CSCv7|5.1

Title

Establish Secure Configurations

Description

Maintain documented, standard security configuration standards for all authorized operating systems and software.

Reference Item Details

Category: Secure Configuration for Hardware and Software on Mobile Devices, Laptops, Workstations and Servers

Audit Items

View all Reference Audit Items

NamePluginAudit Name
1.1.1 Create Separate Partition for /tmpUnixCIS Red Hat Enterprise Linux 5 L1 v2.2.1
1.1.1 Ensure /tmp is configuredUnixCIS Ubuntu Linux 18.04 LXD Container L1 v1.0.0
1.1.1 Ensure mounting of squashfs filesystems is disabled - lsmodUnixCIS Aliyun Linux 2 L1 v1.0.0
1.1.1 Ensure mounting of squashfs filesystems is disabled - modprobeUnixCIS Aliyun Linux 2 L1 v1.0.0
1.1.1 Ensure Security Defaults is enabled on Azure Active Directorymicrosoft_azureCIS Microsoft Azure Foundations v2.0.0 L1
1.1.1.1 Ensure mounting of cramfs filesystems is disabled - lsmodUnixCIS Ubuntu Linux 18.04 LXD Host L1 LXD v1.0.0
1.1.1.1 Ensure mounting of cramfs filesystems is disabled - lsmodUnixCIS Ubuntu Linux 16.04 LTS Workstation L1 v2.0.0
1.1.1.1 Ensure mounting of cramfs filesystems is disabled - lsmodUnixCIS Red Hat Enterprise Linux 7 STIG v2.0.0 L1 Server
1.1.1.1 Ensure mounting of cramfs filesystems is disabled - lsmodUnixCIS Ubuntu Linux 18.04 LXD Host L1 Workstation v1.0.0
1.1.1.1 Ensure mounting of cramfs filesystems is disabled - lsmodUnixCIS Ubuntu Linux 18.04 LXD Host L1 Server v1.0.0
1.1.1.1 Ensure mounting of cramfs filesystems is disabled - lsmodUnixCIS Fedora 19 Family Linux Workstation L1 v1.0.0
1.1.1.1 Ensure mounting of cramfs filesystems is disabled - lsmodUnixCIS Debian Family Workstation L1 v1.0.0
1.1.1.1 Ensure mounting of cramfs filesystems is disabled - lsmodUnixCIS Distribution Independent Linux Workstation L1 v2.0.0
1.1.1.1 Ensure mounting of cramfs filesystems is disabled - lsmodUnixCIS Ubuntu Linux 16.04 LTS Server L1 v2.0.0
1.1.1.1 Ensure mounting of cramfs filesystems is disabled - lsmodUnixCIS Debian 8 Server L1 v2.0.2
1.1.1.1 Ensure mounting of cramfs filesystems is disabled - lsmodUnixCIS Debian Family Server L1 v1.0.0
1.1.1.1 Ensure mounting of cramfs filesystems is disabled - lsmodUnixCIS Debian 8 Workstation L1 v2.0.2
1.1.1.1 Ensure mounting of cramfs filesystems is disabled - lsmodUnixCIS Fedora 19 Family Linux Server L1 v1.0.0
1.1.1.1 Ensure mounting of cramfs filesystems is disabled - lsmodUnixCIS Distribution Independent Linux Server L1 v2.0.0
1.1.1.1 Ensure mounting of cramfs filesystems is disabled - lsmodUnixCIS Red Hat Enterprise Linux 7 STIG v2.0.0 L1 Workstation
1.1.1.1 Ensure mounting of cramfs filesystems is disabled - lsmodUnixCIS Amazon Linux 2 STIG v1.0.0 L1
1.1.1.1 Ensure mounting of cramfs filesystems is disabled - modprobeUnixCIS Ubuntu Linux 18.04 LXD Host L1 LXD v1.0.0
1.1.1.1 Ensure mounting of cramfs filesystems is disabled - modprobeUnixCIS Ubuntu Linux 16.04 LTS Workstation L1 v2.0.0
1.1.1.1 Ensure mounting of cramfs filesystems is disabled - modprobeUnixCIS Ubuntu Linux 16.04 LTS Server L1 v2.0.0
1.1.1.1 Ensure mounting of cramfs filesystems is disabled - modprobeUnixCIS Distribution Independent Linux Workstation L1 v2.0.0
1.1.1.1 Ensure mounting of cramfs filesystems is disabled - modprobeUnixCIS Distribution Independent Linux Server L1 v2.0.0
1.1.1.1 Ensure mounting of cramfs filesystems is disabled - modprobeUnixCIS Red Hat Enterprise Linux 7 STIG v2.0.0 L1 Workstation
1.1.1.1 Ensure mounting of cramfs filesystems is disabled - modprobeUnixCIS Red Hat Enterprise Linux 7 STIG v2.0.0 L1 Server
1.1.1.1 Ensure mounting of cramfs filesystems is disabled - modprobeUnixCIS Fedora 19 Family Linux Workstation L1 v1.0.0
1.1.1.1 Ensure mounting of cramfs filesystems is disabled - modprobeUnixCIS Amazon Linux 2 STIG v1.0.0 L1
1.1.1.1 Ensure mounting of cramfs filesystems is disabled - modprobeUnixCIS Debian Family Workstation L1 v1.0.0
1.1.1.1 Ensure mounting of cramfs filesystems is disabled - modprobeUnixCIS Debian 8 Server L1 v2.0.2
1.1.1.1 Ensure mounting of cramfs filesystems is disabled - modprobeUnixCIS Debian Family Server L1 v1.0.0
1.1.1.1 Ensure mounting of cramfs filesystems is disabled - modprobeUnixCIS Debian 8 Workstation L1 v2.0.2
1.1.1.1 Ensure mounting of cramfs filesystems is disabled - modprobeUnixCIS Fedora 19 Family Linux Server L1 v1.0.0
1.1.1.1 Ensure mounting of cramfs filesystems is disabled - modprobeUnixCIS Ubuntu Linux 18.04 LXD Host L1 Workstation v1.0.0
1.1.1.1 Ensure mounting of cramfs filesystems is disabled - modprobeUnixCIS Ubuntu Linux 18.04 LXD Host L1 Server v1.0.0
1.1.1.1 Ensure mounting of freevxfs filesystems is disabled - lsmodUnixCIS Debian 9 Workstation L1 v1.0.1
1.1.1.1 Ensure mounting of freevxfs filesystems is disabled - lsmodUnixCIS Debian 9 Server L1 v1.0.1
1.1.1.1 Ensure mounting of freevxfs filesystems is disabled - modprobeUnixCIS Debian 9 Server L1 v1.0.1
1.1.1.1 Ensure mounting of freevxfs filesystems is disabled - modprobeUnixCIS Debian 9 Workstation L1 v1.0.1
1.1.1.1 Ensure mounting of squashfs filesystems is disabledUnixCIS SUSE Linux Enterprise 15 Server L2 v1.1.1
1.1.1.1 Ensure mounting of squashfs filesystems is disabledUnixCIS SUSE Linux Enterprise 15 Workstation L2 v1.1.1
1.1.1.1 Ensure mounting of squashfs filesystems is disabledUnixCIS SUSE Linux Enterprise Workstation 12 L2 v3.1.0
1.1.1.1 Ensure mounting of squashfs filesystems is disabledUnixCIS SUSE Linux Enterprise Server 12 L2 v3.1.0
1.1.1.1 Ensure mounting of UDF filesystems is disabledUnixCIS Bottlerocket L2
1.1.1.1 Ensure mounting of udf filesystems is disabled - lsmodUnixCIS Google Container-Optimized OS L2 Server v1.1.0
1.1.1.1 Ensure mounting of udf filesystems is disabled - modprobeUnixCIS Google Container-Optimized OS L2 Server v1.1.0
1.1.1.1.1 Ensure minimum passcode length is set to at least 6 charactersZoomCIS Zoom L1 v1.0.0
1.1.1.1.2 Ensure passcode is set to have at least 1 letterZoomCIS Zoom L2 v1.0.0