Item Search

NameAudit NamePluginCategory
1.5.2 Ensure bootloader password is setCIS CentOS Linux 8 Server L1 v1.0.0Unix

ACCESS CONTROL

1.6.1.1 Ensure SELinux is installedCIS Amazon Linux 2 STIG v1.0.0 L2Unix

ACCESS CONTROL

1.6.1.2 Ensure SELinux is not disabled in bootloader configurationCIS Amazon Linux 2 STIG v1.0.0 L2Unix

ACCESS CONTROL

1.6.1.3 Ensure SELinux policy is configuredCIS Oracle Linux 6 Server L1 v2.0.0Unix

ACCESS CONTROL

1.6.1.3 Ensure the SELinux state is enforcing - configCIS Amazon Linux 2 STIG v1.0.0 L2Unix

ACCESS CONTROL

1.6.1.4 Ensure the SELinux mode is enforcing or permissive - configCIS CentOS 6 Workstation L1 v3.0.0Unix

ACCESS CONTROL

1.6.1.5 Ensure the SELinux mode is enforcing - getenforceCIS CentOS 6 Server L2 v3.0.0Unix

ACCESS CONTROL

1.6.1.6 Ensure no unconfined daemons existCIS Distribution Independent Linux Server L2 v1.1.0Unix

ACCESS CONTROL

1.6.3 Ensure SELinux or AppArmor are installedCIS Debian 8 Server L2 v2.0.2Unix

ACCESS CONTROL

1.6.3 Ensure SELinux or AppArmor are installedCIS Debian 8 Workstation L2 v2.0.2Unix

ACCESS CONTROL

2.2.45 Ensure 'Take ownership of files or other objects' is set to 'Administrators' - AdministratorsCIS Azure Compute Microsoft Windows Server 2022 v1.0.0 L1 DCWindows

ACCESS CONTROL

2.2.48 (L1) Ensure 'Take ownership of files or other objects' is set to 'Administrators'CIS Windows Server 2012 R2 MS L1 v3.0.0Windows

ACCESS CONTROL

2.2.56 (L1) Ensure 'Take ownership of files or other objects' is set to 'Administrators'CIS Microsoft Windows Server 2016 STIG v2.0.0 L1 DCWindows

ACCESS CONTROL

2.3.10.11 (L1) Ensure 'Network access: Shares that can be accessed anonymously' is set to 'None'CIS Microsoft Windows 11 Enterprise v3.0.0 L1Windows

ACCESS CONTROL

2.3.10.12 (L1) Ensure 'Network access: Shares that can be accessed anonymously' is set to 'None'CIS Microsoft Windows Server 2016 v3.0.0 L1 DCWindows

ACCESS CONTROL

3.1 Ensure 'datadir' Has Appropriate PermissionsCIS MySQL 8.0 Enterprise Database L1 v1.3.0MySQLDB

ACCESS CONTROL

3.3 Set daemon umask (/usr/local/etc/rc.d/* umask)CIS FreeBSD v1.0.5Unix

ACCESS CONTROL

3.4 Ensure 'slow_query_log' Has Appropriate PermissionsCIS MySQL 8.0 Enterprise Database L1 v1.3.0MySQLDB

ACCESS CONTROL

3.8 Ensure Plugin Directory Has Appropriate PermissionsCIS MySQL 8.0 Community Database L1 v1.0.0MySQLDB

ACCESS CONTROL

3.9 Ensure 'audit_log_file' Has Appropriate PermissionsCIS MySQL 8.0 Community Database L1 v1.0.0MySQLDB

ACCESS CONTROL

3.9 Ensure 'audit_log_file' Has Appropriate PermissionsCIS MySQL 8.0 Enterprise Database L1 v1.3.0MySQLDB

ACCESS CONTROL

3.11.31.1 (L1) Ensure 'Prevent users from sharing files within their profile. (User)' is set to 'Enabled'CIS Microsoft Intune for Windows 10 v3.0.1 L1Windows

ACCESS CONTROL

3.11.31.1 (L1) Ensure 'Prevent users from sharing files within their profile. (User)' is set to 'Enabled'CIS Microsoft Intune for Windows 11 v3.0.1 L1Windows

ACCESS CONTROL

4.1 Ensure Access to OS Root Directory Is Denied By Default - 'httpd.conf Require all deniedCIS Apache HTTP Server 2.2 L1 v3.5.0Unix

ACCESS CONTROL

4.2 Ensure Appropriate Access to Web Content Is Allowed - 'httpd.conf Allow is configured'CIS Apache HTTP Server 2.2 L1 v3.5.0Unix

ACCESS CONTROL

4.4 Ensure Anonymous authentication is deniedCIS Microsoft SharePoint 2016 OS v1.1.0Windows

ACCESS CONTROL

5.4.4 Ensure default user umask is 027 or more restrictive - /etc/login.defsCIS Debian Family Workstation L1 v1.0.0Unix

ACCESS CONTROL

5.4.4 Ensure default user umask is 027 or more restrictive - /etc/pam.d/common-sessionCIS Debian Family Server L1 v1.0.0Unix

ACCESS CONTROL

5.11 Ensure Access to Inappropriate File Extensions Is Restricted - 'httpd.conf FileMatch directive configuration'CIS Apache HTTP Server 2.2 L2 v3.5.0Unix

ACCESS CONTROL

6.1.3 Disable guest account loginCIS Apple macOS 10.15 v1.3.0 L1Unix

ACCESS CONTROL

6.1.3 Disable guest account loginCIS Apple macOS 11 v1.1.0 L1Unix

ACCESS CONTROL

6.2.10 Ensure users' dot files are not group or world writableCIS Amazon Linux 2 STIG v1.0.0 L1Unix

ACCESS CONTROL

7.6 Ensure directory in logging.properties is a secure location - check application log directory is secureCIS Apache Tomcat 9 L1 v1.2.0Unix

ACCESS CONTROL

7.6 Ensure directory in logging.properties is a secure location - check log directory locationCIS Apache Tomcat 8 L1 v1.1.0 MiddlewareUnix

ACCESS CONTROL

7.6 Ensure directory in logging.properties is a secure location - check prefix application nameCIS Apache Tomcat 8 L1 v1.1.0Unix

ACCESS CONTROL

7.6 Ensure directory in logging.properties is a secure location - check prefix application nameCIS Apache Tomcat 9 L1 v1.2.0Unix

ACCESS CONTROL

8.8 Set default umask for users (/etc/login.conf)CIS FreeBSD v1.0.5Unix

ACCESS CONTROL

8.8 Set default umask for users (/usr/share/skel/dot.cshrc)CIS FreeBSD v1.0.5Unix

ACCESS CONTROL

10.4 Set Default umask for Users - /etc/bash.bashrcCIS Debian Linux 7 L1 v1.0.0Unix

ACCESS CONTROL

10.4 Set Default umask for Users - /etc/profile.d/*CIS Debian Linux 7 L1 v1.0.0Unix

ACCESS CONTROL

10.19 Setting Security Lifecycle Listener (check for umask present in startup)CIS Apache Tomcat 7 L1 v1.1.0 MiddlewareUnix

ACCESS CONTROL

18.10.3.1 (L2) Ensure 'Allow a Windows app to share application data between users' is set to 'Disabled'CIS Microsoft Windows 10 Enterprise v3.0.0 L2Windows

ACCESS CONTROL

18.10.3.1 (L2) Ensure 'Allow a Windows app to share application data between users' is set to 'Disabled'CIS Microsoft Windows 10 Enterprise v3.0.0 L2 + BLWindows

ACCESS CONTROL

18.10.3.1 (L2) Ensure 'Allow a Windows app to share application data between users' is set to 'Disabled'CIS Microsoft Windows 11 Stand-alone v3.0.0 L2 BLWindows

ACCESS CONTROL

18.10.3.1 (L2) Ensure 'Allow a Windows app to share application data between users' is set to 'Disabled'CIS Microsoft Windows 10 Stand-alone v3.0.0 L2Windows

ACCESS CONTROL

19.7.26.1 (L1) Ensure 'Prevent users from sharing files within their profile.' is set to 'Enabled'CIS Microsoft Windows 10 Enterprise v3.0.0 L1 + NGWindows

ACCESS CONTROL

19.7.26.1 (L1) Ensure 'Prevent users from sharing files within their profile.' is set to 'Enabled'CIS Microsoft Windows 10 EMS Gateway v3.0.0 L1Windows

ACCESS CONTROL

19.7.26.1 (L1) Ensure 'Prevent users from sharing files within their profile.' is set to 'Enabled'CIS Microsoft Windows 11 Enterprise v3.0.0 L1Windows

ACCESS CONTROL

19.7.26.1 (L1) Ensure 'Prevent users from sharing files within their profile.' is set to 'Enabled'CIS Microsoft Windows 10 Stand-alone v3.0.0 L1Windows

ACCESS CONTROL

19.7.26.1 (L1) Ensure 'Prevent users from sharing files within their profile.' is set to 'Enabled'CIS Microsoft Windows Server 2016 v3.0.0 L1 MSWindows

ACCESS CONTROL