Item Search

NameAudit NamePluginCategory
1.1 Ensure that multi-factor authentication is enabled for all privileged usersCIS Microsoft Azure Foundations v1.3.1 L1microsoft_azure
1.2.2 Set 'transport input ssh' for 'line vty' connectionsCIS Cisco IOS 16 L1 v1.1.2Cisco
1.2.2 Set 'transport input ssh' for 'line vty' connectionsCIS Cisco IOS 17 L1 v1.0.0Cisco
1.5.9 Set 'priv' for each 'snmp-server group' using SNMPv3CIS Cisco IOS 16 L2 v1.1.2Cisco
1.5.9 Set 'priv' for each 'snmp-server group' using SNMPv3CIS Cisco IOS 17 L2 v2.0.0Cisco
1.5.10 Require 'aes 128' as minimum for 'snmp-server user' when using SNMPv3CIS Cisco IOS 17 L2 v2.0.0Cisco
2.1.1.1.1 Set the 'hostname'CIS Cisco IOS 17 L1 v1.0.0Cisco
2.1.1.1.1 Set the 'hostname'CIS Cisco IOS 17 L1 v2.0.0Cisco
2.1.1.1.1 Set the 'hostname'CIS Cisco IOS 16 L1 v1.1.2Cisco
2.1.1.1.2 Set the 'ip domain-name'CIS Cisco IOS 16 L1 v2.0.0Cisco
2.1.1.1.2 Set the 'ip domain-name'CIS Cisco IOS 17 L1 v2.0.0Cisco
2.1.1.1.2 Set the 'ip domain-name'CIS Cisco IOS 16 L1 v1.1.2Cisco
2.1.1.1.3 Set 'modulus' to greater than or equal to 2048 for 'crypto key generate rsa'CIS Cisco IOS 17 L1 v1.0.0Cisco
2.1.1.1.3 Set 'modulus' to greater than or equal to 2048 for 'crypto key generate rsa'CIS Cisco IOS 16 L1 v1.1.2Cisco
2.1.1.1.3 Set 'modulus' to greater than or equal to 2048 for 'crypto key generate rsa'CIS Cisco IOS 16 L1 v2.0.0Cisco
2.1.1.1.4 Set 'seconds' for 'ip ssh timeout'CIS Cisco IOS 17 L1 v1.0.0Cisco
2.1.1.1.4 Set 'seconds' for 'ip ssh timeout'CIS Cisco IOS 16 L1 v1.1.2Cisco
2.1.1.1.4 Set 'seconds' for 'ip ssh timeout' for 60 seconds or lessCIS Cisco IOS 16 L1 v2.0.0Cisco
2.1.1.1.4 Set 'seconds' for 'ip ssh timeout' for 60 seconds or lessCIS Cisco IOS 17 L1 v2.0.0Cisco
2.3.2 Ensure rsh client is not installedCIS Debian 10 Server L1 v1.0.0Unix
2.3.2 Ensure rsh client is not installedCIS Debian 10 Workstation L1 v1.0.0Unix
2.3.2 Ensure telnet client is not installedCIS AlmaLinux OS 8 Server L1 v1.0.0Unix
2.3.2 Ensure telnet client is not installedCIS CentOS Linux 8 Server L1 v1.0.1Unix
2.3.2 Ensure telnet client is not installedCIS Red Hat EL8 Workstation L1 v1.0.1Unix
2.3.2 Ensure telnet client is not installedCIS Red Hat EL8 Server L1 v1.0.1Unix
2.3.2 Ensure telnet client is not installedCIS CentOS Linux 8 Workstation L1 v1.0.1Unix
2.3.2 Ensure telnet client is not installedCIS AlmaLinux OS 8 Workstation L1 v1.0.0Unix
2.3.2 Ensure telnet client is not installedCIS Fedora 28 Family Linux Workstation L1 v1.0.0Unix
2.3.2 Ensure telnet client is not installedCIS Fedora 28 Family Linux Server L1 v1.0.0Unix
2.4.5 Ensure only encrypted access channels are enabledCIS Fortigate Level 1 v1.1.0FortiGate
2.4.5 Ensure only encrypted access channels are enabledCIS Fortigate 7.0.x Level 1 v1.2.0FortiGate
5.1 Ensure login via 'local' UNIX Domain Socket is configured correctly - local UNIX Domain Socket is configured correctlyCIS PostgreSQL 14 OS v1.1.0Unix
5.1 Ensure login via 'local' UNIX Domain Socket is configured correctly - local UNIX Domain Socket is configured correctlyCIS PostgreSQL 15 OS v1.0.0Unix
5.2.4 Ensure SSH Protocol is set to 2CIS Debian 9 Server L1 v1.0.0Unix
18.9.15.2 Ensure 'Enumerate administrator accounts on elevation' is set to 'Disabled'CIS Microsoft Windows Server 2016 STIG NG DC L3 v1.0.0Windows
18.9.15.2 Ensure 'Enumerate administrator accounts on elevation' is set to 'Disabled'CIS Microsoft Windows Server 2016 STIG MS L1 v1.0.0Windows
18.9.59.3.9.2 Ensure 'Require secure RPC communication' is set to 'Enabled'CIS Microsoft Windows Server 2016 STIG MS L1 v1.0.0Windows
18.9.59.3.9.3 (L1) Ensure 'Require use of specific security layer for remote (RDP) connections' is set to 'Enabled: SSL'CIS Microsoft Windows 8.1 v2.4.0 L1Windows
18.9.59.3.9.3 Ensure 'Require use of specific security layer for remote (RDP) connections' is set to 'Enabled: SSL'CIS Microsoft Windows Server 2016 STIG DC L1 v1.0.0Windows
18.9.59.3.9.3 Ensure 'Require use of specific security layer for remote (RDP) connections' is set to 'Enabled: SSL'CIS Microsoft Windows Server 2016 STIG NG MS L3 v1.0.0Windows
18.9.59.3.9.3 Ensure 'Require use of specific security layer for remote (RDP) connections' is set to 'Enabled: SSL'CIS Microsoft Windows Server 2016 STIG MS L1 v1.0.0Windows
18.9.59.3.9.4 (L1) Ensure 'Require user authentication for remote connections by using Network Level Authentication' is set to 'Enabled'CIS Microsoft Windows 8.1 v2.4.0 L1 BitlockerWindows
18.9.59.3.9.4 (L1) Ensure 'Require user authentication for remote connections by using Network Level Authentication' is set to 'Enabled'CIS Microsoft Windows 8.1 v2.4.0 L1Windows
18.9.59.3.9.4 Ensure 'Require user authentication for remote connections by using Network Level Authentication' is set to 'Enabled'CIS Microsoft Windows Server 2016 STIG MS L1 v1.0.0Windows
18.9.59.3.9.4 Ensure 'Require user authentication for remote connections by using Network Level Authentication' is set to 'Enabled'CIS Microsoft Windows Server 2016 STIG NG MS L3 v1.0.0Windows
18.9.59.3.9.5 Ensure 'Set client connection encryption level' is set to 'Enabled: High Level'CIS Microsoft Windows Server 2016 STIG NG MS L3 v1.0.0Windows
18.9.59.3.9.5 Ensure 'Set client connection encryption level' is set to 'Enabled: High Level'CIS Microsoft Windows Server 2016 STIG DC L1 v1.0.0Windows
18.9.59.3.9.5 Ensure 'Set client connection encryption level' is set to 'Enabled: High Level'CIS Microsoft Windows Server 2016 STIG MS L1 v1.0.0Windows
18.9.62.3.9.3 Ensure 'Require use of specific security layer for remote (RDP) connections' is set to 'Enabled: SSL'CIS Microsoft Windows 10 Enterprise (Release 2004) v1.9.1 L1Windows
18.9.62.3.9.4 Ensure 'Require user authentication for remote connections by using Network Level Authentication' is set to 'Enabled'CIS Microsoft Windows 10 Enterprise (Release 2004) v1.9.1 L1Windows