Item Search

NameAudit NamePluginCategory
1.1.5 Ensure Unique Application Pools for SitesCIS IIS 8.0 v1.4.0 Level 1Windows

SYSTEM AND COMMUNICATIONS PROTECTION

1.1.5 Ensure Unique Application Pools for SitesCIS IIS 7.5 L1 v1.7.1Windows

SYSTEM AND COMMUNICATIONS PROTECTION

1.5 Ensure 'unique application pools' is set for sitesCIS IIS 8.0 v1.5.1 Level 1Windows

SYSTEM AND COMMUNICATIONS PROTECTION

1.5 Ensure 'unique application pools' is set for sitesCIS IIS 10 v1.1.0 Level 1Windows

SYSTEM AND COMMUNICATIONS PROTECTION

1.12.16 Do not allow cross context requestsCIS Apache Tomcat5.5/6.0 L1 v1.0Unix

SYSTEM AND COMMUNICATIONS PROTECTION

2.8 Enable user namespace support - SecurityOptionsCIS Docker v1.2.0 L2 Docker LinuxUnix

SYSTEM AND COMMUNICATIONS PROTECTION

2.9 Ensure the default cgroup usage has been confirmedCIS Docker Community Edition v1.1.0 L2 DockerUnix

SYSTEM AND COMMUNICATIONS PROTECTION

2.9 Ensure the default cgroup usage has been confirmed - daemon.jsonCIS Docker v1.2.0 L2 Docker LinuxUnix

SYSTEM AND COMMUNICATIONS PROTECTION

2.9 Ensure the default cgroup usage has been confirmed - dockerdCIS Docker v1.2.0 L2 Docker LinuxUnix

SYSTEM AND COMMUNICATIONS PROTECTION

2.15 Ensure that a daemon-wide custom seccomp profile is applied if appropriateCIS Docker v1.2.0 L2 Docker LinuxUnix

SYSTEM AND COMMUNICATIONS PROTECTION

2.16 Ensure daemon-wide custom seccomp profile is applied, if neededCIS Docker Community Edition v1.1.0 L2 DockerUnix

SYSTEM AND COMMUNICATIONS PROTECTION

5.2 Ensure that, if applicable, SELinux security options are setCIS Docker v1.2.0 L2 Docker LinuxUnix

SYSTEM AND COMMUNICATIONS PROTECTION

5.9 Ensure that the host's network namespace is not sharedCIS Docker v1.2.0 L1 Docker LinuxUnix

SYSTEM AND COMMUNICATIONS PROTECTION

5.9 Ensure the host's network namespace is not sharedCIS Docker Community Edition v1.1.0 L1 DockerUnix

SYSTEM AND COMMUNICATIONS PROTECTION

5.15 Do not share the host's process namespaceCIS Docker 1.13.0 v1.0.0 L1 DockerUnix

SYSTEM AND COMMUNICATIONS PROTECTION

5.15 Ensure that the host's process namespace is not sharedCIS Docker v1.2.0 L1 Docker LinuxUnix

SYSTEM AND COMMUNICATIONS PROTECTION

5.15 Ensure the host's process namespace is not sharedCIS Docker Community Edition v1.1.0 L1 DockerUnix

SYSTEM AND COMMUNICATIONS PROTECTION

5.16 Ensure that the host's IPC namespace is not sharedCIS Docker v1.2.0 L1 Docker LinuxUnix

SYSTEM AND COMMUNICATIONS PROTECTION

5.16 Ensure the host's IPC namespace is not sharedCIS Docker Community Edition v1.1.0 L1 DockerUnix

SYSTEM AND COMMUNICATIONS PROTECTION

5.20 Ensure that the host's UTS namespace is not sharedCIS Docker v1.2.0 L1 Docker LinuxUnix

SYSTEM AND COMMUNICATIONS PROTECTION

5.20 Ensure the host's UTS namespace is not sharedCIS Docker Community Edition v1.1.0 L1 DockerUnix

SYSTEM AND COMMUNICATIONS PROTECTION

5.21 Ensure the default seccomp profile is not DisabledCIS Docker v1.2.0 L1 Docker LinuxUnix

SYSTEM AND COMMUNICATIONS PROTECTION

5.21 Ensure the default seccomp profile is not DisabledCIS Docker Community Edition v1.1.0 L1 DockerUnix

SYSTEM AND COMMUNICATIONS PROTECTION

5.24 Confirm cgroup usageCIS Docker 1.12.0 v1.0.0 L1 DockerUnix

SYSTEM AND COMMUNICATIONS PROTECTION

5.24 Confirm cgroup usageCIS Docker 1.13.0 v1.0.0 L1 DockerUnix

SYSTEM AND COMMUNICATIONS PROTECTION

5.24 Ensure cgroup usage is confirmedCIS Docker Community Edition v1.1.0 L1 DockerUnix

SYSTEM AND COMMUNICATIONS PROTECTION

5.24 Ensure that cgroup usage is confirmedCIS Docker v1.2.0 L1 Docker LinuxUnix

SYSTEM AND COMMUNICATIONS PROTECTION

5.25 Ensure that the container is restricted from acquiring additional privilegesCIS Docker v1.2.0 L1 Docker LinuxUnix

SYSTEM AND COMMUNICATIONS PROTECTION

5.25 Ensure the container is restricted from acquiring additional privilegesCIS Docker Community Edition v1.1.0 L1 DockerUnix

SYSTEM AND COMMUNICATIONS PROTECTION

18.8.5.3 Ensure 'Turn On Virtualization Based Security: Virtualization Based Protection of Code Integrity' is set to 'Enabled with UEFI lock'CIS Microsoft Windows Server 2016 DC NG v1.2.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

18.8.5.3 Ensure 'Turn On Virtualization Based Security: Virtualization Based Protection of Code Integrity' is set to 'Enabled with UEFI lock'CIS Microsoft Windows Server 2016 MS NG v1.2.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Big Sur - Ensure Seperate Execution Domain for ProcessesNIST macOS Big Sur v1.4.0 - 800-53r5 HighUnix

SYSTEM AND COMMUNICATIONS PROTECTION

Big Sur - Ensure Seperate Execution Domain for ProcessesNIST macOS Big Sur v1.4.0 - All ProfilesUnix

SYSTEM AND COMMUNICATIONS PROTECTION

Big Sur - Ensure Seperate Execution Domain for ProcessesNIST macOS Big Sur v1.4.0 - 800-53r5 LowUnix

SYSTEM AND COMMUNICATIONS PROTECTION

Big Sur - Ensure Seperate Execution Domain for ProcessesNIST macOS Big Sur v1.4.0 - 800-53r5 ModerateUnix

SYSTEM AND COMMUNICATIONS PROTECTION

Catalina - Ensure Seperate Execution Domain for ProcessesNIST macOS Catalina v1.5.0 - 800-53r5 HighUnix

SYSTEM AND COMMUNICATIONS PROTECTION

Catalina - Ensure Seperate Execution Domain for ProcessesNIST macOS Catalina v1.5.0 - All ProfilesUnix

SYSTEM AND COMMUNICATIONS PROTECTION

Catalina - Ensure Seperate Execution Domain for ProcessesNIST macOS Catalina v1.5.0 - 800-53r5 LowUnix

SYSTEM AND COMMUNICATIONS PROTECTION

Catalina - Ensure Seperate Execution Domain for ProcessesNIST macOS Catalina v1.5.0 - 800-53r5 ModerateUnix

SYSTEM AND COMMUNICATIONS PROTECTION

Monterey - Ensure Seperate Execution Domain for ProcessesNIST macOS Monterey v1.0.0 - All ProfilesUnix

SYSTEM AND COMMUNICATIONS PROTECTION

Monterey - Ensure Seperate Execution Domain for ProcessesNIST macOS Monterey v1.0.0 - 800-53r5 HighUnix

SYSTEM AND COMMUNICATIONS PROTECTION

Monterey - Ensure Seperate Execution Domain for ProcessesNIST macOS Monterey v1.0.0 - 800-53r5 ModerateUnix

SYSTEM AND COMMUNICATIONS PROTECTION

Monterey - Ensure Seperate Execution Domain for ProcessesNIST macOS Monterey v1.0.0 - 800-53r5 LowUnix

SYSTEM AND COMMUNICATIONS PROTECTION

Turn On Virtualization Based Security - HypervisorEnforcedCodeIntegrityMSCT Windows 10 v1511 v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Turn On Virtualization Based Security - HypervisorEnforcedCodeIntegrityMSCT Windows 10 1803 v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Turn On Virtualization Based Security - HypervisorEnforcedCodeIntegrityMSCT Windows 10 1903 v1.19.9Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Turn On Virtualization Based Security - HypervisorEnforcedCodeIntegrityMSCT Windows 10 1909 v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Turn On Virtualization Based Security - HypervisorEnforcedCodeIntegrityMSCT Windows Server 2019 DC v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Turn On Virtualization Based Security - HypervisorEnforcedCodeIntegrityMSCT Windows 11 v23H2 v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

Turn On Virtualization Based Security - HypervisorEnforcedCodeIntegrityMSCT Windows Server v2004 MS v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION