CIS_Amazon_Linux_2_Benchmarks

Ensure GPG Keys Are Configured to Verify Software Packages
Profile Applicability:  • Level 1 Description:  GPG (GNU Privacy Guard) keys are used to verify the authenticity and integrity of software packages during ...
Thu, 22 May, 2025 at 2:39 AM
Ensure Consistency Between Running and On-Disk Configuration
Profile Applicability:  • Level 2 Description:  The running system configuration refers to the current active settings in memory, while the on-disk configu...
Thu, 22 May, 2025 at 2:40 AM
Ensure Global gpgcheck is Enabled for Package Verification
Profile Applicability:  • Level 1 Description:  The gpgcheck option in package managers ensures that all packages are verified against their GPG signatures...
Thu, 22 May, 2025 at 2:43 AM
Ensure Audit Log Directory Has Permissions Set to 0750 or More Restrictive
Profile Applicability:  • Level 2 Description: The audit log directory stores security and system audit logs. Setting its permissions to 0750 or more restr...
Thu, 22 May, 2025 at 2:46 AM
Ensure Global repo_gpgcheck is Enabled for Repository Metadata Verification
Profile Applicability:  • Level 2 Description:  The repo_gpgcheck option enforces verification of repository metadata signatures using GPG keys. Enabling t...
Thu, 22 May, 2025 at 2:47 AM
Ensure Package Manager Repositories Are Properly Configured
Profile Applicability:  • Level 1 Description:  Proper configuration of package manager repositories ensures that software packages are obtained from trust...
Thu, 22 May, 2025 at 2:51 AM
Ensure System Updates, Patches, and Security Software Are Installed
Profile Applicability:  • Level 1 Description:  Keeping the operating system and installed software up-to-date with the latest patches, updates, and securi...
Thu, 22 May, 2025 at 2:55 AM
Ensure Authentication is Required for Single User Mode Access
Profile Applicability:  • Level 1 Description:  Single user mode (also known as maintenance or rescue mode) provides unrestricted root access to the system...
Thu, 22 May, 2025 at 2:58 AM
Ensure Address Space Layout Randomization (ASLR) is Enabled to Mitigate Memory Exploits
Profile Applicability:  • Level 1 Description:  ASLR is a security feature that randomizes the memory addresses used by system and application processes. T...
Mon, 26 May, 2025 at 12:45 AM
Ensure ptrace_scope is Restricted to Enhance Process Security
Profile Applicability:  • Level 1 Description: The ptrace system call allows one process to observe and control another, which can be exploited to inspect ...
Mon, 26 May, 2025 at 12:52 AM