CIS Amazon Linux 2 v2.0.0 L2

Warning! Audit Deprecated

This audit file has been deprecated and will be removed in a future update.

View Next Version

Audit Details

Name: CIS Amazon Linux 2 v2.0.0 L2

Updated: 6/17/2024

Authority: CIS

Plugin: Unix

Revision: 1.18

Estimated Item Count: 128

File Details

Filename: CIS_Amazon_Linux_2_v2.0.0_L2.audit

Size: 346 kB

MD5: 7448b18bdaddebc91b444f91d9935b82
SHA256: a8854ad41431b17c51222eec8fd8b06d2471ca6af8aaac90ec7c8ae0624620b9

Audit Changelog

 
Revision 1.18

Jun 17, 2024

Miscellaneous
  • Metadata updated.
Revision 1.17

Apr 12, 2024

Miscellaneous
  • Audit deprecated.
  • Metadata updated.
  • References updated.
Revision 1.16

Apr 3, 2024

Miscellaneous
  • Platform check updated.
Revision 1.15

Mar 18, 2024

Functional Update
  • 4.1.11 Ensure use of privileged commands is collected
Miscellaneous
  • Metadata updated.
  • Variables updated.
Revision 1.14

Nov 28, 2023

Functional Update
  • 4.1.1.3 Ensure auditing for processes that start prior to auditd is enabled
Revision 1.13

Nov 17, 2023

Functional Update
  • 5.3.20 Ensure SSH AllowTcpForwarding is disabled - sshd output
Revision 1.12

Oct 6, 2023

Functional Update
  • 3.1.1 Disable IPv6
Miscellaneous
  • Metadata updated.
  • References updated.
Revision 1.11

Jul 5, 2023

Functional Update
  • 4.1.15 Ensure system administrator command executions (sudo) are collected - rules.d 32-bit
  • 4.1.15 Ensure system administrator command executions (sudo) are collected - rules.d 64-bit
  • 4.1.2.2 Ensure audit logs are not automatically deleted
  • 4.1.2.3 Ensure system is disabled when audit logs are full - action_mail_acct
  • 4.1.2.3 Ensure system is disabled when audit logs are full - admin_space_left_action
  • 4.1.2.3 Ensure system is disabled when audit logs are full - space_left_action
Revision 1.10

Apr 12, 2023

Functional Update
  • 4.1.8 Ensure session initiation information is collected - /var/log/btmp
  • 4.1.8 Ensure session initiation information is collected - /var/log/wtmp
  • 4.1.8 Ensure session initiation information is collected - /var/run/utmp
Miscellaneous
  • Metadata updated.
  • Platform check updated.
  • Variables updated.
Revision 1.9

Mar 7, 2023

Miscellaneous
  • Metadata updated.
  • References updated.