Item Search

NameAudit NamePluginCategory
1.2.4 Ensure that the --kubelet-client-certificate and --kubelet-client-key arguments are set as appropriateCIS Kubernetes v1.10.0 L1 MasterUnix

SYSTEM AND SERVICES ACQUISITION

1.2.4 Ensure that the --kubelet-client-certificate and --kubelet-client-key arguments are set as appropriate - certificateCIS Kubernetes v1.23 Benchmark v1.0.1 L1 MasterUnix

SYSTEM AND SERVICES ACQUISITION

1.2.4 Ensure that the --kubelet-client-certificate and --kubelet-client-key arguments are set as appropriate - certificateCIS Kubernetes v1.20 Benchmark v1.0.1 L1 MasterUnix

SYSTEM AND SERVICES ACQUISITION

1.2.4 Ensure that the --kubelet-client-certificate and --kubelet-client-key arguments are set as appropriate - certificateCIS Kubernetes v1.24 Benchmark v1.0.0 L1 MasterUnix

SYSTEM AND SERVICES ACQUISITION

1.2.4 Ensure that the --kubelet-client-certificate and --kubelet-client-key arguments are set as appropriate - keyCIS Kubernetes v1.23 Benchmark v1.0.1 L1 MasterUnix

SYSTEM AND SERVICES ACQUISITION

1.2.4 Ensure that the --kubelet-client-certificate and --kubelet-client-key arguments are set as appropriate - keyCIS Kubernetes v1.20 Benchmark v1.0.1 L1 MasterUnix

SYSTEM AND SERVICES ACQUISITION

1.2.4 Ensure that the --kubelet-client-certificate and --kubelet-client-key arguments are set as appropriate - keyCIS Kubernetes v1.24 Benchmark v1.0.0 L1 MasterUnix

SYSTEM AND SERVICES ACQUISITION

1.2.5 Ensure that the --kubelet-certificate-authority argument is set as appropriateCIS Kubernetes v1.10.0 L1 MasterUnix

SYSTEM AND SERVICES ACQUISITION

1.2.5 Ensure that the --kubelet-certificate-authority argument is set as appropriateCIS Kubernetes v1.23 Benchmark v1.0.1 L1 MasterUnix

SYSTEM AND SERVICES ACQUISITION

1.2.5 Ensure that the --kubelet-certificate-authority argument is set as appropriateCIS Kubernetes v1.20 Benchmark v1.0.1 L1 MasterUnix

SYSTEM AND SERVICES ACQUISITION

1.2.5 Ensure that the --kubelet-certificate-authority argument is set as appropriateCIS Kubernetes v1.24 Benchmark v1.0.0 L1 MasterUnix

SYSTEM AND SERVICES ACQUISITION

1.2.5 Ensure that the kubelet uses certificates to authenticateCIS RedHat OpenShift Container Platform v1.6.0 L1OpenShift

SYSTEM AND SERVICES ACQUISITION

1.2.6 Verify that the kubelet certificate authority is set as appropriateCIS RedHat OpenShift Container Platform v1.6.0 L1OpenShift

SYSTEM AND SERVICES ACQUISITION

1.2.9 Ensure that the admission control plugin EventRateLimit is setCIS Kubernetes v1.10.0 L1 MasterUnix

SYSTEM AND SERVICES ACQUISITION

1.2.9 Ensure that the admission control plugin EventRateLimit is setCIS Kubernetes v1.20 Benchmark v1.0.1 L1 MasterUnix

SYSTEM AND SERVICES ACQUISITION

1.2.9 Ensure that the admission control plugin EventRateLimit is setCIS Kubernetes v1.23 Benchmark v1.0.1 L1 MasterUnix

SYSTEM AND SERVICES ACQUISITION

1.2.9 Ensure that the admission control plugin EventRateLimit is setCIS Kubernetes v1.24 Benchmark v1.0.0 L1 MasterUnix

SYSTEM AND SERVICES ACQUISITION

1.2.12 Ensure that the admission control plugin SecurityContextDeny is set if PodSecurityPolicy is not usedCIS Kubernetes v1.20 Benchmark v1.0.1 L1 MasterUnix

SYSTEM AND SERVICES ACQUISITION

1.2.12 Ensure that the admission control plugin SecurityContextDeny is set if PodSecurityPolicy is not usedCIS Kubernetes v1.23 Benchmark v1.0.1 L1 MasterUnix

SYSTEM AND SERVICES ACQUISITION

1.2.12 Ensure that the admission control plugin SecurityContextDeny is set if PodSecurityPolicy is not usedCIS Kubernetes v1.24 Benchmark v1.0.0 L1 MasterUnix

SYSTEM AND SERVICES ACQUISITION

1.2.14 Ensure that the admission control plugin SecurityContextConstraint is setCIS RedHat OpenShift Container Platform v1.6.0 L1OpenShift

SYSTEM AND SERVICES ACQUISITION

1.2.15 Ensure that the admission control plugin NodeRestriction is setCIS RedHat OpenShift Container Platform v1.6.0 L1OpenShift

SYSTEM AND SERVICES ACQUISITION

1.2.15 Ensure that the admission control plugin PodSecurityPolicy is setCIS Kubernetes v1.20 Benchmark v1.0.1 L1 MasterUnix

SYSTEM AND SERVICES ACQUISITION

1.2.16 Ensure that the --insecure-bind-address argument is not setCIS RedHat OpenShift Container Platform v1.6.0 L1OpenShift

SYSTEM AND SERVICES ACQUISITION

1.2.17 Ensure that the --insecure-port argument is set to 0CIS RedHat OpenShift Container Platform v1.6.0 L1OpenShift

SYSTEM AND SERVICES ACQUISITION

2.1.1.1.3 Set 'modulus' to greater than or equal to 2048 for 'crypto key generate rsa'CIS Cisco IOS XE 16.x v2.1.0 L1Cisco

SYSTEM AND SERVICES ACQUISITION

2.1.1.1.3 Set 'modulus' to greater than or equal to 2048 for 'crypto key generate rsa'CIS Cisco IOS XE 17.x v2.1.0 L1Cisco

SYSTEM AND SERVICES ACQUISITION

2.3.27.12 Ensure 'Encryption mode for Information Rights Management (IRM)' is set to 'Enabled: Cipher Block Chaining (CBC)'CIS Microsoft Office Enterprise v1.2.0 L1Windows

SYSTEM AND SERVICES ACQUISITION

2.5.1.2.1 Ensure 'Authentication with Exchange server' is set to 'Enabled: Kerberos Password Authentication'CIS Microsoft Office Enterprise v1.2.0 L1Windows

SYSTEM AND SERVICES ACQUISITION

2.7 Ensure AES Encryption Mode for AES_ENCRYPT/AES_DECRYPT is Configured CorrectlyCIS MySQL 5.6 Enterprise Database L2 v2.0.0MySQLDB

SYSTEM AND SERVICES ACQUISITION

2.7 Ensure AES Encryption Mode for AES_ENCRYPT/AES_DECRYPT is Configured CorrectlyCIS MySQL 5.6 Community Database L2 v2.0.0MySQLDB

SYSTEM AND SERVICES ACQUISITION

2.9 Ensure AES Encryption Mode for AES_ENCRYPT/AES_DECRYPT is Configured CorrectlyCIS MySQL 5.7 Community Database L2 v2.0.0MySQLDB

SYSTEM AND SERVICES ACQUISITION

2.9 Ensure AES Encryption Mode for AES_ENCRYPT/AES_DECRYPT is Configured CorrectlyCIS MySQL 5.7 Enterprise Database L2 v2.0.0MySQLDB

SYSTEM AND SERVICES ACQUISITION

2.10 Ensure Only Approved Ciphers are UsedCIS MySQL 5.6 Enterprise Database L2 v2.0.0MySQLDB

SYSTEM AND SERVICES ACQUISITION

2.10 Ensure Only Approved Ciphers are UsedCIS MySQL 5.6 Community Database L2 v2.0.0MySQLDB

SYSTEM AND SERVICES ACQUISITION

2.12 Ensure AES Encryption Mode for AES_ENCRYPT/AES_DECRYPT is Configured CorrectlyCIS MySQL 8.0 Community Database L2 v1.0.0MySQLDB

SYSTEM AND SERVICES ACQUISITION

2.12 Ensure AES Encryption Mode for AES_ENCRYPT/AES_DECRYPT is Configured CorrectlyCIS MySQL 8.0 Enterprise Database L2 v1.3.0MySQLDB

SYSTEM AND SERVICES ACQUISITION

2.12 Ensure Only Approved Ciphers are UsedCIS MariaDB 10.6 Database L2 v1.1.0MySQLDB

SYSTEM AND SERVICES ACQUISITION

2.12 Ensure Only Approved Ciphers are UsedCIS MariaDB 10.6 on Linux L2 v1.1.0Unix

SYSTEM AND SERVICES ACQUISITION

2.14 Ensure Only Approved Ciphers are Used - ssl_cipherCIS MySQL 5.7 Community Database L2 v2.0.0MySQLDB

SYSTEM AND SERVICES ACQUISITION

2.14 Ensure Only Approved Ciphers are Used - ssl_cipherCIS MySQL 5.7 Enterprise Database L2 v2.0.0MySQLDB

SYSTEM AND SERVICES ACQUISITION

2.14 Ensure Only Approved Ciphers are Used - tls_ciphersuitesCIS MySQL 5.7 Community Database L2 v2.0.0MySQLDB

SYSTEM AND SERVICES ACQUISITION

2.17 Ensure Only Approved Ciphers are UsedCIS MySQL 8.0 Community Database L2 v1.0.0MySQLDB

SYSTEM AND SERVICES ACQUISITION

2.17 Ensure Only Approved Ciphers are UsedCIS MySQL 8.0 Enterprise Database L2 v1.3.0MySQLDB

SYSTEM AND SERVICES ACQUISITION

3.1.7.3 Ensure That Microsoft Defender for (Managed Instance) Azure SQL Databases Is Set To 'On'CIS Microsoft Azure Foundations v3.0.0 L2microsoft_azure

RISK ASSESSMENT, SYSTEM AND SERVICES ACQUISITION

3.1.7.4 Ensure That Microsoft Defender for SQL Servers on Machines Is Set To 'On'CIS Microsoft Azure Foundations v3.0.0 L2microsoft_azure

RISK ASSESSMENT, SYSTEM AND SERVICES ACQUISITION

4.6 Ensure that HEALTHCHECK instructions have been added to container imagesCIS Docker v1.6.0 L1 Docker LinuxUnix

SYSTEM AND SERVICES ACQUISITION

8.2.2 Do Not Use Encryption Algorithms that are Not SecureCIS IBM DB2 11 v1.1.0 Database Level 2IBM_DB2DB

SYSTEM AND SERVICES ACQUISITION

9.4 Ensure only approved ciphers are used for ReplicationCIS MariaDB 10.6 Database L2 v1.1.0MySQLDB

SYSTEM AND SERVICES ACQUISITION

9.4 Ensure only approved ciphers are used for ReplicationCIS MariaDB 10.6 on Linux L2 v1.1.0Unix

SYSTEM AND SERVICES ACQUISITION