACCESS CONTROL

Prohibit connection to non-domain networks when connected to domain authenticated networkMSCT Windows 10 v20H2 v1.0.0Windows

ACCESS CONTROL

Prohibit connection to non-domain networks when connected to domain authenticated networkMSCT Windows 10 1903 v1.19.9Windows

ACCESS CONTROL

Prohibit connection to non-domain networks when connected to domain authenticated networkMSCT Windows 10 v21H2 v1.0.0Windows

ACCESS CONTROL