CSCv7|5

Title

Secure Configuration for Hardware and Software on Mobile Devices, Laptops, Workstations and Servers

Reference Item Details

Category: Secure Configuration for Hardware and Software on Mobile Devices, Laptops, Workstations and Servers

Audit Items

View all Reference Audit Items

NamePluginAudit Name
1.1.7 Set 'aaa accounting' to log all privileged use commands using 'commands 15'CiscoCIS Cisco IOS 15 L2 v4.1.1
1.1.7 Set 'aaa accounting' to log all privileged use commands using 'commands 15'CiscoCIS Cisco IOS 15 L2 v4.1.0
1.2 Ensure the container host has been HardenedUnixCIS Docker Community Edition v1.1.0 L1 Linux Host OS
1.2 Harden the container hostUnixCIS Docker 1.13.0 v1.0.0 L1 Linux
1.2.1 Ensure the container host has been HardenedUnixCIS Docker v1.6.0 L1 Docker Linux
1.2.1 Ensure the container host has been HardenedUnixCIS Docker v1.3.1 L1 Linux Host OS
1.2.1 Ensure the container host has been HardenedUnixCIS Docker v1.6.0 L2 Docker Linux
1.2.1 Ensure the container host has been HardenedUnixCIS Docker v1.5.0 L1 Linux Host OS
1.2.27 Ensure that the --service-account-key-file argument is set as appropriateUnixCIS Kubernetes v1.20 Benchmark v1.0.0 L1 Master
1.2.28 Ensure that the --service-account-key-file argument is set as appropriateUnixCIS Kubernetes Benchmark v1.5.1 L1
1.2.28 Ensure that the --service-account-key-file argument is set as appropriateUnixCIS Kubernetes Benchmark v1.6.1 L1 Master
1.3 Harden the container hostUnixCIS Docker 1.11.0 v1.0.0 L1 Linux
1.3 Harden the container hostUnixCIS Docker 1.12.0 v1.0.0 L1 Linux
1.4 Harden the container hostUnixCIS Docker 1.6 v1.0.0 L1 Linux
1.7 Computer Name Considerations.UnixCIS Apple macOS 11 v1.2.0 L2
1.7 Computer Name Considerations.UnixCIS Apple macOS 10.14 v1.3.0 L2
1.7 Computer Name Considerations.UnixCIS Apple macOS 10.15 v1.3.0 L2
1.7 Computer Name Considerations.UnixCIS Apple macOS 10.15 v1.4.0 L2
1.7 Computer Name Considerations.UnixCIS Apple macOS 11 v1.1.0 L2
1.7 Computer Name Considerations.UnixCIS Apple macOS 10.14 v1.4.0 L2
2.5.7 Camera Privacy and Confidentiality ConcernsUnixCIS Apple macOS 10.15 v1.4.0 L2
2.5.7 Camera Privacy and Confidentiality ConcernsUnixCIS Apple macOS 11 v1.1.0 L2
2.5.7 Camera Privacy and Confidentiality ConcernsUnixCIS Apple macOS 10.14 v1.3.0 L2
2.5.7 Camera Privacy and Confidentiality ConcernsUnixCIS Apple macOS 10.15 v1.3.0 L2
2.5.7 Camera Privacy and Confidentiality ConcernsUnixCIS Apple macOS 11 v1.2.0 L2
2.5.7 Camera Privacy and Confidentiality ConcernsUnixCIS Apple macOS 10.14 v1.4.0 L2
2.13 Review Siri SettingsUnixCIS Apple macOS 10.14 v1.4.0 L1
2.13 Review Siri SettingsUnixCIS Apple macOS 10.15 v1.3.0 L1
2.13 Review Siri SettingsUnixCIS Apple macOS 10.14 v1.3.0 L1
2.13 Review Siri SettingsUnixCIS Apple macOS 10.15 v1.4.0 L1
2.13 Review Siri SettingsUnixCIS Apple macOS 11 v1.1.0 L1
2.13 Review Siri SettingsUnixCIS Apple macOS 11 v1.2.0 L1
3.2.7 Ensure that the --hostname-override argument is not setUnixCIS Google Kubernetes Engine (GKE) v1.4.0 L1 Node
3.2.8 Ensure that the --hostname-override argument is not setUnixCIS Google Kubernetes Engine (GKE) v1.3.0 L1 Node
3.2.8 Ensure that the --hostname-override argument is not setUnixCIS Google Kubernetes Engine (GKE) v1.1.0 L1 Worker
4.2.7 Ensure that the --hostname-override argument is not setUnixCIS Kubernetes Benchmark v1.7.1 L1 Worker
4.2.7 Ensure that the --hostname-override argument is not setUnixCIS Kubernetes Benchmark v1.8.0 L1 Worker
4.2.7 Ensure that the --hostname-override argument is not setUnixCIS Kubernetes Benchmark v1.9.0 L1 Worker
4.2.8 Ensure that the --hostname-override argument is not setUnixCIS Kubernetes v1.24 Benchmark v1.0.0 L1 Worker
4.2.8 Ensure that the --hostname-override argument is not setUnixCIS Kubernetes v1.23 Benchmark v1.0.1 L1 Worker
4.2.8 Ensure that the --hostname-override argument is not setUnixCIS Kubernetes v1.20 Benchmark v1.0.0 L1 Worker
4.2.8 Ensure that the --hostname-override argument is not setUnixCIS Kubernetes v1.20 Benchmark v1.0.1 L1 Worker
4.6.3 Apply Security Context to Your Pods and ContainersGCPCIS Google Kubernetes Engine (GKE) v1.4.0 L2
4.6.3 Apply Security Context to Your Pods and ContainersGCPCIS Google Kubernetes Engine (GKE) v1.1.0 L2 Master
4.6.3 Apply Security Context to Your Pods and ContainersGCPCIS Google Kubernetes Engine (GKE) v1.3.0 L2
5.7.4 The default namespace should not be usedOpenShiftCIS RedHat OpenShift Container Platform v1.6.0 L2
5.7.4 The default namespace should not be used - BuildConfigsOpenShiftCIS RedHat OpenShift Container Platform 4 v1.5.0 L2
5.7.4 The default namespace should not be used - BuildConfigsOpenShiftCIS RedHat OpenShift Container Platform 4 v1.2.0 L2
5.7.4 The default namespace should not be used - BuildConfigsOpenShiftCIS RedHat OpenShift Container Platform 4 v1.3.0 L2
5.10.6 Enable Cloud Security Command Center (Cloud SCC)GCPCIS Google Kubernetes Engine (GKE) v1.1.0 L1 Master