1.1 Create local-settings.js file - general.config.filename | CIS Mozilla Firefox 38 ESR Linux L1 v1.0.0 | Unix | ACCESS CONTROL |
1.2 Use Dedicated Least Privileged Account for MySQL Daemon/Service | CIS MySQL 5.6 Community Windows OS L1 v2.0.0 | Windows | ACCESS CONTROL |
1.2 Use Dedicated Least Privileged Account for MySQL Daemon/Service | CIS MySQL 5.6 Community Linux OS L1 v2.0.0 | Unix | ACCESS CONTROL |
1.06 Windows Oracle Account Domain Users Group Membership - 'Remove the RSA from the Domain Users group' | CIS v1.1.0 Oracle 11g OS Windows Level 1 | Windows | ACCESS CONTROL |
1.7.5 - Miscellaneous Enhancements - 'guest account removal' | CIS AIX 5.3/6.1 L1 v1.1.0 | Unix | ACCESS CONTROL |
2.1.3 Ensure chrony is not run as the root user | CIS AlmaLinux OS 8 Workstation L1 v3.0.0 | Unix | ACCESS CONTROL |
2.1.3 Ensure chrony is not run as the root user | CIS CentOS Linux 7 v4.0.0 L1 Server | Unix | ACCESS CONTROL |
2.1.3 Ensure chrony is not run as the root user | CIS Red Hat EL8 Workstation L1 v3.0.0 | Unix | ACCESS CONTROL |
2.1.3 Ensure chrony is not run as the root user | CIS Red Hat Enterprise Linux 7 v4.0.0 L1 Server | Unix | ACCESS CONTROL |
2.1.3 Ensure chrony is not run as the root user | CIS Oracle Linux 7 v4.0.0 L1 Workstation | Unix | ACCESS CONTROL |
2.1.3 Ensure chrony is not run as the root user | CIS Red Hat EL8 Server L1 v3.0.0 | Unix | ACCESS CONTROL |
2.3.3 Ensure chrony is not run as the root user | CIS AlmaLinux OS 9 v2.0.0 L1 Server | Unix | ACCESS CONTROL |
2.3.3 Ensure chrony is not run as the root user | CIS Rocky Linux 9 v2.0.0 L1 Workstation | Unix | ACCESS CONTROL |
2.11.18 - Permissions and Ownership - 'no group or world writable directories in root PATH' | CIS AIX 5.3/6.1 L1 v1.1.0 | Unix | ACCESS CONTROL |
2.12.18 - Miscellaneous Config - unnecessary user and group removal - 'uucp group has been removed' | CIS AIX 5.3/6.1 L2 v1.1.0 | Unix | ACCESS CONTROL |
2.16.3 - General permissions management - world writable files - 'no world writable files exist' | CIS AIX 5.3/6.1 L2 v1.1.0 | Unix | ACCESS CONTROL |
3.3 Ensure that MongoDB is run using a non-privileged, dedicated service account | CIS MongoDB L1 Unix Audit v1.0.0 | Unix | ACCESS CONTROL |
3.7 Ensure 'cookies' are set with HttpOnly attribute - Default | CIS IIS 7 L2 v1.8.0 | Windows | ACCESS CONTROL |
4.5 Restrict access to Tomcat temp directory | CIS Apache Tomcat 7 L1 v1.1.0 Middleware | Unix | ACCESS CONTROL |
4.5.3 Ensure 'ALL' Is Revoked from Unauthorized 'GRANTEE' on 'LINK$' | CIS Oracle Server 11g R2 DB v2.2.0 | OracleDB | ACCESS CONTROL |
4.8 Ensure Handler is not granted Write and Script/Execute | CIS IIS 8.0 v1.5.1 Level 1 | Windows | ACCESS CONTROL |
4.8 Ensure Handler is not granted Write and Script/Execute - Applications | CIS IIS 7 L1 v1.8.0 | Windows | ACCESS CONTROL |
4.8 Restrict access to Tomcat catalina.policy | CIS Apache Tomcat 7 L1 v1.1.0 Middleware | Unix | ACCESS CONTROL |
5.1.3 Check System folder for world writable files | CIS Apple OSX 10.11 El Capitan L1 v1.1.0 | Unix | ACCESS CONTROL |
5.1.3 Check System folder for world writable files | CIS Apple macOS 10.12 L1 v1.2.0 | Unix | ACCESS CONTROL |
5.1.4 Check Library folder for world writable files | CIS Apple OSX 10.11 El Capitan L2 v1.1.0 | Unix | ACCESS CONTROL |
5.1.5 Check Library folder for world writable files | CIS Apple OSX 10.9 L2 v1.3.0 | Unix | ACCESS CONTROL |
5.2 Set Sticky Bit on World Writable Directories | CIS Solaris 11 L1 v1.1.0 | Unix | ACCESS CONTROL |
6 - Run your Instance as non privileged user | TNS Best Practice JBoss 7 Linux | Unix | ACCESS CONTROL |
7.1 Disable System Accounts - Ensure account 'adm' disallows password login | CIS Solaris 10 L1 v5.2 | Unix | ACCESS CONTROL |
7.1 Disable System Accounts - Ensure account 'postgres' disallows password login. | CIS Solaris 10 L1 v5.2 | Unix | ACCESS CONTROL |
7.1 Disable System Accounts - Ensure account 'smmsp' is locked. | CIS Solaris 10 L1 v5.2 | Unix | ACCESS CONTROL |
7.1 Disable System Accounts - should pass if the default shell for 'gdm' is set to /usr/bin/false. | CIS Solaris 10 L1 v5.2 | Unix | ACCESS CONTROL |
7.1 Disable System Accounts - should pass if the default shell for 'nobody' is set to /usr/bin/false. | CIS Solaris 10 L1 v5.2 | Unix | ACCESS CONTROL |
8.1 Restrict runtime access to sensitive packages | CIS Apache Tomcat 7 L1 v1.1.0 Middleware | Unix | ACCESS CONTROL |
9.6 Ensure root PATH Integrity, No Group/World-Writable Directory In root's $PATH | CIS Solaris 10 L1 v5.2 | Unix | ACCESS CONTROL |
9.22 Find World Writable Files | CIS Solaris 11.1 L1 v1.0.0 | Unix | ACCESS CONTROL |
10.2 Disable System Accounts | CIS Debian Linux 7 L1 v1.0.0 | Unix | ACCESS CONTROL |
10.14 Do not allow symbolic linking | CIS Apache Tomcat 7 L1 v1.1.0 Middleware | Unix | ACCESS CONTROL |
14 - Restrict access to binaries directory - owner | TNS Best Practice Jetty 9 Linux | Unix | ACCESS CONTROL |
19 - Restrict access to logging.properties - owner | TNS Best Practice Jetty 9 Linux | Unix | ACCESS CONTROL |
20 - Restrict access to server.xml - owner | TNS Best Practice Jetty 9 Linux | Unix | ACCESS CONTROL |
20.29 Ensure 'FTP servers are configured to prevent access to the system drive' | CIS Microsoft Windows Server 2016 STIG v3.0.0 STIG DC | Windows | ACCESS CONTROL |
20.29 Ensure 'FTP servers are configured to prevent access to the system drive' | CIS Microsoft Windows Server 2016 STIG v3.0.0 STIG MS | Windows | ACCESS CONTROL |
20.29 Ensure 'FTP servers are configured to prevent access to the system drive' | CIS Microsoft Windows Server 2019 STIG v2.0.0 STIG MS | Windows | ACCESS CONTROL |
20.50 Ensure 'Permissions for the system drive root directory must conform to minimum requirements' | CIS Microsoft Windows Server 2022 STIG v1.0.0 STIG MS | Windows | ACCESS CONTROL |
Adtran : SNMPv3 is used with 'priv' | TNS Adtran AOS Best Practice Audit | Adtran | ACCESS CONTROL |
ESXi : set-dcui-access | VMWare vSphere 6.0 Hardening Guide | VMware | ACCESS CONTROL |
Extreme : Disable SNMP write access | TNS Extreme ExtremeXOS Best Practice Audit | Extreme_ExtremeXOS | ACCESS CONTROL |
VM : limit-console-connections-one | VMWare vSphere 5.X Hardening Guide | VMware | ACCESS CONTROL |