Item Search

NameAudit NamePluginCategory
1.6.1.1 Ensure AppArmor is installedCIS Ubuntu Linux 16.04 LTS Server L1 v2.0.0Unix

ACCESS CONTROL

1.6.1.2 Ensure AppArmor is enabled in the bootloader configuration - apparmorCIS Ubuntu Linux 16.04 LTS Server L1 v2.0.0Unix

ACCESS CONTROL

1.6.1.2 Ensure AppArmor is enabled in the bootloader configuration - apparmorCIS Ubuntu Linux 16.04 LTS Workstation L1 v2.0.0Unix

ACCESS CONTROL

1.6.1.2 Ensure AppArmor is enabled in the bootloader configuration - securityCIS Ubuntu Linux 16.04 LTS Workstation L1 v2.0.0Unix

ACCESS CONTROL

1.6.1.2 Ensure the SELinux state is enforcingHuawei EulerOS 2 Server L2 v1.0Unix

ACCESS CONTROL

1.6.1.3 Ensure all AppArmor Profiles are in enforce or complain mode - unconfinedCIS Ubuntu Linux 16.04 LTS Server L1 v2.0.0Unix

ACCESS CONTROL

1.6.1.3 Ensure SELinux policy is configuredCIS Oracle Linux 6 Workstation L1 v2.0.0Unix

ACCESS CONTROL

1.6.1.5 Ensure the SELinux mode is enforcing - configCIS Oracle Linux 6 Server L2 v2.0.0Unix

ACCESS CONTROL

1.6.1.6 Ensure no unconfined daemons existHuawei EulerOS 2 Workstation L2 v1.0Unix

ACCESS CONTROL

1.7.1.5 Ensure no unconfined services existCIS Red Hat EL8 Server L2 v1.0.0Unix

ACCESS CONTROL

2.2.59 Ensure 'Take ownership of files or other objects' is set to 'Administrators'CIS Microsoft Windows Server 2022 STIG v1.0.0 L1 MSWindows

ACCESS CONTROL

2.3.10.11 (L1) Ensure 'Network access: Shares that can be accessed anonymously' is set to 'None'CIS Microsoft Windows 10 Stand-alone v3.0.0 L1Windows

ACCESS CONTROL

2.3.10.12 (L1) Ensure 'Network access: Shares that can be accessed anonymously' is set to 'None'CIS Windows Server 2012 MS L1 v3.0.0Windows

ACCESS CONTROL

2.3.10.12 (L1) Ensure 'Network access: Shares that can be accessed anonymously' is set to 'None'CIS Microsoft Windows Server 2019 v3.0.1 L1 MSWindows

ACCESS CONTROL

2.4 Ensure SharePoint provides the ability to prohibit the transfer of unsanctioned information in accordance with security policy.CIS Microsoft SharePoint 2016 OS v1.0.0Windows

ACCESS CONTROL

3.4 Ensure SharePoint identifies data type, specification, and usage when transferring information between different security domains.CIS Microsoft SharePoint 2016 OS v1.0.0Windows

ACCESS CONTROL

3.04 Oracle account .profile file - 'Unix systems umask 022'CIS v1.1.0 Oracle 11g OS L1Unix

ACCESS CONTROL

4.4 Ensure logrotate assigns appropriate permissionsCIS Ubuntu Linux 18.04 LXD Host L1 Workstation v1.0.0Unix

ACCESS CONTROL

4.4 Ensure logrotate assigns appropriate permissionsCIS Ubuntu Linux 16.04 LTS Server L1 v2.0.0Unix

ACCESS CONTROL

5.1 Set daemon umask - Check if CMASK is set to 022 in /etc/default/init.CIS Solaris 10 L1 v5.2Unix

ACCESS CONTROL

5.1.8 Ensure cron is restricted to authorized users - '/etc/cron.allow'CIS Ubuntu Linux 16.04 LTS Server L1 v2.0.0Unix

ACCESS CONTROL

5.1.8 Ensure cron is restricted to authorized users - '/etc/cron.deny'CIS Ubuntu Linux 16.04 LTS Workstation L1 v2.0.0Unix

ACCESS CONTROL

5.1.9 Ensure at is restricted to authorized users - '/etc/at.deny'CIS Ubuntu Linux 16.04 LTS Server L1 v2.0.0Unix

ACCESS CONTROL

5.2.2 Ensure permissions on SSH private host key files are configuredCIS Ubuntu Linux 18.04 LXD Host L1 Workstation v1.0.0Unix

ACCESS CONTROL

5.3.3 Ensure permissions on SSH public host key files are configuredCIS Ubuntu Linux 16.04 LTS Workstation L1 v2.0.0Unix

ACCESS CONTROL

5.4.2 Ensure system accounts are non-loginCIS Ubuntu Linux 16.04 LTS Workstation L1 v1.1.0Unix

ACCESS CONTROL

5.4.4 Ensure default user umask is 027 or more restrictive - /etc/bash.bashrc.localCIS SUSE Linux Enterprise Server 12 L1 v2.1.0Unix

ACCESS CONTROL

5.4.4 Ensure default user umask is 027 or more restrictive - /etc/bashrcHuawei EulerOS 2 Server L1 v1.0Unix

ACCESS CONTROL

5.4.4 Ensure default user umask is 027 or more restrictive - /etc/profileHuawei EulerOS 2 Workstation L1 v1.0Unix

ACCESS CONTROL

5.5.4 Ensure default user umask is 027 or more restrictive - '/etc/bash.bashrc'CIS Ubuntu Linux 16.04 LTS Workstation L1 v2.0.0Unix

ACCESS CONTROL

5.5.4 Ensure default user umask is 027 or more restrictive - /etc/profile /etc/profile.dCIS Ubuntu Linux 16.04 LTS Workstation L1 v2.0.0Unix

ACCESS CONTROL

5.5.5 Ensure default user umask is 027 or more restrictive - /etc/profile /etc/profile.d/*.shCIS Red Hat EL8 Server L1 v1.0.0Unix

ACCESS CONTROL

5.5.5 Ensure default user umask is 027 or more restrictive - /etc/profile /etc/profile.d/*.shCIS Red Hat EL8 Workstation L1 v1.0.0Unix

ACCESS CONTROL

5.6 Ensure access to the su command is restrictedCIS Red Hat EL7 Server L1 v3.0.1Unix

ACCESS CONTROL

5.6 Ensure access to the su command is restrictedCIS Red Hat EL7 Workstation L1 v3.0.1Unix

ACCESS CONTROL

6.2.6 Ensure users' home directories permissions are 750 or more restrictiveCIS Ubuntu Linux 16.04 LTS Server L1 v2.0.0Unix

ACCESS CONTROL

6.2.7 Ensure users' dot files are not group or world writableCIS Ubuntu Linux 16.04 LTS Workstation L1 v2.0.0Unix

ACCESS CONTROL

6.2.20 Ensure shadow group is empty - /etc/passwdCIS Oracle Linux 6 Server L1 v2.0.0Unix

ACCESS CONTROL

7.2 Ensure appropriate database file permissions are setCIS MongoDB 7 L1 OS Linux v1.0.0Unix

ACCESS CONTROL

7.2 Ensure appropriate database file permissions are setCIS MongoDB 7 L1 OS Windows v1.0.0Windows

ACCESS CONTROL

7.2 Ensure appropriate database file permissions are set.CIS MongoDB 4 L1 OS Linux v1.0.0Unix

ACCESS CONTROL

7.2 Ensure appropriate database file permissions are set.CIS MongoDB 4 L1 OS Windows v1.0.0Windows

ACCESS CONTROL

7.4 Set Default File Creation Mask for FTP UsersCIS Solaris 11.1 L1 v1.0.0Unix

ACCESS CONTROL

7.4 Set Default File Creation Mask for FTP UsersCIS Solaris 11.2 L1 v1.1.0Unix

ACCESS CONTROL

7.4 Set Default File Creation Mask for FTP UsersCIS Solaris 11 L1 v1.1.0Unix

ACCESS CONTROL

7.6 Set Default umask for Users - Check if 'umask' is set to 077 - Check /etc/profile.CIS Solaris 10 L1 v5.2Unix

ACCESS CONTROL

7.6 Set Default umask for Users, Check if 'UMASK' is set to 077.CIS Solaris 10 L1 v5.2Unix

ACCESS CONTROL

9.25 Find Files and Directories with Extended AttributesCIS Solaris 11.1 L1 v1.0.0Unix

ACCESS CONTROL

18.10.3.1 (L2) Ensure 'Allow a Windows app to share application data between users' is set to 'Disabled'CIS Microsoft Windows Server 2016 v3.0.0 L2 DCWindows

ACCESS CONTROL

18.10.3.1 (L2) Ensure 'Allow a Windows app to share application data between users' is set to 'Disabled'CIS Microsoft Windows Server 2022 v3.0.0 L2 Domain ControllerWindows

ACCESS CONTROL