2.1 Ensure IAM Policy for EC2 IAM Roles for Web tier is configured | CIS Amazon Web Services Three-tier Web Architecture L1 1.0.0 | amazon_aws | ACCESS CONTROL |
2.4 Ensure an IAM Role for Amazon EC2 is created for App Tier | CIS Amazon Web Services Three-tier Web Architecture L1 1.0.0 | amazon_aws | ACCESS CONTROL |
2.4.2 Restrict BIND Access with SELinux 'SELINUX' | CIS ISC BIND 9.0/9.5 v2.0.0 | Unix | ACCESS CONTROL |
2.4.2 Restrict BIND Access with SELinux 'SELINUXTYPE' | CIS ISC BIND 9.0/9.5 v2.0.0 | Unix | ACCESS CONTROL |
4.5 Activate AppArmor - '0 profiles in complain mode' | CIS Ubuntu 12.04 LTS Benchmark L2 v1.1.0 | Unix | ACCESS CONTROL |
5.1 Do not disable AppArmor | CIS Docker 1.12.0 v1.0.0 L2 Docker | Unix | ACCESS CONTROL |
5.2 Verify SELinux security options, if applicable | CIS Docker 1.12.0 v1.0.0 L2 Docker | Unix | ACCESS CONTROL |
5.4 Use a separate timestamp for each user/tty combo | CIS Apple macOS 10.12 L1 v1.2.0 | Unix | ACCESS CONTROL |
6.4 Ensure system device files are labeled - device_t | CIS Amazon Linux 2 STIG v1.0.0 L3 | Unix | ACCESS CONTROL |
11. OpenStack Networking - Policy.json - 'get_network' | TNS OpenStack Neutron/Networking Security Guide | Unix | ACCESS CONTROL |
15. OpenStack Networking - Policy.json - 'create_port:fixed_ips' | TNS OpenStack Neutron/Networking Security Guide | Unix | ACCESS CONTROL |
18 - Role Based Authentication per queue | TNS Best Practice JBoss 7 Linux | Unix | ACCESS CONTROL |
20.47 Ensure 'Permissions for program file directories must conform to minimum requirements' | CIS Microsoft Windows Server 2016 STIG v3.0.0 STIG DC | Windows | ACCESS CONTROL |
20.52 Ensure 'Permissions for the Windows installation directory conform to minimum requirements' | CIS Microsoft Windows Server 2016 STIG v3.0.0 STIG DC | Windows | ACCESS CONTROL |
25. OpenStack Networking - Policy.json - 'get_router:distributed' | TNS OpenStack Neutron/Networking Security Guide | Unix | ACCESS CONTROL |
26. OpenStack Networking - Policy.json - 'create_l3-router' | TNS OpenStack Neutron/Networking Security Guide | Unix | ACCESS CONTROL |
29. OpenStack Networking - Policy.json - 'create_network:provider:physical_network' | TNS OpenStack Neutron/Networking Security Guide | Unix | ACCESS CONTROL |
38. OpenStack Networking - Policy.json - 'create_router' | TNS OpenStack Neutron/Networking Security Guide | Unix | ACCESS CONTROL |
54. OpenStack Networking - Policy.json - 'network_device' | TNS OpenStack Neutron/Networking Security Guide | Unix | ACCESS CONTROL |
55. OpenStack Identity - Policy.json - 'identity:create_policy_association_for_service' | TNS OpenStack Keystone/Identity Security Guide | Unix | ACCESS CONTROL |
55. OpenStack Networking - Policy.json - 'create_network:shared' | TNS OpenStack Neutron/Networking Security Guide | Unix | ACCESS CONTROL |
57. OpenStack Identity - Policy.json - 'identity:create_protocol' | TNS OpenStack Keystone/Identity Security Guide | Unix | ACCESS CONTROL |
58. OpenStack Networking - Policy.json - 'update_port:binding:profile' | TNS OpenStack Neutron/Networking Security Guide | Unix | ACCESS CONTROL |
60. OpenStack Identity - Policy.json - 'identity:create_endpoint_group' | TNS OpenStack Keystone/Identity Security Guide | Unix | ACCESS CONTROL |
64. OpenStack Identity - Policy.json - 'identity:update_user' | TNS OpenStack Keystone/Identity Security Guide | Unix | ACCESS CONTROL |
64. OpenStack Networking - Policy.json - 'update_router:external_gateway_info:external_fixed_ips' | TNS OpenStack Neutron/Networking Security Guide | Unix | ACCESS CONTROL |
66. OpenStack Identity - Policy.json - 'identity:remove_endpoint_from_project' | TNS OpenStack Keystone/Identity Security Guide | Unix | ACCESS CONTROL |
68. OpenStack Identity - Policy.json - 'identity:check_policy_association_for_endpoint' | TNS OpenStack Keystone/Identity Security Guide | Unix | ACCESS CONTROL |
68. OpenStack Networking - Policy.json - 'create_network:provider:network_type' | TNS OpenStack Neutron/Networking Security Guide | Unix | ACCESS CONTROL |
70. OpenStack Identity - Policy.json - 'identity:get_access_token_role' | TNS OpenStack Keystone/Identity Security Guide | Unix | ACCESS CONTROL |
70. OpenStack Networking - Policy.json - 'create_lsn' | TNS OpenStack Neutron/Networking Security Guide | Unix | ACCESS CONTROL |
75. OpenStack Networking - Policy.json - 'update_port:binding:host_id' | TNS OpenStack Neutron/Networking Security Guide | Unix | ACCESS CONTROL |
79. OpenStack Networking - Policy.json - 'delete_dhcp-network' | TNS OpenStack Neutron/Networking Security Guide | Unix | ACCESS CONTROL |
80. OpenStack Networking - Policy.json - 'delete_network' | TNS OpenStack Neutron/Networking Security Guide | Unix | ACCESS CONTROL |
82. OpenStack Networking - Policy.json - 'create_port:allowed_address_pairs' | TNS OpenStack Neutron/Networking Security Guide | Unix | ACCESS CONTROL |
85. OpenStack Identity - Policy.json - 'identity:add_user_to_group' | TNS OpenStack Keystone/Identity Security Guide | Unix | ACCESS CONTROL |
91. OpenStack Identity - Policy.json - 'identity:get_project' | TNS OpenStack Keystone/Identity Security Guide | Unix | ACCESS CONTROL |
92. OpenStack Networking - Policy.json - 'admin_or_owner' | TNS OpenStack Neutron/Networking Security Guide | Unix | ACCESS CONTROL |
94. OpenStack Identity - Policy.json - 'identity:check_grant' | TNS OpenStack Keystone/Identity Security Guide | Unix | ACCESS CONTROL |
95. OpenStack Identity - Policy.json - 'identity:create_role' | TNS OpenStack Keystone/Identity Security Guide | Unix | ACCESS CONTROL |
95. OpenStack Networking - Policy.json - 'get_port' | TNS OpenStack Neutron/Networking Security Guide | Unix | ACCESS CONTROL |
96. OpenStack Networking - Policy.json - 'admin_or_network_owner' | TNS OpenStack Neutron/Networking Security Guide | Unix | ACCESS CONTROL |
109. OpenStack Networking - Policy.json - 'create_network:segments' | TNS OpenStack Neutron/Networking Security Guide | Unix | ACCESS CONTROL |
111. OpenStack Networking - Policy.json - 'create_network:provider:segmentation_id' | TNS OpenStack Neutron/Networking Security Guide | Unix | ACCESS CONTROL |
121. OpenStack Networking - Policy.json - 'update_network:segments' | TNS OpenStack Neutron/Networking Security Guide | Unix | ACCESS CONTROL |
122. OpenStack Networking - Policy.json - 'create_firewall_policy:shared' | TNS OpenStack Neutron/Networking Security Guide | Unix | ACCESS CONTROL |
124. OpenStack Networking - Policy.json - 'update_firewall:shared' | TNS OpenStack Neutron/Networking Security Guide | Unix | ACCESS CONTROL |
IBM i : Allow User Domain Objects (QALWUSRDMN) - '*all' | IBM iSeries Security Reference v5r4 | AS/400 | ACCESS CONTROL |
IBM i : Use Adopted Authority (QUSEADPAUT) - AUTH_LIST_NAME | IBM iSeries Security Reference v5r4 | AS/400 | ACCESS CONTROL |
XenServer - List security roles | TNS Citrix XenServer | Unix | ACCESS CONTROL |