Prescriptive guidance for running Amazon Elastic Kubernetes Service (EKS) following recommended security controls. The CIS Benchmark only includes controls which can be modified by an end user of Amazon EKS.
Download the CIS Amazon Elastic Kubernetes Service (EKS) Benchmark v1.0.0
Our members can visit CIS WorkBench to download other formats and related resources.
Thank you to all of our Community volunteers who contributed their time and expertise towards these updates in the form of tickets, comments, and joining our editor calls. Your contributions are invaluable to our consensus process. Special thanks to Jon Christopherson, James Trigg and Richard Costa without whose help the following CIS Linux Benchmarks would not have been possible.
Prescriptive guidance for establishing a secure configuration posture for CentOS Linux 7 systems running on x86 and x64 platforms. The document was tested against CentOS 7.8.
Prescriptive guidance for establishing a secure configuration posture for Oracle Linux 7 systems running on x86 and x64 platforms. The document was tested against Oracle Linux 7.8.
Provides prescriptive guidance for establishing a secure configuration posture for Red Hat Enterprise Linux 7 systems running on x86 and x64 platforms. The document was tested against Red Hat Enterprise Linux 7.8
Prescriptive guidance for establishing a secure configuration posture for SUSE Linux Enterprise 15 SP1 systems running on x86 or x64 platforms. The document was tested against SUSE Linux Enterprise Server 15 SP1.
Prescriptive guidance for establishing a secure configuration posture for Ubuntu Linux systems running on x86 and x64 platforms.
Commands and scripts are provided which should work on most Debian derived Linux distributions, however some translation to local styles may be required in places.
Many lists are included including filesystem types, services, clients, and network protocols. Not all items in these lists are guaranteed to exist on all distributions and additional similar items may exist which should be considered in addition to those explicitly mentioned.
Our members can visit CIS WorkBench to download other formats and related resources.
* The guidance within broadly assumes that operations are being performed as the root user. Operations performed using sudo instead of the root user may produce unexpected results, or fail to make the intended changes to the system. Non-root users may not be able to access certain areas of the system, especially after remediation has been performed. It is advisable to verify root users path integrity and the integrity of any programs being run prior to execution of commands and scripts included in these CIS Benchmarks.
Prescriptive guidance for establishing a secure configuration posture for Check Point Firewall versions R75.x – 80.x installed on Gaia Platform. The guide was tested against Check Point R80.10 installed on Gaia.
This CIS Benchmark only includes controls which can be modified by an end user of GKE. For information on GKE’s performance against the CIS Kubernetes Benchmarks, and for items which cannot be audited or modified, see the GKE documentation.
The following CIS Microsoft SQL Server Benchmarks have been released, providing prescriptive guidance for establishing a secure configuration posture for Microsoft SQL Server. Each guide was tested against the associated version as noted in the CIS Benchmark.
This guide was tested against Microsoft Windows Server 2016 Datacenter. The community made several changes to improve this CIS Benchmark:
The full change log is included at the end of both the PDF and DOC versions.
A huge thank you to the Windows Community and Team for making this happen, and special thanks to Haemish Edgerton.
Prescriptive guidance for Oracle Database 18c. The guide was tested against Oracle Database 18c installed with and without pluggable database support running on a Windows Server instance as a stand-alone system and running on an Oracle Linux instance also as a stand-alone system. Future Oracle Database 18c critical patch updates (CPUs) may impact the recommendations included in the document.
Prescriptive guidance for establishing a secure configuration posture for VMware ESXi 6.7. The guide was tested against VMware ESXi 6.7.
Get involved by helping us develop content, review recommendations, and test CIS Benchmarks. Join a community today! We’re looking for contributors for the following technologies:
Have questions about the CIS Benchmark development process, how you can contribute, or how to get involved? Reach out to us at [email protected]. You can also learn more on the CIS Benchmarks Community page.