Item Search

NameAudit NamePluginCategory
2.3 Ensure 'forms authentication' require SSL - Not EnabledCIS IIS 7 L1 v1.8.0Windows
2.4 Ensure 'forms authentication' is set to use cookies - Not EnabledCIS IIS 7 L2 v1.8.0Windows
2.5 Ensure 'cookie protection mode' is configured for forms authentication - Not EnabledCIS IIS 7 L1 v1.8.0Windows
2.7 Ensure 'passwordFormat' is not set to clearCIS IIS 7 L1 v1.8.0Windows
3.2 Ensure 'debug' is turned offCIS IIS 7 L2 v1.8.0Windows
3.3 Ensure Custom Error Messages are not OffCIS IIS 7 L2 v1.8.0Windows
3.4 Ensure IIS HTTP detailed errors are hidden from displaying remotelyCIS IIS 7 L2 v1.8.0Windows
3.5 Ensure ASP.NET stack tracing is not enabledCIS IIS 7 L2 v1.8.0Windows

CONFIGURATION MANAGEMENT

3.6 Ensure 'httpcookie' mode is configured for session stateCIS IIS 7 L2 v1.8.0Windows
3.7 Ensure 'cookies' are set with HttpOnly attributeCIS IIS 7 L2 v1.8.0Windows
3.7 Ensure that SharePoint is set to reject or delay network traffic generated above configurable traffic volume thresholds - Max BandwidthCIS Microsoft SharePoint 2019 OS v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

3.7 Ensure that SharePoint is set to reject or delay network traffic generated above configurable traffic volume thresholds - Max ConnectionsCIS Microsoft SharePoint 2019 OS v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

3.7 Ensure that SharePoint is set to reject or delay network traffic generated above traffic volume thresholds - connectionTimeoutCIS Microsoft SharePoint 2016 OS v1.1.0Windows

ACCESS CONTROL

3.9 Ensure 'MachineKey validation method - .Net 4.5' is configuredCIS IIS 7 L1 v1.8.0Windows
3.10 Ensure global .NET trust level is configuredCIS IIS 7 L1 v1.8.0Windows
4.11.54.1 (L2) Ensure 'Turn on PowerShell Script Block Logging' is set to 'Enabled'CIS Microsoft Intune for Windows 11 v4.0.0 L2Windows

AUDIT AND ACCOUNTABILITY

5.9 Ensure 'Microsoft FTP Service (FTPSVC)' is set to 'Disabled' or 'Not Installed'CIS Microsoft Windows 8.1 v2.4.1 L1Windows

CONFIGURATION MANAGEMENT

5.42 (L2) Ensure 'WinHTTP Web Proxy Auto-Discovery Service (WinHttpAutoProxySvc)' is set to 'Disabled'CIS Microsoft Windows 10 Enterprise v4.0.0 L2 BLWindows

CONFIGURATION MANAGEMENT

5.42 (L2) Ensure 'WinHTTP Web Proxy Auto-Discovery Service (WinHttpAutoProxySvc)' is set to 'Disabled'CIS Microsoft Windows 10 Enterprise v4.0.0 L2 BL NGWindows

CONFIGURATION MANAGEMENT

5.42 (L2) Ensure 'WinHTTP Web Proxy Auto-Discovery Service (WinHttpAutoProxySvc)' is set to 'Disabled'CIS Microsoft Windows 10 Stand-alone v4.0.0 L2 BLWindows

CONFIGURATION MANAGEMENT

5.42 (L2) Ensure 'WinHTTP Web Proxy Auto-Discovery Service (WinHttpAutoProxySvc)' is set to 'Disabled'CIS Microsoft Windows 10 Stand-alone v4.0.0 L2 BL NGWindows

CONFIGURATION MANAGEMENT

6.1 Ensure FTP requests are encrypted - Control ChannelCIS IIS 7 L1 v1.8.0Windows
7.13 Ensure AES 256/256 Cipher Suite is enabled - Key not foundCIS IIS 7 L1 v1.8.0Windows
18.6.19.2.1 (L2) Disable IPv6 (Ensure TCPIP6 Parameter 'DisabledComponents' is set to '0xff (255)')CIS Microsoft Windows Server 2022 v4.0.0 L2 DCWindows

CONFIGURATION MANAGEMENT

18.6.19.2.1 (L2) Disable IPv6 (Ensure TCPIP6 Parameter 'DisabledComponents' is set to '0xff (255)')CIS Microsoft Windows Server 2022 v4.0.0 L2 MSWindows

CONFIGURATION MANAGEMENT

18.6.19.2.1 (L2) Disable IPv6 (Ensure TCPIP6 Parameter 'DisabledComponents' is set to '0xff (255)')CIS Microsoft Windows 11 Enterprise v4.0.0 L2Windows

CONFIGURATION MANAGEMENT

18.6.19.2.1 (L2) Disable IPv6 (Ensure TCPIP6 Parameter 'DisabledComponents' is set to '0xff (255)')CIS Microsoft Windows 11 Stand-alone v4.0.0 L2 BLWindows

CONFIGURATION MANAGEMENT

18.10.86.1 (L1) Ensure 'Turn on PowerShell Script Block Logging' is set to 'Enabled'CIS Microsoft Windows 10 EMS Gateway v3.0.0 L1Windows

AUDIT AND ACCOUNTABILITY

18.10.87.1 (L1) Ensure 'Turn on PowerShell Script Block Logging' is set to 'Enabled'CIS Windows Server 2012 R2 MS L1 v3.0.0Windows

AUDIT AND ACCOUNTABILITY

18.10.87.1 (L2) Ensure 'Turn on PowerShell Script Block Logging' is set to 'Enabled'CIS Microsoft Windows 10 Enterprise v4.0.0 L2Windows

AUDIT AND ACCOUNTABILITY

18.10.87.1 (L2) Ensure 'Turn on PowerShell Script Block Logging' is set to 'Enabled'CIS Microsoft Windows Server 2022 v4.0.0 L2 DCWindows

AUDIT AND ACCOUNTABILITY

18.10.87.1 (L2) Ensure 'Turn on PowerShell Script Block Logging' is set to 'Enabled'CIS Microsoft Windows 11 Enterprise v4.0.0 L2 BitLockerWindows

AUDIT AND ACCOUNTABILITY

18.10.87.1 (L2) Ensure 'Turn on PowerShell Script Block Logging' is set to 'Enabled'CIS Microsoft Windows 10 Stand-alone v4.0.0 L2Windows

AUDIT AND ACCOUNTABILITY

81.37 (L2) Ensure 'WinHTTP Web Proxy Auto-Discovery Service (WinHttpAutoProxySvc)' is set to 'Disabled'CIS Microsoft Intune for Windows 11 v4.0.0 L2Windows

CONFIGURATION MANAGEMENT

CIS_Apache_Tomcat_10.1_v1.1.0_L1.audit from CIS Apache Tomcat 10.1 Benchmark v1.1.0CIS Apache Tomcat 10.1 v1.1.0 L1Unix
CIS_Apache_Tomcat_10.1_v1.1.0_L2.audit from CIS Apache Tomcat 10.1 Benchmark v1.1.0CIS Apache Tomcat 10.1 v1.1.0 L2Unix
CIS_Microsoft_Office_Enterprise_v1.2.0_L1.audit from CIS Microsoft Office Enterprise Benchmark v1.2.0CIS Microsoft Office Enterprise v1.2.0 L1Windows
CIS_Microsoft_Windows_10_Enterprise_v4.0.0_NG.audit from CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0CIS Microsoft Windows 10 Enterprise v4.0.0 NGWindows
CIS_Microsoft_Windows_Server_2016_v4.0.0_L2_MS.audit from CIS Microsoft Windows Server 2016 Benchmark v4.0.0CIS Microsoft Windows Server 2016 v4.0.0 L2 MSWindows
CIS_Microsoft_Windows_Server_2019_v4.0.0_L2_DC.audit from CIS Microsoft Windows Server 2019 Benchmark v4.0.0CIS Microsoft Windows Server 2019 v4.0.0 L2 DCWindows
CIS_Microsoft_Windows_Server_2019_v4.0.0_L2_MS.audit from CIS Microsoft Windows Server 2019 Benchmark v4.0.0CIS Microsoft Windows Server 2019 v4.0.0 L2 MSWindows
CIS_Microsoft_Windows_Server_2022_v4.0.0_L2_MS.audit from CIS Microsoft Windows Server 2022 Benchmark v4.0.0CIS Microsoft Windows Server 2022 v4.0.0 L2 MSWindows
CIS_Microsoft_Windows_Server_2022_v4.0.0_NG_DC.audit from CIS Microsoft Windows Server 2022 Benchmark v4.0.0CIS Microsoft Windows Server 2022 v4.0.0 NG DCWindows
CIS_MS_Windows_8.1_v2.4.1_Level_1_Bitlocker.audit from CIS Microsoft Windows 8.1 Workstation Benchmark v2.4.1CIS Microsoft Windows 8.1 v2.4.1 L1 BitlockerWindows
CIS_MySQL_8.0_Enterprise_Benchmark_v1.4.0_Level_2_OS_Linux.audit from CIS Oracle MySQL 8.0 Enterprise Edition BenchmarkCIS MySQL 8.0 Enterprise Linux OS L2 v1.4.0Unix
CIS_Ubuntu_Linux_18.04_LTS_v2.2.0_L1_Workstation.audit from CIS Ubuntu Linux 18.04 LTS Benchmark v2.2.0CIS Ubuntu Linux 18.04 LTS v2.2.0 L1 WorkstationUnix
CIS_Ubuntu_Linux_20.04_LTS_v3.0.0_L1_Workstation.audit from CIS Ubuntu Linux 20.04 LTS Benchmark v3.0.0CIS Ubuntu Linux 20.04 LTS v3.0.0 L1 WorkstationUnix
CIS_Ubuntu_Linux_20.04_LTS_v3.0.0_L2_Workstation.audit from CIS Ubuntu Linux 20.04 LTS Benchmark v3.0.0CIS Ubuntu Linux 20.04 LTS v3.0.0 L2 WorkstationUnix
ESXI-06-000075 - The connectivity between VSAN Health Check and public Hardware Compatibility List must be disabled or restricted by use of an external proxy server.DISA STIG VMware vSphere 6.x ESXi v1r5VMware

CONFIGURATION MANAGEMENT

Store passwords using reversible encryptionMSCT Windows Server 2019 DC v1.0.0Windows

SYSTEM AND INFORMATION INTEGRITY