CSCv6|18

Title

Application Software Security

Description

Application Software Security

Reference Item Details

Category: Application Software Security

Family: Application

Audit Items

View all Reference Audit Items

NamePluginAudit Name
1.2 Ensure systemd Service Files Are EnabledUnixCIS PostgreSQL 13 OS v1.0.0
1.2 Ensure systemd Service Files Are EnabledUnixCIS PostgreSQL 14 OS v1.0.0
1.4 Ensure Service Runlevel Is Registered And Set CorrectlyUnixCIS PostgreSQL 9.5 OS v1.1.0
1.4 Ensure Service Runlevel Is Registered And Set CorrectlyUnixCIS PostgreSQL 9.6 OS v1.0.0
1.4 Ensure systemd Service Files Are EnabledUnixCIS PostgreSQL 10 OS v1.0.0
1.4 Ensure systemd Service Files Are EnabledUnixCIS PostgreSQL 11 OS v1.0.0
1.4 Ensure systemd Service Files Are EnabledUnixCIS PostgreSQL 12 OS v1.0.0
1.6.6 Configure Image Provenance using ImagePolicyWebhook admission controllerUnixCIS Kubernetes 1.11 Benchmark v1.3.0 L2
1.6.6 Configure Image Provenance using ImagePolicyWebhook admission controllerUnixCIS Kubernetes 1.13 Benchmark v1.4.1 L2
1.6.6 Configure Image Provenance using ImagePolicyWebhook admission controllerUnixCIS Kubernetes 1.13 Benchmark v1.4.0 L2
1.6.7 Configure Image Provenance using ImagePolicyWebhook admission controllerUnixCIS Kubernetes 1.8 Benchmark v1.2.0 L2
1.6.7 Configure Image Provenance using ImagePolicyWebhook admission controllerUnixCIS Kubernetes 1.7.0 Benchmark v1.1.0 L2
1.27 Ensure 'Instant apps' is set to 'Disabled'MDMMobileIron - CIS Google Android v1.3.0 L1
1.27 Ensure 'Instant apps' is set to 'Disabled'MDMAirWatch - CIS Google Android v1.3.0 L1
1.27 Ensure 'Instant apps' is set to DisabledMDMMobileIron - CIS Google Android v1.2.0 L1
1.27 Ensure 'Instant apps' is set to DisabledMDMAirWatch - CIS Google Android v1.2.0 L1
2.10 Ensure base device size is not changed until neededUnixCIS Docker Community Edition v1.1.0 L2 Docker
2.10 Ensure base device size is not changed until needed - daemon.jsonUnixCIS Docker v1.2.0 L2 Docker Linux
2.10 Ensure base device size is not changed until needed - dockerdUnixCIS Docker v1.2.0 L2 Docker Linux
2.10 Ensure the default cgroup usage has been confirmed - daemon.jsonUnixCIS Docker v1.3.1 L2 Docker Linux
2.10 Ensure the default cgroup usage has been confirmed - dockerdUnixCIS Docker v1.3.1 L2 Docker Linux
2.11 Ensure base device size is not changed until needed - daemon.jsonUnixCIS Docker v1.3.1 L2 Docker Linux
2.11 Ensure base device size is not changed until needed - dockerdUnixCIS Docker v1.3.1 L2 Docker Linux
2.13 Ensure live restore is enabledUnixCIS Docker v1.2.0 L1 Docker Linux
2.13 Ensure operations on legacy registry (v1) are DisabledUnixCIS Docker Community Edition v1.1.0 L1 Docker
2.14 Ensure live restore is EnabledUnixCIS Docker Community Edition v1.1.0 L1 Docker
2.15 Ensure 'AUTO_CLOSE' is set to 'OFF' on contained databasesMS_SQLDBCIS SQL Server 2019 Database L1 DB v1.2.0
2.15 Ensure 'AUTO_CLOSE' is set to 'OFF' on contained databasesMS_SQLDBCIS SQL Server 2019 Database L1 AWS RDS v1.2.0
2.15 Ensure 'xp_cmdshell' Server Configuration Option is set to '0'MS_SQLDBCIS SQL Server 2012 Database L1 AWS RDS v1.6.0
2.15 Ensure 'xp_cmdshell' Server Configuration Option is set to '0'MS_SQLDBCIS SQL Server 2017 Database L1 DB v1.2.0
2.15 Ensure 'xp_cmdshell' Server Configuration Option is set to '0'MS_SQLDBCIS SQL Server 2012 Database L1 DB v1.6.0
2.15 Ensure 'xp_cmdshell' Server Configuration Option is set to '0'MS_SQLDBCIS SQL Server 2014 Database L1 DB v1.5.0
2.15 Ensure 'xp_cmdshell' Server Configuration Option is set to '0'MS_SQLDBCIS SQL Server 2016 Database L1 AWS RDS v1.3.0
2.15 Ensure 'xp_cmdshell' Server Configuration Option is set to '0'MS_SQLDBCIS SQL Server 2014 Database L1 AWS RDS v1.5.0
2.15 Ensure 'xp_cmdshell' Server Configuration Option is set to '0'MS_SQLDBCIS SQL Server 2016 Database L1 DB v1.3.0
2.15 Ensure 'xp_cmdshell' Server Configuration Option is set to '0'MS_SQLDBCIS SQL Server 2017 Database L1 AWS RDS v1.2.0
2.15 Ensure live restore is enabledUnixCIS Docker v1.3.1 L1 Docker Linux
2.15 Ensure that a daemon-wide custom seccomp profile is applied if appropriateUnixCIS Docker v1.2.0 L2 Docker Linux
2.16 Ensure 'AUTO_CLOSE' is set to 'OFF' on contained databasesMS_SQLDBCIS SQL Server 2012 Database L1 DB v1.6.0
2.16 Ensure 'AUTO_CLOSE' is set to 'OFF' on contained databasesMS_SQLDBCIS SQL Server 2016 Database L1 AWS RDS v1.3.0
2.16 Ensure 'AUTO_CLOSE' is set to 'OFF' on contained databasesMS_SQLDBCIS SQL Server 2017 Database L1 DB v1.2.0
2.16 Ensure 'AUTO_CLOSE' is set to 'OFF' on contained databasesMS_SQLDBCIS SQL Server 2012 Database L1 AWS RDS v1.6.0
2.16 Ensure 'AUTO_CLOSE' is set to 'OFF' on contained databasesMS_SQLDBCIS SQL Server 2014 Database L1 DB v1.5.0
11.4 Ensure Only the Necessary SELinux Booleans Are EnabledUnixCIS Apache HTTP Server 2.2 L2 v3.5.0
11.4 Ensure Only the Necessary SELinux Booleans Are EnabledUnixCIS Apache HTTP Server 2.2 L2 v3.6.0 Middleware
11.4 Ensure Only the Necessary SELinux Booleans Are EnabledUnixCIS Apache HTTP Server 2.2 L2 v3.6.0
11.4 Ensure Only the Necessary SELinux Booleans are EnabledUnixCIS Apache HTTP Server 2.4 L2 v1.5.0 Middleware
11.4 Ensure Only the Necessary SELinux Booleans are EnabledUnixCIS Apache HTTP Server 2.4 L2 v2.0.0 Middleware
11.4 Ensure Only the Necessary SELinux Booleans are EnabledUnixCIS Apache HTTP Server 2.4 L2 v1.5.0
11.4 Ensure Only the Necessary SELinux Booleans are EnabledUnixCIS Apache HTTP Server 2.4 L2 v2.0.0