2.1 Ensure that IP addresses are mapped to usernames - Zones | CIS Palo Alto Firewall 9 Benchmark L2 v1.0.0 | Palo_Alto | |
2.3.9.4 Ensure 'Microsoft network server: Disconnect clients when logon hours expire' is set to 'Enabled' | CIS Microsoft Windows 8.1 v2.4.1 L1 | Windows | ACCESS CONTROL |
2.3.11.6 Ensure 'Network security: Force logoff when logon hours expire' is set to 'Enabled' | CIS Microsoft Windows 8.1 v2.4.1 L1 | Windows | ACCESS CONTROL |
2.3.11.6 Ensure 'Network security: Force logoff when logon hours expire' is set to 'Enabled' | CIS Microsoft Windows Server 2016 MS L1 v1.2.0 | Windows | ACCESS CONTROL |
4.1.7 Ensure login and logout events are collected - /var/log/lastlog | CIS Ubuntu Linux 18.04 LTS Server L2 v2.0.1 | Unix | AUDIT AND ACCOUNTABILITY |
4.1.7 Ensure login and logout events are collected - /var/log/lastlog | CIS Ubuntu Linux 20.04 LTS Server L2 v1.0.0 | Unix | AUDIT AND ACCOUNTABILITY |
4.1.7 Ensure login and logout events are collected - /var/log/tallylog | CIS Red Hat EL7 Server L2 v3.0.1 | Unix | AUDIT AND ACCOUNTABILITY |
4.1.7 Ensure login and logout events are collected - /var/log/tallylog | CIS Ubuntu Linux 20.04 LTS Server L2 v1.0.0 | Unix | AUDIT AND ACCOUNTABILITY |
4.1.7 Ensure login and logout events are collected - auditctl /var/log/faillog | CIS Red Hat EL7 Workstation L2 v3.0.1 | Unix | AUDIT AND ACCOUNTABILITY |
4.1.7 Ensure login and logout events are collected - auditctl /var/log/faillog | CIS Ubuntu Linux 18.04 LTS Workstation L2 v2.0.1 | Unix | AUDIT AND ACCOUNTABILITY |
4.1.7 Ensure login and logout events are collected - auditctl /var/log/lastlog | CIS Ubuntu Linux 18.04 LTS Server L2 v2.0.1 | Unix | AUDIT AND ACCOUNTABILITY |
4.1.7 Ensure login and logout events are collected - auditctl /var/run/faillock/ | CIS Red Hat EL7 Server L2 v3.0.1 | Unix | AUDIT AND ACCOUNTABILITY |
4.1.7 Ensure login and logout events are collected - auditctl /var/run/faillock/ | CIS Red Hat EL7 Workstation L2 v3.0.1 | Unix | AUDIT AND ACCOUNTABILITY |
4.1.8 Ensure login and logout events are collected - auditctl tallylog | CIS Debian 9 Workstation L2 v1.0.0 | Unix | AUDIT AND ACCOUNTABILITY |
4.1.8 Ensure login and logout events are collected - faillog | CIS Debian 9 Server L2 v1.0.0 | Unix | AUDIT AND ACCOUNTABILITY |
4.1.8 Ensure login and logout events are collected - faillog | CIS Debian 9 Workstation L2 v1.0.0 | Unix | AUDIT AND ACCOUNTABILITY |
4.1.8 Ensure session initiation information is collected - auditctl btmp | CIS Ubuntu Linux 20.04 LTS Server L2 v1.0.0 | Unix | AUDIT AND ACCOUNTABILITY |
4.1.8 Ensure session initiation information is collected - auditctl utmp | CIS Ubuntu Linux 18.04 LTS Server L2 v2.0.1 | Unix | AUDIT AND ACCOUNTABILITY |
4.1.8 Ensure session initiation information is collected - auditctl wtmp | CIS Red Hat EL7 Workstation L2 v3.0.1 | Unix | AUDIT AND ACCOUNTABILITY |
4.1.8 Ensure session initiation information is collected - auditctl wtmp | CIS Ubuntu Linux 20.04 LTS Server L2 v1.0.0 | Unix | AUDIT AND ACCOUNTABILITY |
4.1.8 Ensure session initiation information is collected - auditctl wtmp | CIS Ubuntu Linux 18.04 LTS Server L2 v2.0.1 | Unix | AUDIT AND ACCOUNTABILITY |
4.1.8 Ensure session initiation information is collected - btmp | CIS Ubuntu Linux 18.04 LTS Server L2 v2.0.1 | Unix | AUDIT AND ACCOUNTABILITY |
4.1.8 Ensure session initiation information is collected - btmp | CIS Ubuntu Linux 20.04 LTS Server L2 v1.0.0 | Unix | AUDIT AND ACCOUNTABILITY |
4.1.8 Ensure session initiation information is collected - utmp | CIS Red Hat EL7 Server L2 v3.0.1 | Unix | AUDIT AND ACCOUNTABILITY |
4.1.8 Ensure session initiation information is collected - utmp | CIS Red Hat EL7 Workstation L2 v3.0.1 | Unix | AUDIT AND ACCOUNTABILITY |
4.1.8 Ensure session initiation information is collected - utmp | CIS Ubuntu Linux 18.04 LTS Workstation L2 v2.0.1 | Unix | AUDIT AND ACCOUNTABILITY |
4.1.8 Ensure session initiation information is collected - wtmp | CIS Red Hat EL7 Server L2 v3.0.1 | Unix | AUDIT AND ACCOUNTABILITY |
4.1.8 Ensure session initiation information is collected - wtmp | CIS Red Hat EL7 Workstation L2 v3.0.1 | Unix | AUDIT AND ACCOUNTABILITY |
4.1.8 Ensure session initiation information is collected - wtmp | CIS Ubuntu Linux 20.04 LTS Server L2 v1.0.0 | Unix | AUDIT AND ACCOUNTABILITY |
4.1.8 Ensure session initiation information is collected - wtmp | CIS Ubuntu Linux 18.04 LTS Server L2 v2.0.1 | Unix | AUDIT AND ACCOUNTABILITY |
4.1.9 Ensure session initiation information is collected - /var/run/utmp | CIS Debian 9 Workstation L2 v1.0.0 | Unix | AUDIT AND ACCOUNTABILITY |
4.1.9 Ensure session initiation information is collected - auditctl /var/run/utmp | CIS Amazon Linux 2 v1.0.0 L2 | Unix | AUDIT AND ACCOUNTABILITY |
5.2.2.6 Enable Azure AD Identity Protection user risk policies | CIS Microsoft 365 Foundations E5 L2 v3.1.0 | microsoft_azure | SYSTEM AND INFORMATION INTEGRITY |
5.2.2.7 Enable Azure AD Identity Protection sign-in risk policies | CIS Microsoft 365 Foundations E5 L2 v3.1.0 | microsoft_azure | SYSTEM AND INFORMATION INTEGRITY |
5.2.9 Ensure SSH HostbasedAuthentication is disabled | CIS Debian 9 Server L1 v1.0.0 | Unix | ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION |
5.3 Ensure 'Login Auditing' is set to 'failed logins' | CIS SQL Server 2017 Database L1 AWS RDS v1.3.0 | MS_SQLDB | AUDIT AND ACCOUNTABILITY |
5.3 Ensure 'Login Auditing' is set to 'failed logins' | CIS SQL Server 2017 Database L1 DB v1.3.0 | MS_SQLDB | AUDIT AND ACCOUNTABILITY |
5.3 Ensure 'Login Auditing' is set to 'failed logins' | CIS SQL Server 2016 Database L1 AWS RDS v1.4.0 | MS_SQLDB | AUDIT AND ACCOUNTABILITY |
5.3 Ensure 'Login Auditing' is set to 'failed logins' | CIS SQL Server 2016 Database L1 DB v1.4.0 | MS_SQLDB | AUDIT AND ACCOUNTABILITY |
5.3 Ensure 'Login Auditing' is set to 'failed logins' | CIS SQL Server 2022 Database L1 DB v1.1.0 | MS_SQLDB | AUDIT AND ACCOUNTABILITY |
17.1.1 (L1) Ensure 'Audit Credential Validation' is set to 'Success and Failure' | CIS Microsoft Windows 8.1 v2.4.0 L1 Bitlocker | Windows | |
17.1.2 Ensure 'Audit Kerberos Authentication Service' is set to 'Success and Failure' (DC Only) | CIS Microsoft Windows Server 2008 R2 Domain Controller Level 1 v3.2.0 | Windows | |
17.1.3 Ensure 'Audit Kerberos Service Ticket Operations' is set to 'Success and Failure' (DC Only) | CIS Windows Server 2012 R2 DC L1 v2.4.0 | Windows | AUDIT AND ACCOUNTABILITY |
17.5.2 Ensure 'Audit Logoff' is set to include 'Success' | CIS Windows Server 2012 R2 DC L1 v2.5.0 | Windows | AUDIT AND ACCOUNTABILITY |
17.5.2 Ensure 'Audit Logoff' is set to include 'Success' | CIS Windows Server 2012 R2 MS L1 v2.5.0 | Windows | AUDIT AND ACCOUNTABILITY |
17.5.3 Ensure 'Audit Logon' is set to 'Success and Failure' | CIS Windows Server 2012 R2 DC L1 v2.5.0 | Windows | AUDIT AND ACCOUNTABILITY |
17.5.3 Ensure 'Audit Logon' is set to 'Success and Failure' | CIS Windows Server 2012 R2 MS L1 v2.4.0 | Windows | AUDIT AND ACCOUNTABILITY |
17.5.4 Ensure 'Audit Other Logon/Logoff Events' is set to 'Success and Failure' | CIS Windows Server 2012 R2 MS L1 v2.5.0 | Windows | AUDIT AND ACCOUNTABILITY |
17.5.4 Ensure 'Audit Other Logon/Logoff Events' is set to 'Success and Failure' | CIS Windows Server 2012 R2 DC L1 v2.5.0 | Windows | AUDIT AND ACCOUNTABILITY |
17.5.4 Ensure 'Audit Other Logon/Logoff Events' is set to 'Success and Failure' | CIS Windows Server 2012 R2 MS L1 v2.4.0 | Windows | AUDIT AND ACCOUNTABILITY |