5.1.2.1.4 Ensure journald is not configured to receive logs from a remote client | CIS Amazon Linux 2 v3.0.0 L1 | Unix | AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT |
5.1.2.2 Ensure journald service is enabled | CIS Amazon Linux 2 v3.0.0 L1 | Unix | AUDIT AND ACCOUNTABILITY |
5.1.2.3 Ensure journald is configured to compress large log files | CIS Amazon Linux 2 v3.0.0 L1 | Unix | AUDIT AND ACCOUNTABILITY |
5.1.2.6 Ensure journald log rotation is configured per site policy | CIS Amazon Linux 2 v3.0.0 L1 | Unix | AUDIT AND ACCOUNTABILITY |
5.1.3 Ensure logrotate is configured | CIS Amazon Linux 2 v3.0.0 L1 | Unix | AUDIT AND ACCOUNTABILITY |
5.3.2 Ensure filesystem integrity is regularly checked | CIS Amazon Linux 2 v3.0.0 L1 | Unix | ACCESS CONTROL, AUDIT AND ACCOUNTABILITY |
6.1.7 Ensure permissions on /etc/gshadow are configured | CIS Amazon Linux 2 v3.0.0 L1 | Unix | ACCESS CONTROL, MEDIA PROTECTION |
6.1.8 Ensure permissions on /etc/gshadow- are configured | CIS Amazon Linux 2 v3.0.0 L1 | Unix | ACCESS CONTROL, MEDIA PROTECTION |
6.2.3 Ensure all groups in /etc/passwd exist in /etc/group | CIS Amazon Linux 2 v3.0.0 L1 | Unix | ACCESS CONTROL |
6.2.6 Ensure no duplicate user names exist | CIS Amazon Linux 2 v3.0.0 L1 | Unix | IDENTIFICATION AND AUTHENTICATION |
6.2.8 Ensure root path integrity | CIS Amazon Linux 2 v3.0.0 L1 | Unix | CONFIGURATION MANAGEMENT |
at is installed | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
autofs.service enabled | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
banner text | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
bluetooth.service enabled | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
bluez | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
Chain INPUT | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
Check for systemd-journal-remote package | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
Check if cron is installed | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
ClientAliveInterval is greater than 0 | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
config file HostbasedAuthentication setting | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
config file MaxSessions setting | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
config file permitemptypasswords setting | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
cyrus-imapd exist on the system | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
dhcp server services exist | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
Ensure at least one file named /etc/pam.d/password-auth exists and matches password pattern | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
Ensure at least one file named /etc/pam.d/system-auth exists and matches pattern | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
Ensure at least one file named /etc/pam.d/system-auth exists and matches pattern (?i)^h*passwordh+(requisite|required)h+pam_pwhistory.so | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
Ensure at least one file named /etc/pam.d/system-auth exists and matches pattern ^h*authh+(required|requisite)h+([^# | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
Ensure no file named /etc/pam.d/password-auth pam_unix.so contains remember | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
Ensure no file named /etc/pam.d/system-auth exists and matches pattern | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
Ensure no file named /etc/pam.d/system-auth pam_unix.so contains remember | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
Global configuration is set correctly | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
httpd services exist on the system | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
iff lo accept | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
INPUT drop | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
ip6tables enabled | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
iptables Chain INPUT | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
iptables OUTPUT ACCEPT | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
iptables-services installed | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
journald check - enabled | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
mrsv not included in /etc/motd | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
named.service enabled | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
nfs-server.service active | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
nfs-utils exist | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
Nftables check - active | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
Old format ModLoad imtcp | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
password-auth pam_faillock | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
password-auth preauth | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |
rsyncd.socket rsyncd.service active | CIS Amazon Linux 2 v3.0.0 L1 | Unix | |