Item Search

NameAudit NamePluginCategory
1.6.1.2 Ensure the SELinux state is enforcing - /etc/selinux/configCIS Aliyun Linux 2 L2 v1.0.0Unix

ACCESS CONTROL

1.6.1.3 Ensure SELinux policy is configured - /etc/selinux/configCIS Aliyun Linux 2 L2 v1.0.0Unix

ACCESS CONTROL

2.4 Ensure 'forms authentication' is set to use cookiesCIS IIS 8.0 v1.5.1 Level 2Windows

CONFIGURATION MANAGEMENT

3.6 Disable IPv6CIS Aliyun Linux 2 L2 v1.0.0Unix

SYSTEM AND INFORMATION INTEGRITY

4.1.1.2 Ensure system is disabled when audit logs are full - rootCIS Aliyun Linux 2 L2 v1.0.0Unix

AUDIT AND ACCOUNTABILITY

4.1.3 Ensure auditing for processes that start prior to auditd is enabledCIS Aliyun Linux 2 L2 v1.0.0Unix

AUDIT AND ACCOUNTABILITY

4.1.4 Ensure events that modify date and time information are collected - auditctl /etc/localtimeCIS Aliyun Linux 2 L2 v1.0.0Unix

CONFIGURATION MANAGEMENT

4.1.4 Ensure events that modify date and time information are collected - clock_settimeCIS Aliyun Linux 2 L2 v1.0.0Unix

CONFIGURATION MANAGEMENT

4.1.5 Ensure events that modify user/group information are collected - /etc/groupCIS Aliyun Linux 2 L2 v1.0.0Unix

AUDIT AND ACCOUNTABILITY

4.1.10 Ensure discretionary access control permission modification events are collected - auditctl chmod/fchmod/fchmodat (32-bit)CIS Aliyun Linux 2 L2 v1.0.0Unix

CONFIGURATION MANAGEMENT

4.1.10 Ensure discretionary access control permission modification events are collected - setxattr/lsetxattr/fsetxattr (32-bit)CIS Aliyun Linux 2 L2 v1.0.0Unix

CONFIGURATION MANAGEMENT

4.1.11 Ensure unsuccessful unauthorized file access attempts are collected - EACCES (32-bit)CIS Aliyun Linux 2 L2 v1.0.0Unix

AUDIT AND ACCOUNTABILITY

4.1.12 Ensure use of privileged commands is collectedCIS Aliyun Linux 2 L2 v1.0.0Unix

AUDIT AND ACCOUNTABILITY

4.1.14 Ensure file deletion events by users are collected - (64-bit)CIS Aliyun Linux 2 L2 v1.0.0Unix

AUDIT AND ACCOUNTABILITY

4.1.14 Ensure file deletion events by users are collected - auditctl (32-bit)CIS Aliyun Linux 2 L2 v1.0.0Unix

AUDIT AND ACCOUNTABILITY

4.1.15 Ensure changes to system administration scope (sudoers) is collected - /etc/sudoers.dCIS Aliyun Linux 2 L2 v1.0.0Unix

AUDIT AND ACCOUNTABILITY

4.1.17 Ensure kernel module loading and unloading is collected - rmmodCIS Aliyun Linux 2 L2 v1.0.0Unix

AUDIT AND ACCOUNTABILITY

4.4 Ensure non-ASCII characters in URLs are not allowedCIS IIS 8.0 v1.5.1 Level 2Windows

SYSTEM AND INFORMATION INTEGRITY

5.2.3.5 Ensure events that modify the system's network environment are collectedCIS Amazon Linux 2 v3.0.0 L2Unix

AUDIT AND ACCOUNTABILITY

5.2.3.20 Ensure the audit configuration is immutableCIS Amazon Linux 2 v3.0.0 L2Unix

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, MEDIA PROTECTION

5.2.4.4 Ensure only authorized groups are assigned ownership of audit log filesCIS Amazon Linux 2 v3.0.0 L2Unix

ACCESS CONTROL, MEDIA PROTECTION

5.2.4.5 Ensure audit configuration files are 640 or more restrictiveCIS Amazon Linux 2 v3.0.0 L2Unix

ACCESS CONTROL, MEDIA PROTECTION

6.1.14 Audit system file permissionsCIS Amazon Linux 2 v3.0.0 L2Unix

ACCESS CONTROL, MEDIA PROTECTION

6.7 Ensure subnets for the App tier are createdCIS Amazon Web Services Three-tier Web Architecture L1 1.0.0amazon_aws

SYSTEM AND COMMUNICATIONS PROTECTION

auditctl /etc/localtimeCIS Amazon Linux 2 v3.0.0 L2Unix
auditctl /etc/sudoersCIS Amazon Linux 2 v3.0.0 L2Unix
auditctl /usr/bin/kmodCIS Amazon Linux 2 v3.0.0 L2Unix
auditctl adjtimex x64CIS Amazon Linux 2 v3.0.0 L2Unix
auditctl b32 chmodCIS Amazon Linux 2 v3.0.0 L2Unix
auditctl b32 chownCIS Amazon Linux 2 v3.0.0 L2Unix
auditctl b32 EPERMCIS Amazon Linux 2 v3.0.0 L2Unix
auditctl b32 fchmodCIS Amazon Linux 2 v3.0.0 L2Unix
auditctl b64 removexattrCIS Amazon Linux 2 v3.0.0 L2Unix
auditctl b64 sethostnameCIS Amazon Linux 2 v3.0.0 L2Unix
auditctl clock_settime x32CIS Amazon Linux 2 v3.0.0 L2Unix
auditctl finit_module b64CIS Amazon Linux 2 v3.0.0 L2Unix
auditctl wtmpCIS Amazon Linux 2 v3.0.0 L2Unix
b32 chownCIS Amazon Linux 2 v3.0.0 L2Unix
b32 fchownatCIS Amazon Linux 2 v3.0.0 L2Unix
b32 lchownCIS Amazon Linux 2 v3.0.0 L2Unix
b64 chownCIS Amazon Linux 2 v3.0.0 L2Unix
b64 lremovexattrCIS Amazon Linux 2 v3.0.0 L2Unix
b64 setxattrCIS Amazon Linux 2 v3.0.0 L2Unix
DefaultCIS IIS 8.0 v1.5.1 Level 2Windows
grubbyCIS Amazon Linux 2 v3.0.0 L2Unix
password-auth preauth root_unlock_timeCIS Amazon Linux 2 v3.0.0 L2Unix
sshd outputCIS Amazon Linux 2 v3.0.0 L2Unix
system-auth preauth root_unlock_timeCIS Amazon Linux 2 v3.0.0 L2Unix
Verify IIS 10 installed.CIS IIS 10 v1.2.1 Level 2Windows
Verify IIS is installed.CIS IIS 10 v1.2.1 Level 2Windows