← all publishers

cyberstrikeus

@cyberstrikeus source repo

7171 published skills · page 43 of 72

  1. Cis Bind V100 2 3 · cyberstrikeus
    Lock the BIND User Account (Automated)
    0 installs
  2. Cis Bind V100 2 4 · cyberstrikeus
    Set root Ownership of BIND Directories (Automated)
    0 installs
  3. Cis Bind V100 2 5 · cyberstrikeus
    Set root Ownership of BIND Configuration Files (Automated)
    0 installs
  4. Cis Bind V100 2 6 · cyberstrikeus
    Set Group named or root for BIND Directories and Files (Automated)
    0 installs
  5. Cis Bind V100 2 7 · cyberstrikeus
    Set Group Read-Only for BIND Files and Non-Runtime Directories (Automated)
    0 installs
  6. Cis Bind V100 2 8 · cyberstrikeus
    Set Other Permissions Read-Only for All BIND Directories and Files (Automated)
    0 installs
  7. Cis Bind V100 2 9 · cyberstrikeus
    Isolate BIND with chroot'ed Subdirectory (Automated)
    0 installs
  8. Cis Bind V100 3 1 · cyberstrikeus
    Ignore Erroneous or Unwanted Queries (Automated)
    0 installs
  9. Cis Bind V100 3 2 · cyberstrikeus
    Restrict Recursive Queries (Automated)
    0 installs
  10. Cis Bind V100 3 3 · cyberstrikeus
    Restrict Query Origins (Manual)
    0 installs
  11. Cis Bind V100 3 4 · cyberstrikeus
    Restrict Queries of the Cache (Automated)
    0 installs
  12. Cis Bind V100 4 1 · cyberstrikeus
    Use TSIG Keys 256 Bits in Length (Automated)
    0 installs
  13. Cis Bind V100 4 2 · cyberstrikeus
    Include Cryptographic Key Files (Automated)
    0 installs
  14. Cis Bind V100 4 3 · cyberstrikeus
    Use Unique Keys for Each Pair of Hosts (Automated)
    0 installs
  15. Cis Bind V100 4 4 · cyberstrikeus
    Restrict Access to All Key Files (Automated)
    0 installs
  16. Cis Bind V100 4 5 · cyberstrikeus
    Protect TSIG Key Files During Deployment (Manual)
    0 installs
  17. Cis Bind V100 5 1 · cyberstrikeus
    Securely Authenticate Zone Transfers (Automated)
    0 installs
  18. Cis Bind V100 5 2 · cyberstrikeus
    Securely Authenticate Dynamic Updates (Automated)
    0 installs
  19. Cis Bind V100 5 3 · cyberstrikeus
    Securely Authenticate Update Forwarding (Automated)
    0 installs
  20. Cis Bind V100 6 1 · cyberstrikeus
    Hide BIND Version String (Automated)
    0 installs
  21. Cis Bind V100 6 2 · cyberstrikeus
    Hide Nameserver ID (Automated)
    0 installs
  22. Cis Bind V100 7 1 · cyberstrikeus
    Do Not Define a Static Source Port (Automated)
    0 installs
  23. Cis Bind V100 7 2 · cyberstrikeus
    Enable DNSSEC Validation (Automated)
    0 installs
  24. Cis Bind V100 7 3 · cyberstrikeus
    Disable the dnssec-accept-expired Option (Automated)
    0 installs
  25. Cis Bind V100 7 4 · cyberstrikeus
    Ensure Either SPF or DKIM DNS Records are Configured (Automated)
    0 installs
  26. Cis Bind V100 8 1 · cyberstrikeus
    Install the Haveged Package for Enhanced Entropy (Automated)
    0 installs
  27. Cis Bind V100 8 2 · cyberstrikeus
    Ensure Signing Keys are Generated with a Secure Algorithm (Automated)
    0 installs
  28. Cis Bind V100 8 3 · cyberstrikeus
    Ensure Any Signing Keys using RSA Have a Length of 2048 or Greater (Automated)
    0 installs
  29. Cis Bind V100 8 4 · cyberstrikeus
    Restrict Access to Zone and Key Signing Keys (Automated)
    0 installs
  30. Cis Bind V100 8 5 · cyberstrikeus
    Ensure each Zone has a Valid Digital Signature (Manual)
    0 installs
  31. Cis Bind V100 8 6 · cyberstrikeus
    Ensure Full Digital Chain of Trust can be Validated (Automated)
    0 installs
  32. Cis Bind V100 8 7 · cyberstrikeus
    Ensure Signing Keys are Unique (Automated)
    0 installs
  33. Cis Bind V100 8 8 · cyberstrikeus
    Ensure Zones are Signed with NSEC or NSEC3 (Automated)
    0 installs
  34. Cis Bind V100 9 1 · cyberstrikeus
    Apply Applicable Updates (Automated)
    0 installs
  35. Cis Bind V100 9 2 · cyberstrikeus
    Configure a Logging File Channel (Automated)
    0 installs
  36. Cis Bind V100 9 3 · cyberstrikeus
    Configure a Logging Syslog Channel (Automated)
    0 installs
  37. Cis Bind V100 9 4 · cyberstrikeus
    Disable the HTTP Statistics Server (Automated)
    0 installs
  38. Cis Bind V100 9 5 · cyberstrikeus
    Response Rate Limiting and DDOS Mitigation (Automated)
    0 installs
  39. Cis Bind V100 9 6 · cyberstrikeus
    Ensure Signing Keys are Scheduled to be Replaced Periodically (Automated)
    0 installs
  40. Cis Bind9 V301 1 1 · cyberstrikeus
    Use a Split-Horizon Architecture (Manual)
    0 installs
  41. Cis Bind9 V301 1 2 · cyberstrikeus
    Do Not Install a Multi-Use System (Manual)
    0 installs
  42. Cis Bind9 V301 1 3 · cyberstrikeus
    Dedicated Name Server Role (Automated)
    0 installs
  43. Cis Bind9 V301 1 4 · cyberstrikeus
    Use Secure Upstream Caching DNS Servers (Manual)
    0 installs
  44. Cis Bind9 V301 1 5 · cyberstrikeus
    Installing ISC BIND 9 (Automated)
    0 installs
  45. Cis Bind9 V301 2 1 · cyberstrikeus
    Run BIND as a non-root User (Automated)
    0 installs
  46. Cis Bind9 V301 2 2 · cyberstrikeus
    Give the BIND User Account an Invalid Shell (Automated)
    0 installs
  47. Cis Bind9 V301 2 3 · cyberstrikeus
    Lock the BIND User Account (Automated)
    0 installs
  48. Cis AWS Storage 1 5 · cyberstrikeus
    Ensure to create IAM roles for Backup
    0 installs
  49. Cis AWS Storage 1 6 · cyberstrikeus
    Ensure AWS Backup with Service Linked Roles
    0 installs
  50. Cis AWS Storage 2 1 · cyberstrikeus
    Ensure creating EC2 instance with EBS
    0 installs
  51. Cis AWS Storage 2 2 · cyberstrikeus
    Ensure configuring Security Groups
    0 installs
  52. Cis AWS Storage 2 3 · cyberstrikeus
    Ensure the proper configuration of EBS storage
    0 installs
  53. Cis AWS Storage 2 4 · cyberstrikeus
    Ensure the creation of a new volume
    0 installs
  54. Cis AWS Storage 2 5 · cyberstrikeus
    Ensure creating snapshots of EBS volumes
    0 installs
  55. Cis AWS Storage 2 6 · cyberstrikeus
    Ensure Proper IAM Configuration for EC2 Instances
    0 installs
  56. Cis AWS Storage 2 7 · cyberstrikeus
    Ensure creating IAM User
    0 installs
  57. Cis AWS Storage 2 8 · cyberstrikeus
    Ensure the Creation of IAM Groups
    0 installs
  58. Cis AWS Storage 2 9 · cyberstrikeus
    Ensure Granular Policy Creation
    0 installs
  59. Cis AWS Storage 3 1 · cyberstrikeus
    EFS - Ensure AWS EFS is implemented for file system deployment
    0 installs
  60. Cis AWS Storage 3 2 · cyberstrikeus
    Ensure Implementation of EFS for managed file system deployment
    0 installs
  61. Cis AWS Storage 3 3 · cyberstrikeus
    Ensure EFS and VPC Integration for redundancy and scalability
    0 installs
  62. Cis AWS Storage 3 4 · cyberstrikeus
    Ensure controlling Network access to EFS Services
    0 installs
  63. Cis AWS Storage 3 5 · cyberstrikeus
    Ensure using Security Groups for VPC to control EFS traffic
    0 installs
  64. Cis AWS Storage 3 6 · cyberstrikeus
    Ensure Secure Ports for AWS storage services (S3, EFS, EBS)
    0 installs
  65. Cis AWS Storage 3 7 · cyberstrikeus
    Ensure File-Level Access Control with Mount Targets
    0 installs
  66. Cis AWS Storage 3 8 · cyberstrikeus
    Ensure managing mount target security groups
    0 installs
  67. Cis AWS Storage 3 9 · cyberstrikeus
    Ensure using VPC endpoints - EFS
    0 installs
  68. Cis AWS Storage 4 1 · cyberstrikeus
    FSX (AWS Elastic File Cache)
    0 installs
  69. Cis AWS Storage 4 2 · cyberstrikeus
    Amazon Elastic File Cache
    0 installs
  70. Cis AWS Storage 4 3 · cyberstrikeus
    Ensure the creation of an FSX Bucket
    0 installs
  71. Cis AWS Storage 4 4 · cyberstrikeus
    Ensure the creation of Elastic File Cache
    0 installs
  72. Cis AWS Storage 4 5 · cyberstrikeus
    Ensure installation and configuration of Lustre Client
    0 installs
  73. Cis AWS Storage 4 6 · cyberstrikeus
    Ensure EC2 Kernel compatibility with Lustre
    0 installs
  74. Cis AWS Storage 4 7 · cyberstrikeus
    Ensure mounting FSx cache
    0 installs
  75. Cis AWS Storage 4 8 · cyberstrikeus
    Ensure exporting cache to S3
    0 installs
  76. Cis AWS Storage 4 9 · cyberstrikeus
    Ensure cleaning up FSx Resources
    0 installs
  77. Cis AWS Storage 5 1 · cyberstrikeus
    Amazon Simple Storage Service (S3)
    0 installs
  78. Cis AWS Storage 5 2 · cyberstrikeus
    Ensure direct data addition to S3
    0 installs
  79. Cis AWS Storage 5 3 · cyberstrikeus
    Ensure Storage Classes are Configured
    0 installs
  80. Cis AWS Storage 6 1 · cyberstrikeus
    Ensure Elastic Disaster Recovery is Configured
    0 installs
  81. Cis AWS Storage 6 2 · cyberstrikeus
    Ensure AWS Disaster Recovery Configuration
    0 installs
  82. Cis AWS Storage 6 3 · cyberstrikeus
    Ensure functionality of Endpoint Detection and Response (EDR)
    0 installs
  83. Cis AWS Storage 6 4 · cyberstrikeus
    Ensure configuration of replication settings
    0 installs
  84. Cis AWS Storage 6 5 · cyberstrikeus
    Ensure proper IAM configuration for AWS Elastic Disaster Recovery
    0 installs
  85. Cis AWS Storage 6 6 · cyberstrikeus
    Ensure installation of the AWS Replication Agent
    0 installs
  86. Cis AWS Storage 6 7 · cyberstrikeus
    Ensure proper configuration of the Launch Settings
    0 installs
  87. Cis AWS Storage 6 8 · cyberstrikeus
    Ensure execution of a recovery drill
    0 installs
  88. Cis AWS Storage 6 9 · cyberstrikeus
    Ensure Continuous Disaster Recovery Operations
    0 installs
  89. Cis K8S V1110 1 1 1 · cyberstrikeus
    Ensure that the API server pod specification file permissions are set to 600 or more restrictive (Automated)
    0 installs
  90. Cis K8S V1110 1 1 2 · cyberstrikeus
    Ensure that the API server pod specification file ownership is set to root:root (Automated)
    0 installs
  91. Cis K8S V1110 1 1 3 · cyberstrikeus
    Ensure that the controller manager pod specification file permissions are set to 600 or more restrictive (Automated)
    0 installs
  92. Cis K8S V1110 1 1 4 · cyberstrikeus
    Ensure that the controller manager pod specification file ownership is set to root:root (Automated)
    0 installs
  93. Cis K8S V1110 1 1 5 · cyberstrikeus
    Ensure that the scheduler pod specification file permissions are set to 600 or more restrictive (Automated)
    0 installs
  94. Cis K8S V1110 1 1 6 · cyberstrikeus
    Ensure that the scheduler pod specification file ownership is set to root:root (Automated)
    0 installs
  95. Cis K8S V1110 1 1 7 · cyberstrikeus
    Ensure that the etcd pod specification file permissions are set to 600 or more restrictive (Automated)
    0 installs
  96. Cis K8S V1110 1 1 8 · cyberstrikeus
    Ensure that the etcd pod specification file ownership is set to root:root (Automated)
    0 installs
  97. Cis K8S V1110 1 1 9 · cyberstrikeus
    Ensure that the Container Network Interface file permissions are set to 600 or more restrictive (Manual)
    2 installs
  98. Cis K8S V1110 1 2 1 · cyberstrikeus
    Ensure that the --anonymous-auth argument is set to false (Manual)
    0 installs
  99. Cis K8S V1110 1 2 2 · cyberstrikeus
    Ensure that the --token-auth-file parameter is not set (Automated)
    0 installs
  100. Cis K8S V1110 1 2 4 · cyberstrikeus
    Ensure that the --kubelet-client-certificate and --kubelet-client-key arguments are set as appropriate (Automated)
    0 installs