CSCv7|2.1

Title

Maintain Inventory of Authorized Software

Description

Maintain an up-to-date list of all authorized software that is required in the enterprise for any business purpose on any business system.

Reference Item Details

Category: Inventory and Control of Software Assets

Audit Items

View all Reference Audit Items

NamePluginAudit Name
1.1 Ensure packages are obtained from authorized repositoriesUnixCIS PostgreSQL 13 OS v1.1.0
1.1 Ensure packages are obtained from authorized repositoriesUnixCIS PostgreSQL 14 OS v1.1.0
1.1 Ensure packages are obtained from authorized repositoriesUnixCIS PostgreSQL 12 OS v1.1.0
1.1 Ensure packages are obtained from authorized repositoriesUnixCIS PostgreSQL 16 OS v1.0.0
1.1 Ensure packages are obtained from authorized repositoriesUnixCIS PostgreSQL 11 OS v1.0.0
1.1 Ensure packages are obtained from authorized repositoriesUnixCIS PostgreSQL 15 OS v1.1.0
1.2 Ensure Installation of Binary PackagesUnixCIS PostgreSQL 11 OS v1.0.0
1.3 Ensure Apache Is Installed From the Appropriate BinariesUnixCIS Apache HTTP Server 2.4 L1 v2.1.0
1.3 Ensure Apache Is Installed From the Appropriate BinariesUnixCIS Apache HTTP Server 2.4 L1 v2.1.0 Middleware
1.3 Ensure Apache Is Installed From the Appropriate BinariesUnixCIS Apache HTTP Server 2.2 L1 v3.6.0 Middleware
1.3 Ensure Apache Is Installed From the Appropriate BinariesUnixCIS Apache HTTP Server 2.2 L1 v3.6.0
1.3 Ensure Apache Is Installed From the Appropriate BinariesUnixCIS Apache HTTP Server 2.2 L2 v3.6.0
1.5 Installing ISC BIND 9 - bind9 installationUnixCIS BIND DNS v1.0.0 L1 Caching Only Name Server
1.5 Installing ISC BIND 9 - bind9 installationUnixCIS BIND DNS v1.0.0 L1 Authoritative Name Server
1.5 Installing ISC BIND 9 - named locationUnixCIS BIND DNS v1.0.0 L1 Authoritative Name Server
1.5 Installing ISC BIND 9 - named locationUnixCIS BIND DNS v1.0.0 L1 Caching Only Name Server
2.2 Scan for TROJAN aka Untrusted/Unauthorized Applications (Implement Allowlist)UnixCIS IBM AIX 7.2 L1 v1.0.0
3.7 Audit Software InventoryUnixCIS Apple macOS 10.14 v2.0.0 L2
3.7 Audit Software InventoryUnixCIS Apple macOS 12.0 Monterey v3.0.0 L2
3.7 Audit Software InventoryUnixCIS Apple macOS 10.15 Catalina v3.0.0 L2
3.7 Audit Software InventoryUnixCIS Apple macOS 10.15 v2.1.0 L2
3.7 Audit Software InventoryUnixCIS Apple macOS 14.0 Sonoma v1.0.0 L2
3.7 Audit Software InventoryUnixCIS Apple macOS 13.0 Ventura v2.0.0 L2
3.7 Audit Software InventoryUnixCIS Apple macOS 11.0 Big Sur v4.0.0 L2
7.5 Ensure that Only Approved Extensions Are Installedmicrosoft_azureCIS Microsoft Azure Foundations v2.0.0 L1
CIS Control 2 (2.1(a)) Maintain and Inventory of Authorized SoftwareUnixCAS Implementation Group 1 Audit File
CIS Control 2 (2.1(b)) Maintain and Inventory of Authorized SoftwareUnixCAS Implementation Group 1 Audit File