Item Search

NameAudit NamePluginCategory
1.1.2.1.1 Ensure /tmp is tmpfs or a separate partitionCIS Red Hat Enterprise Linux 10 v1.0.1 L1 WorkstationUnix

CONFIGURATION MANAGEMENT

1.1.2.1.1 Ensure /tmp is tmpfs or a separate partitionCIS Red Hat Enterprise Linux 8 v4.0.0 L1 WorkstationUnix

CONFIGURATION MANAGEMENT

1.3.1.4 Ensure the SELinux mode is not disabledCIS Red Hat Enterprise Linux 10 v1.0.1 L1 WorkstationUnix

SYSTEM AND COMMUNICATIONS PROTECTION

1.3.1.4 Ensure the SELinux mode is not disabledCIS Red Hat Enterprise Linux 8 v4.0.0 L1 ServerUnix

SYSTEM AND COMMUNICATIONS PROTECTION

1.3.1.4 Ensure the SELinux mode is not disabledCIS Rocky Linux 10 v1.0.0 L1 ServerUnix

SYSTEM AND COMMUNICATIONS PROTECTION

1.3.1.4 Ensure the SELinux mode is not disabledCIS Rocky Linux 8 v3.0.0 L1 ServerUnix

SYSTEM AND COMMUNICATIONS PROTECTION

1.3.1.5 Ensure the SELinux mode is not disabledCIS SUSE Linux Enterprise 16 v1.0.0 L1 WorkstationUnix

SYSTEM AND COMMUNICATIONS PROTECTION

1.4.1 Enable SELinux in /etc/grub.conf - enforcing != 0CIS Red Hat Enterprise Linux 5 L2 v2.2.1Unix

ACCESS CONTROL

1.4.1 Ensure permissions on bootloader config are not overridden - chmodCIS Ubuntu Linux 16.04 LTS Server L1 v2.0.0Unix

ACCESS CONTROL

1.4.1 Ensure permissions on bootloader config are not overridden - chmodCIS Ubuntu Linux 16.04 LTS Workstation L1 v2.0.0Unix

ACCESS CONTROL

1.4.2 Ensure access to bootloader config is configuredCIS Red Hat Enterprise Linux 10 v1.0.1 L1 ServerUnix

CONFIGURATION MANAGEMENT

1.4.2 Set the SELinux State - SELINUX=enforcingCIS Red Hat Enterprise Linux 5 L2 v2.2.1Unix

ACCESS CONTROL

1.5.5 Ensure kernel.dmesg_restrict is configuredCIS Red Hat Enterprise Linux 8 v4.0.0 L1 WorkstationUnix

SYSTEM AND COMMUNICATIONS PROTECTION

1.6.1.1 Ensure AppArmor is installedCIS Ubuntu Linux 16.04 LTS Workstation L1 v2.0.0Unix

ACCESS CONTROL

1.6.1.1 Ensure AppArmor is installedCIS Ubuntu Linux 18.04 LXD Container L1 v1.0.0Unix

ACCESS CONTROL

1.6.1.2 Ensure AppArmor is enabled in the bootloader configuration - apparmorCIS Ubuntu Linux 16.04 LTS Server L1 v2.0.0Unix

ACCESS CONTROL

1.6.1.4 Ensure the SELinux mode is enforcing or permissive - getenforceCIS Oracle Linux 6 Workstation L1 v2.0.0Unix

ACCESS CONTROL

1.6.1.4 Ensure the SELinux mode is enforcing or permissive - getenforceCIS Red Hat 6 Workstation L1 v3.0.0Unix

ACCESS CONTROL

1.6.1.5 Ensure the SELinux mode is enforcing - configCIS Red Hat 6 Server L2 v3.0.0Unix

ACCESS CONTROL

1.6.1.5 Ensure the SELinux mode is enforcing - getenforceCIS Red Hat 6 Server L2 v3.0.0Unix

ACCESS CONTROL

1.7.1.1 Ensure AppArmor is installedCIS Ubuntu Linux 18.04 LXD Host L1 Workstation v1.0.0Unix

ACCESS CONTROL

2.2.45 (L1) Ensure 'Take ownership of files or other objects' is set to 'Administrators'CIS Azure Compute Microsoft Windows Server 2019 v1.0.0 L1 DCWindows

ACCESS CONTROL

2.3.10.11 Ensure 'Network access: Shares that can be accessed anonymously' is set to 'None'CIS Microsoft Windows 11 Enterprise v5.0.1 L1 BLWindows

ACCESS CONTROL

2.3.10.12 Ensure 'Network access: Shares that can be accessed anonymously' is set to 'None'CIS Microsoft Windows Server 2022 v5.0.0 L1 MSWindows

ACCESS CONTROL

4.3 Ensure logrotate assigns appropriate permissionsCIS Ubuntu Linux 18.04 LXD Container L1 v1.0.0Unix

ACCESS CONTROL

5.1 Use secure RealmsCIS Apache Tomcat 8 L2 v1.1.0 MiddlewareUnix

ACCESS CONTROL

5.1.2 Ensure access to SSH private host key files is configuredCIS Red Hat Enterprise Linux 10 v1.0.1 L1 ServerUnix

CONFIGURATION MANAGEMENT

5.1.4 Ensure access to SSH private host key files is configuredCIS Red Hat Enterprise Linux 8 v4.0.0 L1 ServerUnix

CONFIGURATION MANAGEMENT

5.1.4 Ensure access to SSH private host key files is configuredCIS Red Hat Enterprise Linux 8 v4.0.0 L1 WorkstationUnix

CONFIGURATION MANAGEMENT

5.1.9 Ensure at is restricted to authorized users - '/etc/at.allow'CIS Ubuntu Linux 16.04 LTS Workstation L1 v2.0.0Unix

ACCESS CONTROL

5.2.3 Ensure permissions on SSH public host key files are configuredCIS Ubuntu Linux 18.04 LXD Host L1 Server v1.0.0Unix

ACCESS CONTROL

5.4.2.1 Ensure root is the only UID 0 accountCIS Red Hat Enterprise Linux 10 v1.0.1 L1 WorkstationUnix

CONFIGURATION MANAGEMENT

5.5.4 Ensure default user umask is 027 or more restrictive - /etc/profile /etc/profile.dCIS Ubuntu Linux 16.04 LTS Server L1 v2.0.0Unix

ACCESS CONTROL

5.5.4 Ensure default user umask is 027 or more restrictive - /etc/profile /etc/profile.dCIS Ubuntu Linux 16.04 LTS Workstation L1 v2.0.0Unix

ACCESS CONTROL

6.2.4.3 Ensure audit log files owner is configuredCIS SUSE Linux Enterprise 16 v1.0.0 L2 ServerUnix

CONFIGURATION MANAGEMENT

6.2.4.3 Ensure audit log files owner is configuredCIS SUSE Linux Enterprise 16 v1.0.0 L2 WorkstationUnix

CONFIGURATION MANAGEMENT

6.2.5 Ensure users own their home directoriesCIS Ubuntu Linux 16.04 LTS Server L1 v2.0.0Unix

ACCESS CONTROL

6.2.17 Ensure shadow group is emptyCIS Ubuntu Linux 16.04 LTS Server L1 v2.0.0Unix

ACCESS CONTROL

6.2.20 Ensure shadow group is empty - /etc/passwdCIS Oracle Linux 6 Server L1 v2.0.0Unix

ACCESS CONTROL

6.3.4.3 Ensure audit log files owner is configuredCIS Rocky Linux 8 v3.0.0 L2 WorkstationUnix

CONFIGURATION MANAGEMENT

6.3.4.5 Ensure audit configuration files mode is configuredCIS Red Hat Enterprise Linux 10 v1.0.1 L2 WorkstationUnix

AUDIT AND ACCOUNTABILITY

7.1.11 Ensure world writable files and directories are securedCIS Red Hat Enterprise Linux 8 v4.0.0 L1 ServerUnix

SYSTEM AND COMMUNICATIONS PROTECTION

7.1.11 Ensure world writable files and directories are securedCIS Red Hat Enterprise Linux 8 v4.0.0 L1 WorkstationUnix

SYSTEM AND COMMUNICATIONS PROTECTION

7.2.8 Ensure local interactive user home directories are configuredCIS Red Hat Enterprise Linux 10 v1.0.1 L1 ServerUnix

CONFIGURATION MANAGEMENT

7.6 Ensure directory in logging.properties is a secure location - check log directory locationCIS Apache Tomcat 9 L1 v1.2.0Unix

ACCESS CONTROL

8.1.1 Set Warning Banner for Standard Login Services - /etc/issue.netCIS Red Hat Enterprise Linux 5 L1 v2.2.1Unix

ACCESS CONTROL

9.1.11 Find Un-owned Files and DirectoriesCIS Red Hat Enterprise Linux 5 L1 v2.2.1Unix

ACCESS CONTROL

9.2.13 Check User Home Directory OwnershipCIS Red Hat Enterprise Linux 5 L1 v2.2.1Unix

ACCESS CONTROL

19.7.26.1 Ensure 'Prevent users from sharing files within their profile.' is set to 'Enabled'CIS Microsoft Windows Server 2022 v5.0.0 L1 MSWindows

ACCESS CONTROL

19.7.26.1 Ensure 'Prevent users from sharing files within their profile.' is set to 'Enabled'CIS Microsoft Windows Server 2025 v2.0.0 L1 DCWindows

ACCESS CONTROL