CIS Benchmarks March 2022 Update

CIS-Benchmarks

The following CIS Benchmarks have been updated or released. We've highlighted the major updates below. Each Benchmark includes a full changelog that can be referenced to see all changes made.

CIS Microsoft Windows 10 EMS Gateway Benchmark v1.0.0

The release of this new Benchmark involved a lot of analysis and would not be possible without the CIS Election and Windows Communities. Thank you for your work to make this new Benchmark happen. Special thanks to Mike Garcia and Rahul Patel. This Benchmark includes:  

  • Approximately 20 recommendations per the request of the Election Community
  • Profiles from our Windows 10 Benchmark were combined to create one EMS Gateway Profile

Download the CIS Microsoft Windows 10 EMS Gateway Benchmark. CIS SecureSuite Members can log into CIS WorkBench to download other formats and related resources.

CIS Microsoft Windows Server 2022 Benchmark v1.0.0

A lot of effort has gone into analyzing content for this new Benchmark. A huge thank you to the Windows Community and Windows Team for making this happen. Special thanks to Haemish Edgerton. Here is a brief glimpse of the work that was done:        

  • Moved and renamed several sections due to updated ADMX templates
  • Analyzed 50+ new features, capabilities, GPOs, and services
  • Compared Server 2019 vs. Server 2022 for similarities and differences      
  • Compared Windows 11 vs. Windows 10 for similarities and differences

Download the CIS Microsoft Windows Server 2022 Benchmark. CIS SecureSuite Members can log into CIS WorkBench to download other formats and related resources.

CIS Microsoft Windows 11 Enterprise Benchmark v1.1.0

A lot of effort has gone into analyzing content for this new Benchmark. A huge thank you to the Windows Community and Windows Team for making this happen. Special thanks to Haemish Edgerton. Here is a brief glimpse of the work that was done:        

  • Moved/renamed several sections due to updated ADMX templates
  • Analyzed over 50 new features, capabilities, GPOs, and services
  • Compared Server 2019 vs. Server 2022 for similarities/differences 
  • Compared Windows 11 vs. Windows 10 for similarities/differences

Download the CIS Microsoft Windows 11 Enterprise Benchmark v1.1.0. CIS SecureSuite Members can log into CIS WorkBench to download other formats and related resources.

CIS Microsoft Windows 10 Enterprise Benchmark v1.12.0

There was a lot of effort from the Windows Community and Windows Team to update the content of this Benchmark. Special thanks to Haemish Edgerton. The full changelog is included at the end of both the PDF and DOC versions for download. Here is a brief glimpse of what was done to improve the value of this Benchmark:

  • Moved, added, and renamed several sections due to updated ADMX templates
  • Added 19 new settings
  • Updated five settings
  • Moved six settings
  • Renamed one setting

Download the CIS Microsoft Windows 10 Enterprise Benchmark v1.12.0. CIS SecureSuite Members can log into CIS WorkBench to download other formats and related resources.

CIS Microsoft 365 Foundations Benchmark v1.4.0

A huge thank you to the CIS Microsoft 365 Community for putting a lot of effort into analyzing and adding content to make this Benchmark happen. Special thanks to Viktor Gazdag, Jason Inks, Cody McLees, and Wacey Lanier. Here are some highlights of work that was done:

  • New recommendations added
  • Audit and remediation improvements

Download the CIS Microsoft 365 Foundations Benchmark. CIS SecureSuite Members can log into CIS WorkBench to download other formats and related resources.

CIS Kubernetes V1.23 Benchmark

Thanks to the entire CIS Kubernetes Community for your involvement and excellent support of this Benchmark. Special thanks to Rory McCune and Mark Larinde for their contributions to this project. Here are some highlights of work that was done:

  • The latest Kubernetes release (V1.23)
  • The deprecation of Pod Security Policies (PSPs)
  • Changes to the default configuration 

Download the CIS Kubernetes V1.23 Benchmark. CIS SecureSuite Members can log into CIS WorkBench to download other formats and related resources.

 

CIS Red Hat Enterprise Linux 8 Benchmark v2.0.0

 
A lot of effort has gone into analyzing and adding content to this Benchmark. A huge thank you to the CIS Red Hat and Linux Community for making this Benchmark happen. Special thanks to Martinus Nel for his extensive work in rewriting and testing the audited recommendations. Here are some highlights of work that was done:
  • Major rewrite of all audited recommendations
  • Rewrite and reorganization of Logging section
  • Expanded coverage for journalsd
Download the CIS Red Hat Enterprise Linux 8 Benchmark v2.0.0. CIS SecureSuite Members can log into CIS WorkBench to download other formats and related resources.
 

CIS CentOS Linux 8 Benchmark v2.0.0

A lot of effort has gone into analyzing and adding content to this Benchmark. A huge thank you to the CIS CentOS and Linux Community for making this Benchmark happen. Special thanks to Martinus Nel for his extensive work in rewriting and testing the audited recommendations. Here are some highlights of work that was done:

  • Major rewrite of all audited recommendations
  • Rewrite and reorganization of Logging section
  • Expanded coverage for journalsd
Download the CIS CentOS Linux 8 Benchmark v2.0.0. Please note that this is the final release of this Benchmark. CIS SecureSuite Members can log into CIS WorkBench to download other formats and related resources.
 

CIS SUSE Linux Enterprise Server 11 Benchmark v2.1.1

A lot of effort has gone into analyzing and adding content to this Benchmark. Here are some highlights of work that was done:
  • This is the terminal bugfix release for SUSE 11
  • SUSE 11 ends Long Term Support on March 31, 2022
A huge thank you to the CIS SUSE and Linux Community for making this Benchmark happen
Download the CIS SUSE Linux Enterprise Server 11 Benchmark v2.1.1. CIS SecureSuite Members can log into CIS WorkBench to download other formats and related resources.
 
 
  

CIS_Benchmarks_Community

Get involved by helping us develop content, review recommendations, and test CIS Benchmarks. Join a community today! We're looking for contributors for the following technologies:
  • Google Cloud
  • Palo Alto 
  • IBM AIX
  • Cisco 
  • Kubernetes
  • Docker 
  • Google Android 
Reach out to us at [email protected]. You can also learn more on the CIS Benchmarks Community page.