1.1.1.2 Ensure mounting of freevxfs filesystems is disabled - lsmod | CIS Ubuntu Linux 18.04 LTS Workstation L1 v2.0.1 | Unix | CONFIGURATION MANAGEMENT |
1.1.1.3 Ensure mounting of squashfs filesystems is disabled - modprobe | CIS Red Hat EL8 Server L1 v1.0.0 | Unix | CONFIGURATION MANAGEMENT |
1.1.1.4 Ensure mounting of udf filesystems is disabled - modprobe | CIS Red Hat EL8 Workstation L1 v1.0.0 | Unix | CONFIGURATION MANAGEMENT |
1.1.1.5 Ensure mounting of hfsplus filesystems is disabled - lsmod | CIS Ubuntu Linux 18.04 LTS Workstation L1 v2.0.1 | Unix | CONFIGURATION MANAGEMENT |
1.1.1.6 Ensure mounting of squashfs filesystems is disabled | CIS SUSE Linux Enterprise Server 12 L1 v2.1.0 | Unix | CONFIGURATION MANAGEMENT |
1.1.1.6 Ensure mounting of squashfs filesystems is disabled - modprobe | CIS Ubuntu Linux 18.04 LTS Workstation L1 v2.0.1 | Unix | CONFIGURATION MANAGEMENT |
1.10 Ensure 'Install unknown apps' is set to 'Disabled' | MobileIron - CIS Google Android v1.3.0 L1 | MDM | CONFIGURATION MANAGEMENT |
1.22 Ensure 'Wi-Fi assistant' is set to 'Disabled' | AirWatch - CIS Google Android v1.3.0 L1 | MDM | CONFIGURATION MANAGEMENT |
2.1 Disable Local-only Graphical Login Environment | CIS Solaris 11 L1 v1.1.0 | Unix | CONFIGURATION MANAGEMENT |
2.1 Disable standard services - Comment service discard in /etc/inet/inetd.conf | CIS Solaris 9 v1.3 | Unix | CONFIGURATION MANAGEMENT |
2.1 Disable standard services - Comment service exec in /etc/inet/inetd.conf | CIS Solaris 9 v1.3 | Unix | CONFIGURATION MANAGEMENT |
2.1 Disable standard services - Comment service ftp in /etc/inet/inetd.conf | CIS Solaris 9 v1.3 | Unix | CONFIGURATION MANAGEMENT |
2.1 Disable standard services - Comment service rusersd in /etc/inet/inetd.conf | CIS Solaris 9 v1.3 | Unix | CONFIGURATION MANAGEMENT |
2.1 Disable standard services - Comment service walld in /etc/inet/inetd.conf | CIS Solaris 9 v1.3 | Unix | CONFIGURATION MANAGEMENT |
2.1.1 Ensure xinetd is not installed | CIS Ubuntu Linux 18.04 LTS Workstation L1 v2.0.1 | Unix | CONFIGURATION MANAGEMENT |
2.1.2 Disable Bluetooth 'Discoverable' mode when not pairing devices | CIS Apple OSX 10.11 El Capitan L1 v1.1.0 | Unix | CONFIGURATION MANAGEMENT |
2.1.3 Ensure discard services are not enabled - discard-udp | CIS SUSE Linux Enterprise Server 12 L1 v2.1.0 | Unix | CONFIGURATION MANAGEMENT |
2.1.4 Ensure echo services are not enabled - echo-udp | CIS SUSE Linux Enterprise Server 12 L1 v2.1.0 | Unix | CONFIGURATION MANAGEMENT |
2.1.6 Ensure rsh server is not enabled - rexec | CIS SUSE Linux Enterprise Server 12 L1 v2.1.0 | Unix | CONFIGURATION MANAGEMENT |
2.2.3 Ensure rsync service is not enabled | CIS Red Hat EL8 Workstation L1 v1.0.0 | Unix | CONFIGURATION MANAGEMENT |
2.2.11 Disable Apache services - Make sure that /etc/apache/httpd.conf does not exist. Note this check is only applicable for Apache 1.x | CIS Solaris 10 L1 v5.2 | Unix | CONFIGURATION MANAGEMENT |
2.3.5 Ensure LDAP client is not installed | CIS Ubuntu Linux 18.04 LTS Workstation L1 v2.0.1 | Unix | CONFIGURATION MANAGEMENT |
2.4.1 Disable Remote Apple Events | CIS Apple OSX 10.11 El Capitan L1 v1.1.0 | Unix | CONFIGURATION MANAGEMENT |
2.4.3 Disable Screen Sharing | CIS Apple OSX 10.10 Yosemite L1 v1.2.0 | Unix | CONFIGURATION MANAGEMENT |
2.4.3 Disable Screen Sharing | CIS Apple OSX 10.11 El Capitan L1 v1.1.0 | Unix | CONFIGURATION MANAGEMENT |
2.4.9 Disable Remote Management - 'ARDAgent is not running' | CIS Apple OSX 10.11 El Capitan L1 v1.1.0 | Unix | CONFIGURATION MANAGEMENT |
2.5 Ensure aufs storage driver is not used | CIS Docker Community Edition v1.1.0 L1 Docker | Unix | CONFIGURATION MANAGEMENT |
2.6 Ensure 'Voice & Audio Activity' is set to 'Disabled' | AirWatch - CIS Google Android v1.3.0 L1 | MDM | CONFIGURATION MANAGEMENT |
2.7 Ensure 'YouTube Search History' is set to 'Disabled' | MobileIron - CIS Google Android v1.3.0 L1 | MDM | CONFIGURATION MANAGEMENT |
2.7 Only enable Kerberos-related daemons if absolutely necessary (kpasswdd_server_enable) | CIS FreeBSD v1.0.5 | Unix | CONFIGURATION MANAGEMENT |
2.22 Disable Mounting of hfsplus Filesystems | CIS Debian Linux 7 L2 v1.0.0 | Unix | CONFIGURATION MANAGEMENT |
3.1 Disable login prompts on serial ports (ttyd1) | CIS FreeBSD v1.0.5 | Unix | CONFIGURATION MANAGEMENT |
3.1 Disable login prompts on serial ports (ttyd3) | CIS FreeBSD v1.0.5 | Unix | CONFIGURATION MANAGEMENT |
3.4.2.3 Ensure nftables is not enabled - disabled | CIS Red Hat EL8 Workstation L1 v1.0.0 | Unix | CONFIGURATION MANAGEMENT |
3.4.3.7 Ensure nftables service is enabled | CIS Red Hat EL8 Workstation L1 v1.0.0 | Unix | CONFIGURATION MANAGEMENT |
3.5 Disable the email server if possible (sendmail_msp_queue_enable) | CIS FreeBSD v1.0.5 | Unix | CONFIGURATION MANAGEMENT |
3.12 Only enable NIS if absolutely necessary (nis_yppasswdd_enable) | CIS FreeBSD v1.0.5 | Unix | CONFIGURATION MANAGEMENT |
3.12 Only enable NIS if absolutely necessary (rpc_ypupdated_enable) | CIS FreeBSD v1.0.5 | Unix | CONFIGURATION MANAGEMENT |
4.05 init.ora - 'remote_listener = NULL String' | CIS v1.1.0 Oracle 11g OS L1 | Unix | CONFIGURATION MANAGEMENT |
4.17 spfile<sid>.ora - 'Remove the following from the spfile: dispatches= (PROTOCOL=TCP) (SERVICE=<sid>XDB)' | CIS v1.1.0 Oracle 11g OS L2 | Unix | CONFIGURATION MANAGEMENT |
4.29 cman.ora - 'remote_admin = NO' | CIS v1.1.0 Oracle 11g OS L2 | Unix | CONFIGURATION MANAGEMENT |
5.6 Ensure time is not enabled | CIS Debian Linux 7 L1 v1.0.0 | Unix | CONFIGURATION MANAGEMENT |
5.13 OAS - 'SSL Version - Set SSL version ssl_version = 3.0' | CIS v1.1.0 Oracle 11g OS L2 | Unix | CONFIGURATION MANAGEMENT |
7.1 Ensure swarm mode is not Enabled, if not needed | CIS Docker Community Edition v1.1.0 L1 Docker | Unix | CONFIGURATION MANAGEMENT |
7.5.4 Disable TIPC | CIS Debian Linux 7 L1 v1.0.0 | Unix | CONFIGURATION MANAGEMENT |
18.5.10.2 Ensure 'Turn off Microsoft Peer-to-Peer Networking Services' is set to 'Enabled' | CIS Windows 7 Workstation Level 2 + Bitlocker v3.2.0 | Windows | CONFIGURATION MANAGEMENT |
18.6.5.1 (L2) Ensure 'Enable Font Providers' is set to 'Disabled' | CIS Microsoft Windows Server 2016 STIG v2.0.0 L2 DC | Windows | CONFIGURATION MANAGEMENT |
18.9.59.3.2.1 Ensure 'Allow users to connect remotely by using Remote Desktop Services' is set to 'Disabled' | CIS Windows 7 Workstation Level 2 v3.2.0 | Windows | CONFIGURATION MANAGEMENT |
18.9.59.3.3.3 Ensure 'Do not allow LPT port redirection' is set to 'Enabled' | CIS Windows 7 Workstation Level 2 v3.2.0 | Windows | CONFIGURATION MANAGEMENT |
18.9.59.3.3.3 Ensure 'Do not allow LPT port redirection' is set to 'Enabled' | CIS Windows 7 Workstation Level 2 + Bitlocker v3.2.0 | Windows | CONFIGURATION MANAGEMENT |