Item Search

NameAudit NamePluginCategory
1.2 Ensure that Multi-Factor Authentication is 'Enabled' for All Non-Service AccountsCIS Google Cloud Platform v3.0.0 L1GCP

IDENTIFICATION AND AUTHENTICATION

1.3 Ensure that Security Key Enforcement is Enabled for All Admin AccountsCIS Google Cloud Platform v3.0.0 L2GCP

IDENTIFICATION AND AUTHENTICATION

1.4.3.4 Ensure 'aaa authentication serial console' is configured correctlyCIS Cisco Firewall ASA 9 L1 v4.0.0Cisco

IDENTIFICATION AND AUTHENTICATION

1.4.3.6 Ensure 'aaa authentication telnet console' is configured correctlyCIS Cisco Firewall ASA 8 L1 v4.1.0Cisco

IDENTIFICATION AND AUTHENTICATION

1.8.5 Verify no legacy '+' entries exist in passwd and group files '/etc/passwd'CIS HP-UX 11i v1.5Unix

IDENTIFICATION AND AUTHENTICATION

1.10 Ensure required packages for multifactor authentication are installed - escCIS Amazon Linux 2 STIG v1.0.0 L3Unix

IDENTIFICATION AND AUTHENTICATION

1.10 Ensure required packages for multifactor authentication are installed - pam_pkcs11CIS Amazon Linux 2 STIG v1.0.0 L3Unix

IDENTIFICATION AND AUTHENTICATION

2.3 Ensure authentication is enabled in the sharded clusterCIS MongoDB L1 Unix Audit v1.0.0Unix

IDENTIFICATION AND AUTHENTICATION

2.4 Ensure an industry standard authentication mechanism is used - modeCIS MongoDB L2 Windows Audit v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

2.5.4 Ensure Radius or TACACS+ server is configured - tacacs-servers state onCIS Check Point Firewall L1 v1.1.0CheckPoint

IDENTIFICATION AND AUTHENTICATION

2.6.3 - NIS - remove NIS markers from password and group files - '/etc/group does not include NIS + entries'CIS AIX 5.3/6.1 L2 v1.1.0Unix

IDENTIFICATION AND AUTHENTICATION

2.13 Set 'Allow access to voicemail without requiring a PIN' to 'False'CIS Microsoft Exchange Server 2016 UM v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

3.1.13 Enable server-based authenticationCIS IBM DB2 v10 v1.1.0 Windows OS Level 1Windows

IDENTIFICATION AND AUTHENTICATION

3.1.13 Enable server-based authenticationCIS IBM DB2 v10 v1.1.0 Windows OS Level 2Windows

IDENTIFICATION AND AUTHENTICATION

3.1.16 Enable server-based authentication - 'srvcon_auth = server'CIS IBM DB2 OS L2 v1.2.0Unix

IDENTIFICATION AND AUTHENTICATION

4.3 Use Active Directory for local user authentication - Enabled = 'true'CIS VMware ESXi 5.5 v1.2.0 Level 1VMware

IDENTIFICATION AND AUTHENTICATION

4.3 Use Active Directory for local user authentication - Review DomainCIS VMware ESXi 5.5 v1.2.0 Level 1VMware

IDENTIFICATION AND AUTHENTICATION

4.4.1.3 NIS - remove NIS markers from password and group filesCIS IBM AIX 7.2 L2 v1.1.0Unix

IDENTIFICATION AND AUTHENTICATION

5.3.1 Create custom authselect profileCIS Red Hat EL8 Workstation L1 v1.0.0Unix

IDENTIFICATION AND AUTHENTICATION

5.3.2.5 Ensure pam_unix module is enabledCIS AlmaLinux OS 9 v2.0.0 L1 ServerUnix

IDENTIFICATION AND AUTHENTICATION

5.3.2.5 Ensure pam_unix module is enabledCIS Oracle Linux 9 v2.0.0 L1 WorkstationUnix

IDENTIFICATION AND AUTHENTICATION

6.2.2 Ensure no legacy '+' entries exist in /etc/passwdCIS SUSE Linux Enterprise Workstation 12 L1 v2.1.0Unix

IDENTIFICATION AND AUTHENTICATION

6.2.2 Ensure no legacy '+' entries exist in /etc/passwdCIS Ubuntu Linux 14.04 LTS Workstation L1 v2.1.0Unix

IDENTIFICATION AND AUTHENTICATION

6.2.2 Ensure no legacy '+' entries exist in /etc/passwd - + entries exist in /etc/passwdCIS SUSE Linux Enterprise Server 11 L1 v2.1.1Unix

IDENTIFICATION AND AUTHENTICATION

6.2.4 Ensure no legacy '+' entries exist in /etc/groupCIS SUSE Linux Enterprise Server 12 L1 v2.1.0Unix

IDENTIFICATION AND AUTHENTICATION

6.2.4 Ensure no legacy "+" entries exist in /etc/shadowCIS Red Hat EL8 Server L1 v1.0.0Unix

IDENTIFICATION AND AUTHENTICATION

13.2 Verify No Legacy "+" Entries Exist in /etc/passwd FileCIS Ubuntu 12.04 LTS Benchmark L1 v1.1.0Unix

IDENTIFICATION AND AUTHENTICATION

18.10.15.5 (L1) Ensure 'Enable OneSettings Auditing' is set to 'Enabled'CIS Microsoft Windows Server 2016 STIG v2.0.0 L1 MSWindows

IDENTIFICATION AND AUTHENTICATION

20.11 Ensure 'Active Directory user accounts are configured to require the use of a Common Access Card (CAC), Personal Identity Verification (PIV)-compliant hardware token, or Alternate Logon Token (ALT)' (STIG DC only)CIS Microsoft Windows Server 2016 STIG v2.0.0 STIG DCWindows

IDENTIFICATION AND AUTHENTICATION

BSI-100-2: S 5.18: Use of the NIS security mechanisms: The file /etc/passwd must not contain the entry +::0:0:::BSI-100-2 Red Hat Linux 2005Unix

IDENTIFICATION AND AUTHENTICATION

BSI-100-2: S 5.18: Use of the NIS security mechanisms: The password file /etc/passwd must not contain the entry +::0:0:::BSI-100-2 Red Hat Linux 2005Unix

IDENTIFICATION AND AUTHENTICATION

ESXi : enable-ad-authVMWare vSphere 5.X Hardening GuideVMware

IDENTIFICATION AND AUTHENTICATION

ESXi : enable-ad-authVMWare vSphere 6.5 Hardening GuideVMware

IDENTIFICATION AND AUTHENTICATION

FireEye - AAA is enabledTNS FireEyeFireEye

IDENTIFICATION AND AUTHENTICATION

Fortigate - AAA - RADIUS server is trustedTNS Fortigate FortiOS Best PracticesFortiGate

IDENTIFICATION AND AUTHENTICATION

Fortigate - AAA - RADIUS server is trustedTNS Fortigate FortiOS Best Practices v2.0.0FortiGate

IDENTIFICATION AND AUTHENTICATION

IBM i : Remote Sign-On Control (QRMTSIGN) - '*REJECT'IBM System i Security Reference for V7R2AS/400

IDENTIFICATION AND AUTHENTICATION

Identification and Authentication - Use out of band authentication - AAA - netconf loggingTenable Cisco Viptela SD-WAN - vBondCisco_Viptela

IDENTIFICATION AND AUTHENTICATION

Identification and Authentication - Use out of band authentication - AAA - netconf loggingTenable Cisco Viptela SD-WAN - vManageCisco_Viptela

IDENTIFICATION AND AUTHENTICATION

Identification and Authentication - Use out of band authentication - Admin Authentication OrderTenable Cisco Viptela SD-WAN - vSmartCisco_Viptela

IDENTIFICATION AND AUTHENTICATION

Identification and Authentication - Use out of band authentication - Authentication OrderTenable Cisco Viptela SD-WAN - vEdgeCisco_Viptela

IDENTIFICATION AND AUTHENTICATION

Identification and Authentication - Use out of band authentication - Authentication OrderTenable Cisco Viptela SD-WAN - vManageCisco_Viptela

IDENTIFICATION AND AUTHENTICATION

Identification and Authentication - Use out of band authentication - Server IPTenable Cisco Viptela SD-WAN - vBondCisco_Viptela

IDENTIFICATION AND AUTHENTICATION

Identification and Authentication - Use out of band authentication - Server IPTenable Cisco Viptela SD-WAN - vManageCisco_Viptela

IDENTIFICATION AND AUTHENTICATION

Monterey - Enforce Smartcard AuthenticationNIST macOS Monterey v1.0.0 - All ProfilesUnix

IDENTIFICATION AND AUTHENTICATION

NET0433 - Device not authenticated by AAA server - 'line con - authentication @AAA_LOGIN_LIST@'DISA STIG Cisco Perimeter Router v8r8Cisco

IDENTIFICATION AND AUTHENTICATION

Require Authentication - config - 'auth = true'TNS MongoDB 2.4 Best Practices Windows OS Audit v1.0Windows

IDENTIFICATION AND AUTHENTICATION

Require Authentication - DB Users - 'User authenticated by MONGODB-CR'TNS MongoDB 2.x Best Practices Database Audit v1.0MongoDB

IDENTIFICATION AND AUTHENTICATION

Restrict Unauthenticated RPC clientsMSCT Windows Server 2022 v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

ScreenOS:Authorization Server - DefaultTNS Juniper ScreenOS Best Practices AuditJuniper

IDENTIFICATION AND AUTHENTICATION