CIS_Amazon_Linux_2_Benchmarks

Ensure Access to the su Command Is Restricted
Profile Applicability:  • Level 1 Description:  The su command allows a user to switch to another user account, commonly to root. Restricting access to the...
Mon, 2 Jun, 2025 at 4:52 AM
Ensure sudo Authentication Timeout Is Configured Correctly
Profile Applicability:  • Level 1 Description:  The sudo authentication timeout controls the duration a user can execute sudo commands without re-entering ...
Mon, 2 Jun, 2025 at 4:58 AM
Ensure systemd-journal-remote Is Installed
Profile Applicability:  • Level 1 Description:  systemd-journal-remote is a service that enables a system to receive and process logs forwarded from remote...
Mon, 2 Jun, 2025 at 5:00 AM
Ensure Users Must Provide Password for Privilege Escalation
Profile Applicability:  • Level 1 Description:  Requiring users to enter their password when using privilege escalation tools such as sudo ensures accounta...
Mon, 2 Jun, 2025 at 5:03 AM
Ensure Re-authentication for Privilege Escalation Is Enabled Globally
Profile Applicability:  • Level 1 Description:  Ensuring that re-authentication for privilege escalation is not disabled globally enforces that users must ...
Mon, 2 Jun, 2025 at 5:03 AM
Ensure systemd-journal-remote Is Configured
Profile Applicability:  • Level 1 Description:  The systemd-journal-remote service allows a system to receive and process logs forwarded from remote system...
Mon, 2 Jun, 2025 at 5:06 AM
Ensure systemd-journal-remote Service Is Enabled
Profile Applicability:  • Level 1 Description:  The systemd-journal-remote service allows a system to receive and store journal logs from remote machines, ...
Mon, 2 Jun, 2025 at 7:21 AM
Ensure journald Is Not Configured to Receive Logs from Remote Clients
Profile Applicability:  • Level 1 Description:  The systemd journal (journald) can be configured to accept log messages from remote clients. Disabling this...
Mon, 2 Jun, 2025 at 7:27 AM
Ensure journald Service Is Enabled
Profile Applicability:  • Level 1 Description:  The systemd-journald service collects and manages system log data. Ensuring the journald service is enabled...
Mon, 2 Jun, 2025 at 7:32 AM
Ensure journald Is Configured to Compress Large Log Files
Profile Applicability:  • Level 1 Description:  Compressing large log files in systemd’s journal (journald) reduces disk space usage by minimizing the stor...
Mon, 2 Jun, 2025 at 7:38 AM