Item Search

NameAudit NamePluginCategory
1.1.3 Enable 'aaa authentication enable default'CIS Cisco IOS 15 L1 v4.0.1Cisco

ACCESS CONTROL

1.1.6 Set 'login authentication for 'line vty'CIS Cisco IOS 15 L1 v4.0.1Cisco

IDENTIFICATION AND AUTHENTICATION

1.4 Ensure that the underlying Internet Information Services (IIS) Authentication module is set to use Kerberos as its Auth ProviderCIS Microsoft SharePoint 2016 OS v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

2.3.7.7 Ensure 'Interactive logon: Require Domain Controller Authentication to unlock workstation' is set to 'Enabled'CIS Microsoft Windows Server 2008 R2 Member Server Level 1 v3.1.0Windows

ACCESS CONTROL

4.2 Ensure claims-based authentication is used for all web applications and zones of a SharePoint 2016 farmCIS Microsoft SharePoint 2016 OS v1.1.0Windows

IDENTIFICATION AND AUTHENTICATION

4.2 Ensure claims-based authentication is used for all web applications and zones of a SharePoint 2019 farmCIS Microsoft SharePoint 2019 OS v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

4.3 Ensure Windows Authentication uses Kerberos and not the NT Lan Manager (NTLM) authentication protocolCIS Microsoft SharePoint 2019 OS v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

6.2.2 Ensure no legacy '+' entries exist in /etc/passwdCIS Distribution Independent Linux Workstation L1 v1.1.0Unix

IDENTIFICATION AND AUTHENTICATION

6.2.2 Ensure no legacy '+' entries exist in /etc/passwdCIS CentOS 6 Workstation L1 v2.1.0Unix

IDENTIFICATION AND AUTHENTICATION

6.2.2 Ensure no legacy '+' entries exist in /etc/passwdHuawei EulerOS 2 Server L1 v1.0Unix

IDENTIFICATION AND AUTHENTICATION

6.2.2 Ensure no legacy '+' entries exist in /etc/passwdCIS Red Hat 6 Server L1 v2.1.0Unix

IDENTIFICATION AND AUTHENTICATION

6.2.2 Ensure no legacy '+' entries exist in /etc/passwdCIS Ubuntu Linux 18.04 LTS Workstation L1 v2.0.1Unix

ACCESS CONTROL

6.2.2 Ensure no legacy '+' entries exist in /etc/passwdCIS Oracle Linux 6 Workstation L1 v1.1.0Unix

IDENTIFICATION AND AUTHENTICATION

6.2.2 Ensure no legacy '+' entries exist in /etc/passwdCIS Red Hat 6 Workstation L1 v2.1.0Unix

IDENTIFICATION AND AUTHENTICATION

6.2.3 Ensure no legacy '+' entries exist in /etc/shadowHuawei EulerOS 2 Workstation L1 v1.0Unix

IDENTIFICATION AND AUTHENTICATION

6.2.3 Ensure no legacy '+' entries exist in /etc/shadowHuawei EulerOS 2 Server L1 v1.0Unix

IDENTIFICATION AND AUTHENTICATION

6.2.3 Ensure no legacy '+' entries exist in /etc/shadowCIS Red Hat 6 Server L1 v2.1.0Unix

IDENTIFICATION AND AUTHENTICATION

6.2.3 Ensure no legacy '+' entries exist in /etc/shadowCIS Oracle Linux 6 Server L1 v1.1.0Unix

IDENTIFICATION AND AUTHENTICATION

6.2.3 Ensure no legacy '+' entries exist in /etc/shadowCIS Oracle Linux 6 Workstation L1 v1.1.0Unix

IDENTIFICATION AND AUTHENTICATION

6.2.4 Ensure no legacy '+' entries exist in /etc/groupCIS Distribution Independent Linux Server L1 v1.1.0Unix

IDENTIFICATION AND AUTHENTICATION

6.2.4 Ensure no legacy '+' entries exist in /etc/groupCIS Red Hat 6 Server L1 v2.1.0Unix

IDENTIFICATION AND AUTHENTICATION

6.2.4 Ensure no legacy '+' entries exist in /etc/groupCIS Oracle Linux 6 Server L1 v1.1.0Unix

IDENTIFICATION AND AUTHENTICATION

6.2.4 Ensure no legacy '+' entries exist in /etc/groupCIS Red Hat 6 Workstation L1 v2.1.0Unix

IDENTIFICATION AND AUTHENTICATION

6.2.4 Ensure no legacy '+' entries exist in /etc/groupCIS Distribution Independent Linux Workstation L1 v1.1.0Unix

IDENTIFICATION AND AUTHENTICATION

6.2.4 Ensure no legacy '+' entries exist in /etc/groupCIS CentOS 6 Workstation L1 v2.1.0Unix

IDENTIFICATION AND AUTHENTICATION

6.2.4 Ensure no legacy '+' entries exist in /etc/groupCIS Oracle Linux 6 Workstation L1 v1.1.0Unix

IDENTIFICATION AND AUTHENTICATION

6.2.4 Ensure no legacy '+' entries exist in /etc/shadowCIS Ubuntu Linux 18.04 LTS Workstation L1 v2.0.1Unix

ACCESS CONTROL

6.2.4 Ensure no legacy '+' entries exist in /etc/shadowCIS Ubuntu Linux 18.04 LTS Server L1 v2.0.1Unix

ACCESS CONTROL

6.2.20 Ensure shadow group is emptyCIS SUSE Linux Enterprise Workstation 12 L1 v2.1.0Unix

ACCESS CONTROL

6.2.20 Ensure shadow group is emptyCIS Ubuntu Linux 14.04 LTS Workstation L1 v2.1.0Unix

ACCESS CONTROL

18.2.1 (L1) Ensure LAPS AdmPwd GPO Extension / CSE is installedCIS Microsoft Windows 8.1 v2.4.0 L1 BitlockerWindows
18.2.1 Ensure LAPS AdmPwd GPO Extension / CSE is installedCIS Microsoft Windows Server 2008 R2 Member Server Level 1 v3.1.0Windows

CONFIGURATION MANAGEMENT

18.2.1 Ensure LAPS AdmPwd GPO Extension / CSE is installed (MS only)CIS Microsoft Windows Server 2016 MS L1 v1.3.0Windows
18.2.3 (L1) Ensure 'Enable Local Admin Password Management' is set to 'Enabled'CIS Microsoft Windows 8.1 v2.4.0 L1Windows
18.2.3 Ensure 'Enable Local Admin Password Management' is set to 'Enabled'CIS Microsoft Windows 10 Enterprise (Release 20H2) v1.10.1 L1 + BL + NGWindows
18.2.3 Ensure 'Enable Local Admin Password Management' is set to 'Enabled'CIS Microsoft Windows 10 Enterprise (Release 21H1) v1.11.0 L1 + BL + NGWindows
18.2.3 Ensure 'Enable Local Admin Password Management' is set to 'Enabled'CIS Microsoft Windows 10 Enterprise (Release 21H1) v1.11.0 L1 + NGWindows
18.2.3 Ensure 'Enable Local Admin Password Management' is set to 'Enabled'CIS Microsoft Windows 11 Enterprise v1.0.0 L1 + BLWindows
18.2.3 Ensure 'Enable Local Admin Password Management' is set to 'Enabled'CIS Microsoft Windows 11 Enterprise v1.0.0 L1Windows
18.2.3 Ensure 'Enable Local Admin Password Management' is set to 'Enabled'CIS Microsoft Windows 10 Enterprise (Release 20H2) v1.10.1 L1Windows
18.2.3 Ensure 'Enable Local Admin Password Management' is set to 'Enabled'CIS Microsoft Windows 10 Enterprise (Release 21H1) v1.11.0 L1 + BLWindows
18.2.3 Ensure 'Enable Local Admin Password Management' is set to 'Enabled' (MS only)CIS Windows Server 2012 MS L1 v2.2.0Windows
18.2.3 Ensure 'Enable Local Admin Password Management' is set to 'Enabled' (MS only)CIS Microsoft Windows Server 2008 Member Server Level 1 v3.2.0Windows
18.2.3 Ensure 'Enable Local Admin Password Management' is set to 'Enabled' (MS only)CIS Microsoft Windows Server 2016 MS L1 v1.3.0Windows
18.2.3 Ensure 'Enable Local Admin Password Management' is set to 'Enabled' (MS only)CIS Microsoft Windows Server 2008 R2 Member Server Level 1 v3.2.0Windows
Allow Microsoft accounts to be optionalMSCT Windows 10 v1903 v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

Enable local admin password managementMSCT Windows Server 1903 MS v1.0.0Windows

ACCESS CONTROL

Enable local admin password managementMSCT Windows 10 v1903 v1.0.0Windows

ACCESS CONTROL

Enumerate local users on domain-joined computersMSCT Windows Server 1903 MS v1.0.0Windows

ACCESS CONTROL

Enumerate local users on domain-joined computersMSCT Windows 10 v1903 v1.0.0Windows

ACCESS CONTROL