CSCv6|1.4

Title

Maintain an asset inventory of all systems connected to the network and the network devices themselves.

Description

Maintain an asset inventory of all systems connected to the network and the network devices themselves, recording at least the network addresses, machine name(s), purpose of each system, an asset owner responsible for each device, and the department associated with each device. The inventory should include every system that has an Internet protocol (IP) address on the network, including but not limited to desktops, laptops, servers, network equipment (routers, switches, firewalls, etc.), printers, storage area networks, Voice Over-IP telephones, multi-homed addresses, virtual addresses, etc. The asset inventory created must also include data on whether the device is a portable and/or personal device. Devices such as mobile phones, tablets, laptops, and other portable electronic devices that store or process data must be identified, regardless of whether they are attached to the organization's network.

Reference Item Details

Category: Inventory of Authorized and Unauthorized Devices

Family: System

Audit Items

View all Reference Audit Items

NamePluginAudit Name
3.5 Ensure AWS Config is enabled in all regions - 'Include global resources'amazon_awsCIS Amazon Web Services Foundations L1 1.3.0
3.5 Ensure AWS Config is enabled in all regions - 'Record all resources supported in this region'amazon_awsCIS Amazon Web Services Foundations L1 1.3.0
3.5 Ensure AWS Config is enabled in all regions - 'Review defined S3 Bucket'amazon_awsCIS Amazon Web Services Foundations L1 1.3.0
3.5 Ensure AWS Config is enabled in all regions - 'Review defined SNS Topic'amazon_awsCIS Amazon Web Services Foundations L1 1.3.0
4.9 Ensure a log metric filter and alarm exist for AWS Config configuration changes - 'alarm exists'amazon_awsCIS Amazon Web Services Foundations L2 1.3.0
4.9 Ensure a log metric filter and alarm exist for AWS Config configuration changes - 'alarm exists'amazon_awsCIS Amazon Web Services Foundations L2 1.4.0
4.9 Ensure a log metric filter and alarm exist for AWS Config configuration changes - 'metric filter exists'amazon_awsCIS Amazon Web Services Foundations L2 1.4.0
4.9 Ensure a log metric filter and alarm exist for AWS Config configuration changes - 'metric filter exists'amazon_awsCIS Amazon Web Services Foundations L2 1.3.0
GEN000100 - The operating system must be a supported release.UnixDISA STIG Solaris 10 X86 v2r2
GEN000100 - The operating system must be a supported release.UnixDISA STIG Solaris 10 SPARC v2r2
GEN000100 - The operating system must be a supported release.UnixDISA STIG Solaris 10 SPARC v2r1
GEN000100 - The operating system must be a supported release.UnixDISA STIG Solaris 10 X86 v2r1
MongoDB hostInfoMongoDBTNS MongoDB 2.x Best Practices Database Audit v1.0
MongoDB isMasterMongoDBTNS MongoDB 2.x Best Practices Database Audit v1.0
MongoDB ServerStatusMongoDBTNS MongoDB 2.x Best Practices Database Audit v1.0
Rackspace Networks and their attached subnetsRackspaceTenable Best Practices RackSpace v2.0.0
Rackspace Server FlavorsRackspaceTenable Best Practices RackSpace v2.0.0
Rackspace Server ImagesRackspaceTenable Best Practices RackSpace v2.0.0
Rackspace Subnet DetailsRackspaceTenable Best Practices RackSpace v2.0.0
Review the list of all Domains created since the last scanRackspaceTenable Best Practices RackSpace v2.0.0
Review the list of all Domains updated since the last scanRackspaceTenable Best Practices RackSpace v2.0.0
Review the list of Databases Deployed In RackspaceRackspaceTenable Best Practices RackSpace v2.0.0
Review the list of DomainsRackspaceTenable Best Practices RackSpace v2.0.0
Review the list of Ports and their detailsRackspaceTenable Best Practices RackSpace v2.0.0
Review the list of Rackspace Database FlavorsRackspaceTenable Best Practices RackSpace v2.0.0
SOL-11.1-080010 - The operating system must be a supported release.UnixDISA STIG Solaris 11 X86 v2r4