Item Search

NameAudit NamePluginCategory
1.1 Remove extraneous files and directories - /conf/Catalina/localhost/host-manager.xmlCIS Apache Tomcat 8 L2 v1.1.0 MiddlewareUnix

CONFIGURATION MANAGEMENT

1.1 Remove extraneous files and directories - /webapps/ROOT/adminCIS Apache Tomcat 8 L2 v1.1.0 MiddlewareUnix

CONFIGURATION MANAGEMENT

1.1 Remove extraneous files and directories - /webapps/webdavCIS Apache Tomcat 8 L2 v1.1.0 MiddlewareUnix

CONFIGURATION MANAGEMENT

1.1 Remove extraneous files and directories - CATALINA_HOME/webapps/webdavCIS Apache Tomcat 8 L2 v1.1.0Unix

CONFIGURATION MANAGEMENT

2.1.3 Disable Local Graphical Login Environment - Make sure that /application/graphical-login/cde-login is disabledCIS Solaris 10 L1 v5.2Unix
2.1.3 Disable Local Graphical Login Environment - Make sure that /application/graphical-login/gdm2-login is disabledCIS Solaris 10 L1 v5.2Unix
2.1.5 Disable Local WBEM - Make sure that application/management/wbem is disabledCIS Solaris 10 L1 v5.2Unix
2.1.6 Disable Local BSD Print Protocol Adapter - Make sure that /application/print/rfc1179 is disabledCIS Solaris 10 L1 v5.2Unix
2.1.6 Ensure rsh server is not enabled - rloginCIS Amazon Linux v2.1.0 L1Unix

CONFIGURATION MANAGEMENT

2.1.7 Ensure talk server is not enabledCIS Amazon Linux v2.1.0 L1Unix

CONFIGURATION MANAGEMENT

2.1.8 Ensure telnet server is not enabledCIS Amazon Linux v2.1.0 L1Unix

CONFIGURATION MANAGEMENT

2.1.10 Ensure rsync service is not enabledCIS Amazon Linux v2.1.0 L1Unix

CONFIGURATION MANAGEMENT

2.1.11 Ensure xinetd is not enabledCIS Amazon Linux v2.1.0 L1Unix

CONFIGURATION MANAGEMENT

2.2.4 Disable NIS+ daemons - Make sure that /network/rpc/nisplus is disabledCIS Solaris 10 L1 v5.2Unix
2.2.5 Ensure DHCP Server is not enabledCIS Amazon Linux v2.1.0 L1Unix

CONFIGURATION MANAGEMENT

2.2.6 Disable Kerberos TGT Expiration Warning - Make sure that /network/security/ktkt_warn is disabledCIS Solaris 10 L1 v5.2Unix
2.2.7 Disable Generic Security Services (GSS) daemons - Make sure that /network/rpc/gss is disabledCIS Solaris 10 L1 v5.2Unix
2.2.7 Ensure NFS and RPC are not enabled - RPCCIS Amazon Linux v2.1.0 L1Unix

CONFIGURATION MANAGEMENT

2.2.9 Ensure FTP Server is not enabledCIS Amazon Linux v2.1.0 L1Unix

CONFIGURATION MANAGEMENT

2.2.13 Disable Solaris Volume Manager GUI - Make sure that network/rpc/meta is disabled.CIS Solaris 10 L1 v5.2Unix
2.2.13 Disable Solaris Volume Manager GUI - Make sure that network/rpc/metamed is disabled.CIS Solaris 10 L1 v5.2Unix
2.2.14 Ensure SNMP Server is not enabledCIS Amazon Linux v2.1.0 L1Unix

CONFIGURATION MANAGEMENT

2.3 Establish a Secure Baseline - Make sure that /network/rpc/bind only allows local connections (netservices limited)CIS Solaris 10 L1 v5.2Unix
2.3 Establish a Secure Baseline - Make sure that application/management/sma:default is disabled (netservices limited)CIS Solaris 10 L1 v5.2Unix
2.3 Establish a Secure Baseline - Make sure that application/x11/xfs:default is disabled (netservices limited)CIS Solaris 10 L1 v5.2Unix
2.3 Establish a Secure Baseline - Make sure that network/nfs/client:default is disabled (netservices limited)CIS Solaris 10 L1 v5.2Unix
2.3 Establish a Secure Baseline - Make sure that network/rpc/rstat:default is disabled (netservices limited)CIS Solaris 10 L1 v5.2Unix
2.3 Establish a Secure Baseline - Make sure that network/shell:default is disabled (netservices limited)CIS Solaris 10 L1 v5.2Unix
2.3 Establish a Secure Baseline - Make sure that network/telnet:default is disabled (netservices limited)CIS Solaris 10 L1 v5.2Unix
2.3 Establish a Secure Baseline - Make sure that system/webconsole:console only allows local connections (netservices limited)CIS Solaris 10 L1 v5.2Unix
2.4 Configure TCP Wrappers - enable tcp_wrappers for inetdCIS Solaris 10 L1 v5.2Unix
2.4 Disable NIS Server Services - domainCIS Solaris 11 L1 v1.1.0Unix
2.4 Disable NIS Server Services - serverCIS Solaris 11 L1 v1.1.0Unix
2.4 Disable NIS Server Services - serverCIS Solaris 11.2 L1 v1.1.0Unix
2.5 Disable NIS Client Services - clientCIS Solaris 11 L1 v1.1.0Unix
2.5 Disable NIS Client Services - domainCIS Solaris 11 L1 v1.1.0Unix
2.6 Disable Kerberos TGT Expiration WarningCIS Solaris 11 L1 v1.1.0Unix
2.7 Disable Generic Security Services (GSS)CIS Solaris 11 L1 v1.1.0Unix
2.7 Disable Generic Security Services (GSS)CIS Solaris 11.1 L1 v1.0.0Unix
2.8 Disable Removable Volume Manager - smserverCIS Solaris 11.2 L1 v1.1.0Unix
2.9 Disable automount ServiceCIS Solaris 11.2 L1 v1.1.0Unix
2.11 Disable Local-only RPC Port Mapping ServiceCIS Solaris 11 L1 v1.1.0Unix
2.13 Disable Telnet ServiceCIS Solaris 11 L1 v1.1.0Unix
3.5 Disable Network Routing - Make sure that ipv6-forwarding is disabledCIS Solaris 10 L1 v5.2Unix
4.2.1.5 Ensure remote rsyslog messages are only accepted on designated log hosts. - InputTCPServerRun 514CIS Amazon Linux v2.1.0 L1Unix

CONFIGURATION MANAGEMENT

10.2 SN.2 Remove Support for Internet Services (inetd)CIS Solaris 11.1 L2 v1.0.0Unix
10.2 SN.2 Remove Support for Internet Services (inetd)CIS Solaris 11.2 L2 v1.1.0Unix
SonicWALL - Disable insecure services - HTTPTNS SonicWALL v5.9SonicWALL
XenServer - Disable promiscuous mode on all network interfacesTNS Citrix XenServerUnix
XenServer - Disallow unplug detection on the storage network interfaceTNS Citrix XenServerUnix