CIS MongoDB 7 v1.1.0 L1 MongoDB

Audit Details

Name: CIS MongoDB 7 v1.1.0 L1 MongoDB

Updated: 11/22/2024

Authority: CIS

Plugin: Unix

Revision: 1.0

Estimated Item Count: 11

File Details

Filename: CIS_MongoDB_7_v1.1.0_L1_OS_Linux.audit

Size: 30.1 kB

MD5: e570ee3e4f6afccdb1d444c1c01cec1f
SHA256: 152782a45fa07cbec3f2b51139cb99453d6b483d2052fd79d4c8544da9ab139c

Audit Items

DescriptionCategories
1.1 Ensure the appropriate MongoDB software version/patches are installed

CONFIGURATION MANAGEMENT

2.1 Ensure Authentication is configured

IDENTIFICATION AND AUTHENTICATION

2.2 Ensure that MongoDB does not bypass authentication via the localhost exception

IDENTIFICATION AND AUTHENTICATION

3.3 Ensure that MongoDB is run using a non-privileged, dedicated service account

ACCESS CONTROL

4.2 Ensure Weak Protocols are Disabled

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION

4.3 Ensure Encryption of Data in Transit TLS or SSL (Transport Encryption)

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION

5.1 Ensure that system activity is audited

AUDIT AND ACCOUNTABILITY

6.1 Ensure that MongoDB uses a non-default port

CONFIGURATION MANAGEMENT

7.1 Ensure appropriate key file permissions are set

IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION

7.2 Ensure appropriate database file permissions are set.

ACCESS CONTROL, MEDIA PROTECTION

CIS_MongoDB_7_v1.1.0_L1_OS_Linux.audit from CIS MongoDB 7 Benchmark v1.1.0