CIS_Amazon_Linux_2_Benchmarks

Ensure Audit Configuration Files Are Owned by Root
Profile Applicability: Level 1 Description:  Audit configuration files control how auditing is performed on the system. Ensuring these files are owned by t...
Thu, 29 May, 2025 at 12:53 PM
Ensure Audit Configuration Files Have Permissions Set to 640 or More Restrictive
Profile Applicability: Level 2 Description:  Audit configuration files define the auditing rules and policies on the system. Setting file permissions to 64...
Thu, 29 May, 2025 at 12:57 PM
Ensure pam_pwquality Module Is Enabled
Profile Applicability:  • Level 1 Description:  The pam_pwquality module enforces password quality requirements such as complexity, length, and dictionary ...
Thu, 29 May, 2025 at 11:58 PM
Ensure Password Number of Changed Characters Is Configured
Profile Applicability:  • Level 1 Description:  Configuring the minimum number of changed characters in a new password compared to the old one prevents use...
Fri, 30 May, 2025 at 12:03 AM
Ensure Password Length Is Configured
Profile Applicability:  • Level 1 Description:  Configuring a minimum password length enforces users to create passwords of sufficient complexity, improvin...
Fri, 30 May, 2025 at 12:06 AM
Ensure Password Complexity Is Configured
Profile Applicability:  • Level 1 Description:  Password complexity requirements enforce the use of varied character types—such as uppercase letters, lower...
Fri, 30 May, 2025 at 12:09 AM
Ensure Password Same Consecutive Characters Limit Is Configured
Profile Applicability:  • Level 1 Description:  Configuring limits on the number of same consecutive characters in passwords prevents users from choosing p...
Fri, 30 May, 2025 at 12:13 AM
Ensure Password Maximum Sequential Characters Is Configured
Profile Applicability:  • Level 1 Description:  Configuring limits on the maximum number of sequential characters in passwords prevents users from choosing...
Fri, 30 May, 2025 at 12:18 AM
Ensure Password Dictionary Check Is Enabled
Profile Applicability:  • Level 1 Description:  Enabling password dictionary checks helps prevent users from selecting common or easily guessable passwords...
Fri, 30 May, 2025 at 12:22 AM
Ensure pam_pwhistory Module Is Enabled
Profile Applicability:  • Level 1 Description:  The pam_pwhistory module tracks users' previous passwords and prevents reuse of recent passwords. Enabl...
Fri, 30 May, 2025 at 12:27 AM