CIS_Amazon_Linux_2_Benchmarks

Ensure Audit Logging of Network Environment Modification Events
Profile Applicability:  • Level 2 Description:  Modifications to the system’s network environment—such as changes to network interfaces, routing tables, fi...
Tue, 20 May, 2025 at 11:08 PM
Ensure Audit Logging of Privileged Command Usage
Profile Applicability:  • Level 2 Description:  Privileged commands allow users to perform actions with elevated privileges, potentially impacting system s...
Wed, 21 May, 2025 at 12:27 AM
Ensure Audit Logging of Unsuccessful File Access Attempts
Profile Applicability:  • Level 2 Description:  Unsuccessful file access attempts indicate possible unauthorized or malicious activity targeting protected ...
Wed, 21 May, 2025 at 12:31 AM
Ensure Audit Logging of User and Group Modification Events
Profile Applicability:  • Level 2 Description:  Modifications to user and group information, such as adding, deleting, or changing accounts and groups, can...
Wed, 21 May, 2025 at 12:36 AM
Ensure Audit Logging of Discretionary Access Control Permission Modifications
Profile Applicability:  • Level 2 Description:  Discretionary Access Control (DAC) permission modifications involve changes to file or directory permission...
Wed, 21 May, 2025 at 12:54 AM
Ensure Audit Logging of Successful Filesystem Mount Events
Profile Applicability:  • Level 2 Description:  Monitoring successful filesystem mount events provides visibility into changes in the system’s mounted file...
Wed, 21 May, 2025 at 1:00 AM
Disable cramfs Kernel Module to Reduce Linux Attack Surface
Profile Applicability:  • Level 1 Description:  The cramfs filesystem is a compressed read-only Linux filesystem commonly used in embedded systems. The cra...
Wed, 21 May, 2025 at 1:12 AM
Ensure Audit Logging of Session Initiation Events
Profile Applicability:  • Level 2 Description:  Session initiation events capture user logins, logouts, and terminal sessions. Collecting this information ...
Wed, 21 May, 2025 at 1:13 AM
Disable freevxfs Kernel Module to Harden Linux Kernel
Profile Applicability: • Level 1 Description:  The freevxfs kernel module supports the Veritas File System (VxFS), a commercial filesystem used in some en...
Wed, 21 May, 2025 at 1:18 AM
Disable hfs Kernel Module to Harden Linux Kernel Security
Profile Applicability:  • Level 1 Description:  The hfs kernel module provides support for the Hierarchical File System (HFS) used by older Apple Macintosh...
Wed, 21 May, 2025 at 1:22 AM