Item Search

NameAudit NamePluginCategory
1.7 Ensure' WebDav' feature is disabledCIS IIS 10 v1.2.1 Level 1Windows

CONFIGURATION MANAGEMENT, PLANNING, SYSTEM AND SERVICES ACQUISITION

1.11.5 Ensure 'SNMP community string' is not the default stringCIS Cisco ASA 9.x Firewall L1 v1.1.0Cisco

CONFIGURATION MANAGEMENT, CONTINGENCY PLANNING, PLANNING, PROGRAM MANAGEMENT, SYSTEM AND SERVICES ACQUISITION, SYSTEM AND COMMUNICATIONS PROTECTION

1.12 Ensure API Keys Only Exist for Active ServicesCIS Google Cloud Platform v3.0.0 L2GCP

PLANNING, SYSTEM AND SERVICES ACQUISITION

2.4.1 Ensure NGINX only listens for network connections on authorized portsCIS NGINX Benchmark v2.1.0 L1 WebserverUnix

PLANNING, SYSTEM AND SERVICES ACQUISITION

2.4.1 Ensure NGINX only listens for network connections on authorized portsCIS NGINX Benchmark v2.1.0 L1 ProxyUnix

PLANNING, SYSTEM AND SERVICES ACQUISITION

2.4.1 Ensure NGINX only listens for network connections on authorized portsCIS NGINX Benchmark v2.1.0 L1 LoadbalancerUnix

PLANNING, SYSTEM AND SERVICES ACQUISITION

2.14 Ensure MySQL is Bound to an IP AddressCIS MySQL 8.0 Enterprise Database L2 v1.3.0MySQLDB

PLANNING, SYSTEM AND SERVICES ACQUISITION

2.15 Ensure live restore is enabledCIS Docker v1.6.0 L1 Docker LinuxUnix

PLANNING, SYSTEM AND SERVICES ACQUISITION

3.1.2.2 If Possible, Limit the BGP Routes Accepted from PeersCIS Cisco NX-OS L2 v1.1.0Cisco

CONFIGURATION MANAGEMENT, CONTINGENCY PLANNING, PLANNING, PROGRAM MANAGEMENT, SYSTEM AND SERVICES ACQUISITION, SYSTEM AND COMMUNICATIONS PROTECTION

4.2 Ensure Example or Test Databases are Not Installed on Production ServersCIS MySQL 5.6 Community Database L1 v2.0.0MySQLDB

PLANNING, SYSTEM AND SERVICES ACQUISITION

4.2 Ensure Example or Test Databases are Not Installed on Production ServersCIS MySQL 5.6 Enterprise Database L1 v2.0.0MySQLDB

PLANNING, SYSTEM AND SERVICES ACQUISITION

4.3 Ensure 'allow-suspicious-udfs' is Set to 'OFF'CIS MySQL 8.0 Community Linux OS L2 v1.0.0Unix

PLANNING, SYSTEM AND SERVICES ACQUISITION

4.3 Ensure 'allow-suspicious-udfs' Is Set to 'OFF' - %PROGRAMDATA%\MySQL\MySQL Server 5.6\my.cnfCIS MySQL 5.6 Community Windows OS L2 v2.0.0Windows

PLANNING, SYSTEM AND SERVICES ACQUISITION

4.3 Ensure 'allow-suspicious-udfs' Is Set to 'OFF' - %PROGRAMDATA%\MySQL\MySQL Server 5.7\my.cnfCIS MySQL 5.7 Enterprise Windows OS L2 v2.0.0Windows

PLANNING, SYSTEM AND SERVICES ACQUISITION

4.3 Ensure 'allow-suspicious-udfs' Is Set to 'OFF' - %PROGRAMDATA%\MySQL\MySQL Server 5.7\my.iniCIS MySQL 5.7 Enterprise Windows OS L2 v2.0.0Windows

PLANNING, SYSTEM AND SERVICES ACQUISITION

4.3 Ensure 'allow-suspicious-udfs' Is Set to 'OFF' - %PROGRAMDATA%\MySQL\MySQL Server 5.7\my.initCIS MySQL 5.7 Community Windows OS L2 v2.0.0Windows

PLANNING, SYSTEM AND SERVICES ACQUISITION

4.3 Ensure 'allow-suspicious-udfs' Is Set to 'OFF' - %WINDIR%\my.cnfCIS MySQL 5.7 Community Windows OS L2 v2.0.0Windows

PLANNING, SYSTEM AND SERVICES ACQUISITION

4.3 Ensure 'allow-suspicious-udfs' Is Set to 'OFF' - %WINDIR%\my.iniCIS MySQL 5.6 Community Windows OS L2 v2.0.0Windows

PLANNING, SYSTEM AND SERVICES ACQUISITION

4.3 Ensure 'allow-suspicious-udfs' Is Set to 'OFF' - C:\my.iniCIS MySQL 5.6 Community Windows OS L2 v2.0.0Windows

PLANNING, SYSTEM AND SERVICES ACQUISITION

4.3 Ensure 'allow-suspicious-udfs' Is Set to 'OFF' - config files not foundCIS MySQL 5.7 Enterprise Linux OS L2 v2.0.0Unix

PLANNING, SYSTEM AND SERVICES ACQUISITION

4.3 Ensure 'allow-suspicious-udfs' Is Set to 'OFF' - mysqld start-upCIS MySQL 5.7 Community Linux OS L2 v2.0.0Unix

PLANNING, SYSTEM AND SERVICES ACQUISITION

4.3 Ensure 'allow-suspicious-udfs' Is Set to 'OFF' - SYSCONFDIR/my.cnfCIS MySQL 5.7 Community Linux OS L2 v2.0.0Unix

PLANNING, SYSTEM AND SERVICES ACQUISITION

4.6 Ensure Symbolic Links are DisabledCIS MySQL 5.6 Community Database L1 v2.0.0MySQLDB

PLANNING, SYSTEM AND SERVICES ACQUISITION

4.6 Ensure Symbolic Links are DisabledCIS MySQL 8.0 Community Database L1 v1.0.0MySQLDB

PLANNING, SYSTEM AND SERVICES ACQUISITION

4.6 Ensure Symbolic Links are DisabledCIS MySQL 8.0 Enterprise Database L1 v1.3.0MySQLDB

PLANNING, SYSTEM AND SERVICES ACQUISITION

4.6 Ensure Symbolic Links are DisabledCIS MySQL 5.7 Community Database L1 v2.0.0MySQLDB

PLANNING, SYSTEM AND SERVICES ACQUISITION

4.6 Ensure Symbolic Links are DisabledCIS MariaDB 10.6 Database L1 v1.1.0MySQLDB

PLANNING, SYSTEM AND SERVICES ACQUISITION

4.6 Ensure Symbolic Links are DisabledCIS MySQL 5.6 Enterprise Database L1 v2.0.0MySQLDB

PLANNING, SYSTEM AND SERVICES ACQUISITION

4.6 Ensure Symbolic Links are DisabledCIS MySQL 5.7 Enterprise Database L1 v2.0.0MySQLDB

PLANNING, SYSTEM AND SERVICES ACQUISITION

4.8 Ensure 'sql_mode' Contains 'STRICT_ALL_TABLES'CIS MariaDB 10.6 on Linux L2 v1.1.0Unix

PLANNING, SYSTEM AND SERVICES ACQUISITION

5.1.2 Ensure only approved HTTP methods are allowedCIS NGINX Benchmark v2.1.0 L1 WebserverUnix

PLANNING, SYSTEM AND SERVICES ACQUISITION

5.1.2 Ensure only approved HTTP methods are allowedCIS NGINX Benchmark v2.1.0 L1 LoadbalancerUnix

PLANNING, SYSTEM AND SERVICES ACQUISITION

5.1.2 Ensure only approved HTTP methods are allowedCIS NGINX Benchmark v2.1.0 L1 ProxyUnix

PLANNING, SYSTEM AND SERVICES ACQUISITION

5.2 Ensure PostgreSQL is Bound to an IP AddressCIS PostgreSQL 14 DB v 1.2.0PostgreSQLDB

PLANNING, SYSTEM AND SERVICES ACQUISITION

5.4 Ensure to disable unused services in BIG-IP configurationCIS F5 Networks v1.0.0 L1F5

CONFIGURATION MANAGEMENT, CONTINGENCY PLANNING, PLANNING, PROGRAM MANAGEMENT, SYSTEM AND SERVICES ACQUISITION, SYSTEM AND COMMUNICATIONS PROTECTION

5.10 Securely Define Stored Procedures and Functions DEFINER and INVOKERCIS MariaDB 10.6 Database L1 v1.1.0MySQLDB

PLANNING, SYSTEM AND SERVICES ACQUISITION

5.10 Securely Define Stored Procedures and Functions DEFINER and INVOKERCIS MySQL 5.7 Community Database L1 v2.0.0MySQLDB

PLANNING, SYSTEM AND SERVICES ACQUISITION

5.10 Securely Define Stored Procedures and Functions DEFINER and INVOKERCIS MySQL 8.0 Community Database L1 v1.0.0MySQLDB

PLANNING, SYSTEM AND SERVICES ACQUISITION

5.10 Securely Define Stored Procedures and Functions DEFINER and INVOKERCIS MySQL 5.6 Enterprise Database L1 v2.0.0MySQLDB

PLANNING, SYSTEM AND SERVICES ACQUISITION

5.10 Securely Define Stored Procedures and Functions DEFINER and INVOKERCIS MySQL 5.6 Community Database L1 v2.0.0MySQLDB

PLANNING, SYSTEM AND SERVICES ACQUISITION

5.10 Securely Define Stored Procedures and Functions DEFINER and INVOKERCIS MySQL 5.7 Enterprise Database L1 v2.0.0MySQLDB

PLANNING, SYSTEM AND SERVICES ACQUISITION

5.10 Securely Define Stored Procedures and Functions DEFINER and INVOKERCIS MySQL 8.0 Enterprise Database L1 v1.3.0MySQLDB

PLANNING, SYSTEM AND SERVICES ACQUISITION

6.1 Ensure that image sprawl is avoidedCIS Docker v1.6.0 L1 Docker LinuxUnix

PLANNING, SYSTEM AND SERVICES ACQUISITION

6.3 Ensure 'Postmaster' Runtime Parameters are ConfiguredCIS PostgreSQL 10 DB v1.0.0PostgreSQLDB

SYSTEM AND SERVICES ACQUISITION

7.3 Ensure 'sql_mode' Contains 'NO_AUTO_CREATE_USER' - '@@global.sql_mode'CIS MySQL 5.7 Enterprise Database L1 v2.0.0MySQLDB

PLANNING, SYSTEM AND SERVICES ACQUISITION

7.3 Ensure 'sql_mode' Contains 'NO_AUTO_CREATE_USER' - C:\my.iniCIS MySQL 5.7 Enterprise Windows OS L1 v2.0.0Windows

PLANNING, SYSTEM AND SERVICES ACQUISITION

8.1.4 Configure the Service Name for TLS (SSL_SVCENAME)CIS IBM DB2 11 v1.1.0 Windows OS Level 1Windows

PLANNING, SYSTEM AND SERVICES ACQUISITION

8.1.4 Configure the Service Name for TLS (SSL_SVCENAME)CIS IBM DB2 11 v1.1.0 Linux OS Level 1Unix

PLANNING, SYSTEM AND SERVICES ACQUISITION

8.1.7 Unset the Service Name for Plaintext Communication (SVCENAME)CIS IBM DB2 11 v1.1.0 Windows OS Level 1Windows

PLANNING, SYSTEM AND SERVICES ACQUISITION

8.1.7 Unset the Service Name for Plaintext Communication (SVCENAME)CIS IBM DB2 11 v1.1.0 Linux OS Level 1Unix

PLANNING, SYSTEM AND SERVICES ACQUISITION