4.4.2.3.4 Ensure pam_pwhistory includes use_authtok | CIS Amazon Linux 2 v3.0.0 L1 | Unix | IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION |
4.5.1.5 Ensure all users last password change date is in the past | CIS Amazon Linux 2 v3.0.0 L1 | Unix | IDENTIFICATION AND AUTHENTICATION |
4.5.2.2 Ensure root user umask is configured | CIS Amazon Linux 2 v3.0.0 L1 | Unix | ACCESS CONTROL, MEDIA PROTECTION |
4.5.3.3 Ensure default user umask is configured | CIS Amazon Linux 2 v3.0.0 L1 | Unix | ACCESS CONTROL, MEDIA PROTECTION |
5.1.1.2 Ensure rsyslog service is enabled | CIS Amazon Linux 2 v3.0.0 L1 | Unix | AUDIT AND ACCOUNTABILITY |
6.1.4 Ensure permissions on /etc/group- are configured | CIS Amazon Linux 2 v3.0.0 L1 | Unix | ACCESS CONTROL, MEDIA PROTECTION |
6.1.10 Ensure permissions on /etc/security/opasswd are configured | CIS Amazon Linux 2 v3.0.0 L1 | Unix | ACCESS CONTROL, MEDIA PROTECTION |
6.2.5 Ensure no duplicate GIDs exist | CIS Amazon Linux 2 v3.0.0 L1 | Unix | IDENTIFICATION AND AUTHENTICATION |
6.2.7 Ensure no duplicate group names exist | CIS Amazon Linux 2 v3.0.0 L1 | Unix | IDENTIFICATION AND AUTHENTICATION |
6.2.10 Ensure local interactive user home directories are configured | CIS Amazon Linux 2 v3.0.0 L1 | Unix | ACCESS CONTROL, MEDIA PROTECTION |
aidecheck.service is enabled | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
bluetooth.service active | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
Chain FORWARD | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
Chain OUTPUT | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
Check for crontab aide | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
Check if cronie is installed | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
ClientAliveCountMax is greater than 0 | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
dns services exist | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
dnsmasq services exist | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
Ensure no file named /etc/pam.d/password-auth exists and matches pattern | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
Grub configuration | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
hook forward | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
hook input | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
httpd.socket httpd.service nginx.service active | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
ip dhcp snooping information option circuit-id type 2 format | DISA STIG Arista MLS EOS 4.2x L2S v2r1 | Arista | |
iptables active | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
iptables Chain FORWARD | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
iptables installed | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
journald check - active | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
Key | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
mrsv not included in /etc/issue | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
net-snmp is installed | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
New format module load imtcp | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
nft list ruleset - ct state | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
nginx services exist on the system | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
password-auth authfail | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
password-auth preauth deny | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
password-auth preauth unlock_time | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
rpcbind.socket rpcbind.service enabled | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
rsyslog check - enabled | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
rsyslog.service | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
Running configuration | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
shadow inactive password lock | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
smb.service enabled | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
system-auth | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
systemctl status aidecheck.timer | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
telnet-server is installed | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
tftp.socket tftp.service enabled | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
Verify that the dictcheck option is not set to 0 (disabled) as a module argument in a PAM file | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
yum.repos.d configuration is set correctly | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |