Item Search

NameAudit NamePluginCategory
1.2.25 Ensure that the --etcd-certfile and --etcd-keyfile arguments are set as appropriate - keyfileCIS Kubernetes Benchmark v1.7.1 L1 MasterUnix
1.2.27 Ensure that the --etcd-cafile argument is set as appropriateCIS Kubernetes Benchmark v1.8.0 L1 MasterUnix
1.2.29 Ensure that encryption providers are appropriately configuredCIS Kubernetes Benchmark v1.8.0 L1 MasterUnix
1.2.29 Ensure that the --etcd-certfile and --etcd-keyfile arguments are set as appropriateCIS RedHat OpenShift Container Platform 4 v1.3.0 L1OpenShift
1.2.31 Ensure that encryption providers are appropriately configuredCIS RedHat OpenShift Container Platform 4 v1.5.0 L1OpenShift
1.2.33 Ensure that the --encryption-provider-config argument is set as appropriateCIS RedHat OpenShift Container Platform 4 v1.2.0 L1OpenShift
1.2.34 Ensure that encryption providers are appropriately configuredCIS RedHat OpenShift Container Platform 4 v1.2.0 L1OpenShift
1.10 Ensure KMS Encryption Keys Are Rotated Within a Period of 90 DaysCIS Google Cloud Platform v1.3.0 L1GCP
1.17 Ensure that Dataproc Cluster is encrypted using Customer-Managed Encryption KeyCIS Google Cloud Platform v1.3.0 L2GCP
2.1.1 Ensure all S3 buckets employ encryption-at-restCIS Amazon Web Services Foundations L2 1.3.0amazon_aws
2.2 Ensure that the --client-cert-auth argument is set to trueCIS RedHat OpenShift Container Platform 4 v1.3.0 L1OpenShift
2.2.1 Ensure EBS volume encryption is enabledCIS Amazon Web Services Foundations L1 1.4.0amazon_aws
2.2.1 Ensure EBS Volume Encryption is Enabled in all RegionsCIS Amazon Web Services Foundations L1 2.0.0amazon_aws
2.3.1 Ensure that encryption is enabled for RDS InstancesCIS Amazon Web Services Foundations L1 1.5.0amazon_aws
2.3.1 Ensure that encryption-at-rest is enabled for RDS InstancesCIS Amazon Web Services Foundations L1 2.0.0amazon_aws
2.4.1 Ensure that encryption is enabled for EFS file systemsCIS Amazon Web Services Foundations L1 2.0.0amazon_aws
3.5.1.1 EFS - implementation - CLiC installedCIS IBM AIX 7.1 L2 v2.0.0Unix
4.1.5 Ensure that 'Data encryption' is set to 'On' on a SQL DatabaseCIS Microsoft Azure Foundations v1.5.0 L1microsoft_azure
4.1.5 Ensure that 'Data encryption' is set to 'On' on a SQL DatabaseCIS Microsoft Azure Foundations v2.0.0 L1microsoft_azure
4.2.3 Ensure that the --client-ca-file argument is set as appropriateCIS RedHat OpenShift Container Platform 4 v1.2.0 L1OpenShift
4.2.3 Ensure that the --client-ca-file argument is set as appropriateCIS RedHat OpenShift Container Platform 4 v1.3.0 L1OpenShift
4.7 Ensure VM Disks for Critical VMs Are Encrypted With Customer-Supplied Encryption Keys (CSEK)CIS Google Cloud Platform v2.0.0 L2GCP
4.11 Ensure That Compute Instances Have Confidential Computing EnabledCIS Google Cloud Platform v1.3.0 L2GCP
5.1.4 Ensure the storage account containing the container with activity logs is encrypted with Customer Managed KeyCIS Microsoft Azure Foundations v1.5.0 L2microsoft_azure
5.3.1 Ensure Kubernetes Secrets are encrypted using keys managed in Cloud KMSCIS Google Kubernetes Engine (GKE) v1.1.0 L1 MasterGCP
5.4.2 Consider external secret storageCIS Kubernetes Benchmark v1.5.1 L2Unix
5.9.1 Enable Customer-Managed Encryption Keys (CMEK) for GKE Persistent Disks (PD)CIS Google Kubernetes Engine (GKE) v1.1.0 L1 WorkerUnix
5.9.1 Enable Customer-Managed Encryption Keys (CMEK) for GKE Persistent Disks (PD)CIS Google Kubernetes Engine (GKE) v1.4.0 L1GCP
7.2 Ensure That All BigQuery Tables Are Encrypted With Customer-Managed Encryption Key (CMEK)CIS Google Cloud Platform v2.0.0 L2GCP
7.3 Ensure That a Default Customer-Managed Encryption Key (CMEK) Is Specified for All BigQuery Data SetsCIS Google Cloud Platform v2.0.0 L2GCP
7.3 Ensure That a Default Customer-Managed Encryption Key (CMEK) Is Specified for All BigQuery Data SetsCIS Google Cloud Platform v1.3.0 L2GCP
18.9.64.3 Ensure 'Allow indexing of encrypted files' is set to 'Disabled'CIS Microsoft Windows Server 2019 MS L1 v1.2.1Windows
18.9.65.5 Ensure 'Allow indexing of encrypted files' is set to 'Disabled'CIS Microsoft Windows 10 Enterprise (Release 21H1) v1.11.0 L1 + BLWindows
18.9.67.2 Ensure 'Allow indexing of encrypted files' is set to 'Disabled' - DisabledCIS Windows Server 2012 MS L1 v2.4.0Windows
18.9.67.3 Ensure 'Allow indexing of encrypted files' is set to 'Disabled'CIS Microsoft Windows Server 2022 v1.0.0 L1 DCWindows
18.9.67.5 Ensure 'Allow indexing of encrypted files' is set to 'Disabled'CIS Microsoft Windows 11 Enterprise v1.0.0 L1 + BL + NGWindows
18.9.67.5 Ensure 'Allow indexing of encrypted files' is set to 'Disabled'CIS Microsoft Windows 11 Enterprise v1.0.0 L1 + NGWindows
18.9.67.5 Ensure 'Allow indexing of encrypted files' is set to 'Disabled' - DisabledCIS Microsoft Intune for Windows 10 v1.1.0 L1 + BLWindows
18.10.58.3 (L1) Ensure 'Allow indexing of encrypted files' is set to 'Disabled'CIS Microsoft Windows Server 2019 v3.0.0 L1 Domain ControllerWindows
18.10.58.3 (L1) Ensure 'Allow indexing of encrypted files' is set to 'Disabled'CIS Microsoft Windows Server 2019 v3.0.0 L1 Member ServerWindows
18.10.59.3 Ensure 'Allow indexing of encrypted files' is set to 'Disabled' - DisabledCIS Microsoft Windows Server 2016 DC L1 v2.0.0Windows
18.10.59.5 Ensure 'Allow indexing of encrypted files' is set to 'Disabled'CIS Microsoft Windows 11 Enterprise v2.0.0 L1Windows
18.10.59.5 Ensure 'Allow indexing of encrypted files' is set to 'Disabled'CIS Microsoft Windows 10 Enterprise v2.0.0 L1 + BL + NGWindows
18.10.59.5 Ensure 'Allow indexing of encrypted files' is set to 'Disabled' - DisabledCIS Microsoft Windows 10 Stand-alone v2.0.0 L1 + BLWindows
18.10.60.5 Ensure 'Allow indexing of encrypted files' is set to 'Disabled'CIS Microsoft Intune for Windows 11 v2.0.0 L1Windows
18.10.60.5 Ensure 'Allow indexing of encrypted files' is set to 'Disabled'CIS Microsoft Intune for Windows 10 v2.0.0 L1 + BL + NGWindows
18.10.60.5 Ensure 'Allow indexing of encrypted files' is set to 'Disabled'CIS Microsoft Intune for Windows 10 v2.0.0 L1 + BLWindows
18.10.60.5 Ensure 'Allow indexing of encrypted files' is set to 'Disabled'CIS Microsoft Intune for Windows 10 v2.0.0 L1 + NGWindows
20.60 Ensure 'Systems requiring data at rest protections must employ cryptographic mechanisms to prevent unauthorized disclosure and modification of the information at rest'CIS Microsoft Windows Server 2019 STIG MS STIG v1.0.1Windows
20.63 Ensure 'Systems requiring data at rest protections must employ cryptographic mechanisms to prevent unauthorized disclosure and modification of the information at rest'CIS Microsoft Windows Server 2016 STIG DC STIG v1.1.0Windows