Item Search

NameAudit NamePluginCategory
1.1.4 Ensure 'Minimum password length' is set to '14 or more character(s)'CIS Microsoft Windows Server 2022 v5.0.0 L1 MSWindows

IDENTIFICATION AND AUTHENTICATION

1.1.4 Ensure 'Minimum password length' is set to '14 or more character(s)'CIS Microsoft Windows Server 2022 Stand-alone v2.0.0 L1 MSWindows

IDENTIFICATION AND AUTHENTICATION

1.1.5 Ensure 'Password must meet complexity requirements' is set to 'Enabled'CIS Microsoft Windows Server 2025 v2.0.0 L1 MSWindows

IDENTIFICATION AND AUTHENTICATION

1.1.5 Ensure 'Password must meet complexity requirements' is set to 'Enabled'CIS Microsoft Windows Server 2019 v5.0.0 L1 DCWindows

IDENTIFICATION AND AUTHENTICATION

1.1.6 Ensure 'Relax minimum password length limits' is set to 'Enabled'CIS Microsoft Windows Server 2022 Stand-alone v2.0.0 L1 MSWindows

IDENTIFICATION AND AUTHENTICATION

1.2.22 Ensure that the --service-account-key-file argument is set as appropriateCIS Kubernetes v2.0.1 L1 Master NodeUnix

IDENTIFICATION AND AUTHENTICATION

1.3.2 Ensure that the --use-service-account-credentials argument is set to trueCIS Red Hat OpenShift Container Platform v1.9.0 L1OpenShift

IDENTIFICATION AND AUTHENTICATION

2.3.1.2 Ensure 'Accounts: Limit local account use of blank passwords to console logon only' is set to 'Enabled'CIS Microsoft Windows Server 2025 v2.0.0 L1 DCWindows

IDENTIFICATION AND AUTHENTICATION

2.3.1.2 Ensure 'Accounts: Limit local account use of blank passwords to console logon only' is set to 'Enabled'CIS Microsoft Windows Server 2019 v5.0.0 L1 DCWindows

IDENTIFICATION AND AUTHENTICATION

2.3.1.2 Ensure 'Accounts: Limit local account use of blank passwords to console logon only' is set to 'Enabled'CIS Microsoft Windows Server 2019 v5.0.0 L1 MSWindows

IDENTIFICATION AND AUTHENTICATION

2.3.17.1 Ensure 'User Account Control: Admin Approval Mode for the Built-in Administrator account' is set to 'Enabled'CIS Microsoft Windows 11 Enterprise v5.0.1 L1Windows

IDENTIFICATION AND AUTHENTICATION

2.3.17.1 Ensure 'User Account Control: Admin Approval Mode for the Built-in Administrator account' is set to 'Enabled'CIS Microsoft Windows 11 Enterprise v5.0.1 L1 BLWindows

IDENTIFICATION AND AUTHENTICATION

2.3.17.1 Ensure 'User Account Control: Admin Approval Mode for the Built-in Administrator account' is set to 'Enabled'CIS Microsoft Windows 11 Stand-alone v5.0.0 L1 BLWindows

IDENTIFICATION AND AUTHENTICATION

2.4.2 Ensure 'Require alphanumeric value' is set to 'Enabled'MobileIron - CIS Apple iPadOS 18 v2.0.0 L2 End User OwnedMDM

IDENTIFICATION AND AUTHENTICATION

2.4.2 Ensure 'Require alphanumeric value' is set to 'Enabled'AirWatch - CIS Apple iPadOS 26 v1.0.0 L2 End User OwnedMDM

IDENTIFICATION AND AUTHENTICATION

2.4.2 Ensure 'Require alphanumeric value' is set to 'Enabled'MobileIron - CIS Apple iPadOS 17 v1.1.0 End User Owned L2MDM

IDENTIFICATION AND AUTHENTICATION

2.5.1 Ensure Users' Accounts Do Not Have a Password HintCIS Apple macOS 13.0 Ventura Cloud-tailored v1.1.0 L1Unix

IDENTIFICATION AND AUTHENTICATION

2.6 Ensure that the --peer-auto-tls argument is not set to trueCIS Kubernetes v2.0.1 L1 Master NodeUnix

IDENTIFICATION AND AUTHENTICATION

3.4 Ensure 'PASSWORD_REUSE_MAX' Is Set To 'UNLIMITED'CIS Oracle Database 26ai v1.0.0 L1 RDBMS On Windows Server Host OS OracleDBOracleDB

IDENTIFICATION AND AUTHENTICATION

3.4.1 Ensure 'Allow simple value' is set to 'Disabled'AirWatch - CIS Apple iPadOS 17 Institutionally Owned L1MDM

IDENTIFICATION AND AUTHENTICATION

3.4.2 Ensure 'Require alphanumeric value' is set to 'Enabled'AirWatch - CIS Apple iPadOS 26 v1.0.0 L2 Institutionally OwnedMDM

IDENTIFICATION AND AUTHENTICATION

3.4.3 Ensure 'Minimum passcode length' is set to a value of '6' or greaterAirWatch - CIS Apple iPadOS 17 Institutionally Owned L1MDM

IDENTIFICATION AND AUTHENTICATION

4.2.12 minotherCIS IBM AIX 7.1 L1 v2.1.0Unix

IDENTIFICATION AND AUTHENTICATION

4.3 Ensure 'CHECK_POLICY' Option is set to 'ON' for All SQL Authenticated LoginsCIS Microsoft SQL Server 2025 v1.0.0 L1 AWS RDS MS_SQLDBMS_SQLDB

IDENTIFICATION AND AUTHENTICATION

5.1.1 Ensure all local user accounts have a hashed passwordCIS IBM AIX 7 v1.2.0 L1Unix

IDENTIFICATION AND AUTHENTICATION

5.2.2 Ensure Password Minimum Length Is ConfiguredCIS Apple macOS 10.14 v2.0.0 L1Unix

IDENTIFICATION AND AUTHENTICATION

5.2.2 Ensure Password Minimum Length Is ConfiguredCIS Apple macOS 11.0 Big Sur v4.0.0 L1Unix

IDENTIFICATION AND AUTHENTICATION

5.2.2 Ensure Password Minimum Length Is ConfiguredCIS Apple macOS 13.0 Ventura Cloud-tailored v1.1.0 L1Unix

IDENTIFICATION AND AUTHENTICATION

5.2.2 Ensure Password Minimum Length Is ConfiguredCIS Apple macOS 15.0 Sequoia v2.1.0 L1Unix

IDENTIFICATION AND AUTHENTICATION

5.2.3 Ensure Complex Password Must Contain Alphabetic Characters Is ConfiguredCIS Apple macOS 10.15 Catalina v3.0.0 L2Unix

IDENTIFICATION AND AUTHENTICATION

5.2.3 Ensure password history expiry is configuredCIS IBM AIX 7 v1.2.0 L1Unix

IDENTIFICATION AND AUTHENTICATION

5.2.4 Ensure passwords are controlled by password attributesCIS IBM AIX 7 v1.2.0 L1Unix

IDENTIFICATION AND AUTHENTICATION

5.2.5 Ensure Complex Password Must Contain Special Character Is ConfiguredCIS Apple macOS 10.14 v2.0.0 L2Unix

IDENTIFICATION AND AUTHENTICATION

5.2.5 Ensure Complex Password Must Contain Special Character Is ConfiguredCIS Apple macOS 11.0 Big Sur v4.0.0 L2Unix

IDENTIFICATION AND AUTHENTICATION

5.2.5 Ensure Complex Password Must Contain Special Character Is ConfiguredCIS Apple macOS 12.0 Monterey Cloud-tailored v1.1.0 L2Unix

IDENTIFICATION AND AUTHENTICATION

5.2.8 Ensure Password History Is ConfiguredCIS Apple macOS 10.14 v2.0.0 L1Unix

IDENTIFICATION AND AUTHENTICATION

5.2.8 Ensure Password History Is ConfiguredCIS Apple macOS 10.15 Catalina v3.0.0 L1Unix

IDENTIFICATION AND AUTHENTICATION

5.2.9 Ensure minimum password length is configuredCIS IBM AIX 7 v1.2.0 L1Unix

IDENTIFICATION AND AUTHENTICATION

5.3.1 Ensure password creation requirements are configured - lcreditCIS Aliyun Linux 2 L1 v1.0.0Unix

IDENTIFICATION AND AUTHENTICATION

5.3.1 Ensure password creation requirements are configured - minlenCIS Aliyun Linux 2 L1 v1.0.0Unix

IDENTIFICATION AND AUTHENTICATION

5.3.1 Ensure password creation requirements are configured - passwd-auth retryCIS Aliyun Linux 2 L1 v1.0.0Unix

IDENTIFICATION AND AUTHENTICATION

5.3.1 Ensure password creation requirements are configured - try_first_passCIS Aliyun Linux 2 L1 v1.0.0Unix

IDENTIFICATION AND AUTHENTICATION

5.3.2.4 Ensure pam_pwhistory module is enabledCIS Debian Linux 11 v2.0.0 L1 WorkstationUnix

IDENTIFICATION AND AUTHENTICATION

5.3.3 Ensure password reuse is limited - password-authCIS Aliyun Linux 2 L1 v1.0.0Unix

IDENTIFICATION AND AUTHENTICATION

5.3.3.4.2 Ensure pam_unix does not include rememberCIS Debian Linux 11 v2.0.0 L1 ServerUnix

IDENTIFICATION AND AUTHENTICATION

5.4.1.3 Ensure password expiration warning days is 7 or more - usersCIS Aliyun Linux 2 L1 v1.0.0Unix

IDENTIFICATION AND AUTHENTICATION

5.5.1.3 Ensure password expiration warning days is configuredCIS Amazon Linux 2 v4.0.0 L1 ServerUnix

IDENTIFICATION AND AUTHENTICATION

5.9 Ensure Users' Accounts Do Not Have a Password HintCIS Apple macOS 12.0 Monterey v4.0.0 L1Unix

IDENTIFICATION AND AUTHENTICATION

7.7 Prevent Password ReuseCIS MariaDB 10.11 v1.0.0 L1 MariaDB RDBMS MySQLDBMySQLDB

IDENTIFICATION AND AUTHENTICATION

18.9.26.4 Ensure 'Password Settings: Password Complexity' is set to 'Enabled: Large letters + small letters + numbers + special characters' or 'Passphrase'CIS Microsoft Windows Server 2025 v2.0.0 L1 MSWindows

IDENTIFICATION AND AUTHENTICATION