CSCv7|18.1

Title

Establish Secure Coding Practices

Description

Establish secure coding practices appropriate to the programming language and development environment being used.

Reference Item Details

Category: Application Software Security

Audit Items

View all Reference Audit Items

NamePluginAudit Name
2.4.3 Ensure keepalive_timeout is 10 seconds or less, but not 0UnixCIS NGINX Benchmark v2.0.1 L1 Webserver
2.4.3 Ensure keepalive_timeout is 10 seconds or less, but not 0UnixCIS NGINX Benchmark v2.0.1 L1 Loadbalancer
2.4.3 Ensure keepalive_timeout is 10 seconds or less, but not 0UnixCIS NGINX Benchmark v2.0.1 L1 Proxy
2.4.4 Ensure send_timeout is set to 10 seconds or less, but not 0UnixCIS NGINX Benchmark v2.0.1 L1 Loadbalancer
2.4.4 Ensure send_timeout is set to 10 seconds or less, but not 0UnixCIS NGINX Benchmark v2.0.1 L1 Proxy
2.4.4 Ensure send_timeout is set to 10 seconds or less, but not 0UnixCIS NGINX Benchmark v2.0.1 L1 Webserver
2.5.1 Ensure server_tokens directive is set to 'off'UnixCIS NGINX Benchmark v2.0.1 L1 Webserver
2.5.2 Ensure default error and index.html pages do not reference NGINXUnixCIS NGINX Benchmark v2.0.1 L1 Webserver
2.5.2 Ensure default error and index.html pages do not reference NGINXUnixCIS NGINX Benchmark v2.0.1 L1 Loadbalancer
2.5.2 Ensure default error and index.html pages do not reference NGINXUnixCIS NGINX Benchmark v2.0.1 L1 Proxy
2.5.3 Ensure hidden file serving is disabledUnixCIS NGINX Benchmark v2.0.1 L2 Webserver
2.5.4 Ensure the NGINX reverse proxy does not enable information disclosure - ServerUnixCIS NGINX Benchmark v2.0.1 L1 Loadbalancer
2.5.4 Ensure the NGINX reverse proxy does not enable information disclosure - ServerUnixCIS NGINX Benchmark v2.0.1 L1 Proxy
2.5.4 Ensure the NGINX reverse proxy does not enable information disclosure - X-Powered-ByUnixCIS NGINX Benchmark v2.0.1 L1 Loadbalancer
2.5.4 Ensure the NGINX reverse proxy does not enable information disclosure - X-Powered-ByUnixCIS NGINX Benchmark v2.0.1 L1 Proxy
5.2.1 Ensure timeout values for reading the client header and body are set correctly - client_body_timeoutUnixCIS NGINX Benchmark v2.0.1 L1 Loadbalancer
5.2.1 Ensure timeout values for reading the client header and body are set correctly - client_body_timeoutUnixCIS NGINX Benchmark v2.0.1 L1 Proxy
5.2.1 Ensure timeout values for reading the client header and body are set correctly - client_body_timeoutUnixCIS NGINX Benchmark v2.0.1 L1 Webserver
5.2.1 Ensure timeout values for reading the client header and body are set correctly - client_header_timeoutUnixCIS NGINX Benchmark v2.0.1 L1 Loadbalancer
5.2.1 Ensure timeout values for reading the client header and body are set correctly - client_header_timeoutUnixCIS NGINX Benchmark v2.0.1 L1 Webserver
5.2.1 Ensure timeout values for reading the client header and body are set correctly - client_header_timeoutUnixCIS NGINX Benchmark v2.0.1 L1 Proxy
5.2.2 Ensure the maximum request body size is set correctlyUnixCIS NGINX Benchmark v2.0.1 L1 Webserver
5.2.2 Ensure the maximum request body size is set correctlyUnixCIS NGINX Benchmark v2.0.1 L1 Loadbalancer
5.2.2 Ensure the maximum request body size is set correctlyUnixCIS NGINX Benchmark v2.0.1 L1 Proxy
5.2.3 Ensure the maximum buffer size for URIs is definedUnixCIS NGINX Benchmark v2.0.1 L1 Loadbalancer
5.2.3 Ensure the maximum buffer size for URIs is definedUnixCIS NGINX Benchmark v2.0.1 L1 Proxy
5.2.3 Ensure the maximum buffer size for URIs is definedUnixCIS NGINX Benchmark v2.0.1 L1 Webserver
5.2.4 Ensure the number of connections per IP address is limitedUnixCIS NGINX Benchmark v2.0.1 L2 Loadbalancer
5.2.4 Ensure the number of connections per IP address is limitedUnixCIS NGINX Benchmark v2.0.1 L2 Webserver
5.2.4 Ensure the number of connections per IP address is limitedUnixCIS NGINX Benchmark v2.0.1 L2 Proxy
5.2.5 Ensure rate limits by IP address are setUnixCIS NGINX Benchmark v2.0.1 L2 Loadbalancer
5.2.5 Ensure rate limits by IP address are setUnixCIS NGINX Benchmark v2.0.1 L2 Webserver
5.2.5 Ensure rate limits by IP address are setUnixCIS NGINX Benchmark v2.0.1 L2 Proxy
5.3.1 Ensure X-Frame-Options header is configured and enabledUnixCIS NGINX Benchmark v2.0.1 L1 Webserver
5.3.2 Ensure X-Content-Type-Options header is configured and enabledUnixCIS NGINX Benchmark v2.0.1 L1 Webserver
5.3.4 Ensure the Referrer Policy is enabled and configured properlyUnixCIS NGINX Benchmark v2.0.1 L2 Webserver