Item Search

NameAudit NamePluginCategory
1.2.2 Ensure that the --basic-auth-file argument is not setCIS RedHat OpenShift Container Platform v1.6.0 L1OpenShift

CONFIGURATION MANAGEMENT, MAINTENANCE

1.2.2 Ensure that the --token-auth-file parameter is not setCIS Kubernetes v1.24 Benchmark v1.0.0 L1 MasterUnix

CONFIGURATION MANAGEMENT, MAINTENANCE

1.2.2 Ensure that the --token-auth-file parameter is not setCIS Kubernetes v1.23 Benchmark v1.0.1 L1 MasterUnix

CONFIGURATION MANAGEMENT, MAINTENANCE

1.2.3 Ensure that the DenyServiceExternalIPs is setCIS Kubernetes v1.10.0 L1 MasterUnix

CONFIGURATION MANAGEMENT, MAINTENANCE

1.2.4 Ensure Exec Timeout for Console Sessions is setCIS Cisco NX-OS L1 v1.1.0Cisco

CONFIGURATION MANAGEMENT, MAINTENANCE

1.3 (L1) Host hardware must enable Intel TXT, if availableCIS VMware ESXi 8.0 v1.1.0 L1VMware

CONFIGURATION MANAGEMENT, MAINTENANCE

1.4 (L1) Host hardware must enable and configure a TPM 2.0CIS VMware ESXi 8.0 v1.1.0 L1VMware

CONFIGURATION MANAGEMENT, MAINTENANCE

1.5.3 Configure SNMPv3CIS Cisco NX-OS L2 v1.1.0Cisco

CONFIGURATION MANAGEMENT, MAINTENANCE

1.5.5 Configure SNMP Source Interface for TrapsCIS Cisco NX-OS L2 v1.1.0Cisco

CONFIGURATION MANAGEMENT, MAINTENANCE

1.5.6 Do not Configure a Read Write SNMP Community StringCIS Cisco NX-OS L2 v1.1.0Cisco

CONFIGURATION MANAGEMENT, MAINTENANCE

1.6.4 Ensure 'SCP protocol' is set to Enable for files transfersCIS Cisco ASA 9.x Firewall L2 v1.1.0Cisco

CONFIGURATION MANAGEMENT, MAINTENANCE

1.6.5 Ensure 'Telnet' is disabledCIS Cisco ASA 9.x Firewall L1 v1.1.0Cisco

CONFIGURATION MANAGEMENT, MAINTENANCE

1.7.1 Ensure 'HTTP source restriction' is set to an authorized IP addressCIS Cisco ASA 9.x Firewall L2 v1.1.0Cisco

CONFIGURATION MANAGEMENT, MAINTENANCE

1.7.3 Ensure 'SSL AES 256 encryption' is set for HTTPS accessCIS Cisco ASA 9.x Firewall L1 v1.1.0Cisco

CONFIGURATION MANAGEMENT, MAINTENANCE

2.6.7 Audit Lockdown ModeCIS Apple macOS 14.0 Sonoma v1.1.0 L2Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

2.6.7 Audit Lockdown ModeCIS Apple macOS 13.0 Ventura v2.1.0 L2Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

2.12 (L2) Host must enable volatile key destructionCIS VMware ESXi 8.0 v1.1.0 L2VMware

CONFIGURATION MANAGEMENT, MAINTENANCE

3.6.1.1 OpenSSH - InstallationCIS IBM AIX 7.1 L1 v2.1.0Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

3.24 (L1) Host must display a login banner for the DCUI and Host ClientCIS VMware ESXi 8.0 v1.1.0 L1VMware

CONFIGURATION MANAGEMENT, MAINTENANCE

3.25 (L1) Host must display a login banner for SSH connectionsCIS VMware ESXi 8.0 v1.1.0 L1VMware

CONFIGURATION MANAGEMENT, MAINTENANCE

4.5.3.1 OpenSSH: Minimum version is 8.1CIS IBM AIX 7.2 L1 v1.1.0Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

4.5.3.6 sshd_config: Banner exists and message contains 'Only authorized users allowed'CIS IBM AIX 7.2 L1 v1.1.0Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

4.5.3.13 sshd_config: PermitUserEnvironment is 'no'CIS IBM AIX 7.2 L1 v1.1.0Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

4.5.3.14 sshd_config: Use Conditional exception(s).CIS IBM AIX 7.2 L2 v1.1.0Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

4.7.3.1 Ensure latest version of openssh is installedCIS IBM AIX 7 v1.0.0 L1Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

4.7.3.5 Ensure sshd Banner is configuredCIS IBM AIX 7 v1.0.0 L1Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

4.7.3.13 Ensure sshd PermitEmptyPasswords is disabledCIS IBM AIX 7 v1.0.0 L1Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

4.7.3.15 Ensure sshd PermitRootLogin is disabledCIS IBM AIX 7 v1.0.0 L2Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

6.2.10 Ensure no users have .netrc filesCIS SUSE Linux Enterprise 15 Server L1 v1.1.1Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

6.2.10 Ensure no users have .netrc filesCIS SUSE Linux Enterprise 12 v3.1.0 L1 WorkstationUnix

CONFIGURATION MANAGEMENT, MAINTENANCE

6.2.10 Ensure no users have .netrc filesCIS SUSE Linux Enterprise 15 Workstation L1 v1.1.1Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

6.2.10 Ensure no users have .netrc filesCIS SUSE Linux Enterprise 12 v3.1.0 L1 ServerUnix

CONFIGURATION MANAGEMENT, MAINTENANCE

6.2.12 Ensure no users have .netrc filesCIS SUSE Linux Enterprise Workstation 11 L1 v2.1.1Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

6.2.16 Ensure no users have .netrc filesCIS Red Hat Enterprise Linux 7 STIG v2.0.0 L1 ServerUnix

CONFIGURATION MANAGEMENT, MAINTENANCE

6.5.4 (L1) Host SSH daemon, if enabled, must not allow host-based authenticationCIS VMware ESXi 8.0 v1.1.0 L1 Bare MetalUnix

CONFIGURATION MANAGEMENT, MAINTENANCE

6.5.7 (L1) Host SSH daemon, if enabled, must display the system login banner before granting accessCIS VMware ESXi 8.0 v1.1.0 L1 Bare MetalUnix

CONFIGURATION MANAGEMENT, MAINTENANCE

6.5.9 (L1) Host SSH daemon, if enabled, must disable stream local forwardingCIS VMware ESXi 8.0 v1.1.0 L1 Bare MetalUnix

CONFIGURATION MANAGEMENT, MAINTENANCE

6.5.10 (L1) Host SSH daemon, if enabled, must disable TCP forwardingCIS VMware ESXi 8.0 v1.1.0 L1 Bare MetalUnix

CONFIGURATION MANAGEMENT, MAINTENANCE

6.5.11 (L1) Host SSH daemon, if enabled, must not permit tunnelsCIS VMware ESXi 8.0 v1.1.0 L1 Bare MetalUnix

CONFIGURATION MANAGEMENT, MAINTENANCE

6.5.12 (L1) Host SSH daemon, if enabled, must not permit user environment settingsCIS VMware ESXi 8.0 v1.1.0 L1 Bare MetalUnix

CONFIGURATION MANAGEMENT, MAINTENANCE

7.1 (L1) Virtual machines must enable Secure BootCIS VMware ESXi 8.0 v1.1.0 L1VMware

CONFIGURATION MANAGEMENT, MAINTENANCE

8.3.3 (L1) Ensure secure protocols are used for virtual serial port accessCIS VMware ESXi 7.0 v1.4.0 L1VMware

CONFIGURATION MANAGEMENT, MAINTENANCE

8.3.3 Ensure secure protocols are used for virtual serial port accessCIS VMware ESXi 6.7 v1.3.0 Level 1VMware

CONFIGURATION MANAGEMENT, MAINTENANCE

8.4 (L1) VMware Tools on deployed virtual machines must prevent being recustomizedCIS VMware ESXi 8.0 v1.1.0 L1VMware

CONFIGURATION MANAGEMENT, MAINTENANCE

8.5 Ensure that 'Disk Network Access' is NOT set to 'Enable public access from all networks'CIS Microsoft Azure Foundations v3.0.0 L1microsoft_azure

CONFIGURATION MANAGEMENT, MAINTENANCE

8.6 Ensure that 'Enable Data Access Authentication Mode' is 'Checked'CIS Microsoft Azure Foundations v3.0.0 L1microsoft_azure

CONFIGURATION MANAGEMENT, MAINTENANCE

10.1 Ensure Web content directory is on a separate partition from the Tomcat system filesCIS Apache Tomcat 10 L1 v1.1.0Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

10.1 Ensure Web content directory is on a separate partition from the Tomcat system filesCIS Apache Tomcat 10 L1 v1.1.0 MiddlewareUnix

CONFIGURATION MANAGEMENT, MAINTENANCE

10.1 Ensure Web content directory is on a separate partition from the Tomcat system files - verify Web content directoryCIS Apache Tomcat 9 L1 v1.2.0Unix

CONFIGURATION MANAGEMENT, MAINTENANCE

10.1 Ensure Web content directory is on a separate partition from the Tomcat system files - verify Web content directoryCIS Apache Tomcat 9 L1 v1.2.0 MiddlewareUnix

CONFIGURATION MANAGEMENT, MAINTENANCE