CIS Benchmarks May 2023 Update

CIS-Benchmarks

The following CIS Benchmarks have been updated or released. We've highlighted the major updates below. Each Benchmark includes a full changelog that can be referenced to see all changes made.

New CIS Benchmarks Released in April

New CIS MongoDB 6 Benchmark v1.0.0

Our team has devoted significant time and effort to creating the content of this Benchmark, ensuring it is relevant and valuable to Members. Here's a quick overview:

  • Support and validated CIS-CAT Pro coverage for MongoDB 6 is included
  • Recommendations from MongoDB versions 4 and 5 are included, and some were revised to reflect the MongoDB 6 platform
  • Support for macOS, Windows, and Linux platforms

A huge thank you to the CIS MongoDB Community team for making this Benchmark happen. Special thanks go to Matt Reagan, Vinesh Redkar, and Pralhad Chaskar!

Visit CIS WorkBench here to download other formats and related resources.

CIS Benchmarks Updated in April

CIS Cisco IOS 16 Benchmark v2.0.0

Here are some highlights of the work that was done:

  • Updated and added audit procedures
  • Updated recommendations to reflect new or changed settings
  • Resolved false positives
  • Expanded CIS-CAT coverage

A huge thank you to the CIS Cisco Community for making this Benchmark happen. Special thanks go to Daniel Brown and Manuel Widmer.

Visit CIS WorkBench here to download other formats and related resources.

CIS Cisco IOS 17.x Benchmark v2.0.0

Here are some highlights of the work we did:

  • Updated and added numerous audit procedures
  • Updated recommendations to reflect new or changed settings
  • Resolved false positives
  • Expanded CIS-CAT coverage

A huge thank you to the CIS Cisco Community for making this Benchmark happen. Special thanks go to Daniel Brown and Manuel Widmer.

Visit CIS WorkBench here to download other formats and related resources.

CIS Fortigate Benchmark v1.1.0

Here are some highlights of the work that we did to produce this Benchmark:

  • Updated and added numerous audit procedures
  • Updated recommendations to reflect new or changed settings
  • Re-categorized Manual recommendations to Automated

A huge thank you to the CIS Fortinet Community for making this Benchmark happen. Special thanks go to Mohammed Khalid Babiker Yousif, Kent Wade, Eric Leong, and Dave Barber.

Visit CIS WorkBench here to download other formats and related resources.

CIS Google Kubernetes Engine (GKE) Benchmark v1.4.0

Here are some highlights of the work that we did to produce this Benchmark:

  • Support and validated CIS-CAT coverage for Kubernetes clusters built on versions 1.23, 1.24, and 1.25 is included
  • Updates and edits to address Pod Security
  • Policy removal in Kubernetes v1.25
  • Update to deprecated flags and new methods for auditing Pod Security

A huge thank you goes out to the CIS Kubernetes Community for making this Benchmark happen. Special thanks go to Daniel Burns, Rory MCcune, and the Google (GKE) team.

Visit CIS WorkBench here to download other formats and related resources.

CIS Microsoft 365 Foundations Benchmark v2.0.0

Here are some highlights of the work that we did to produce this Benchmark:

  • Restructured several sections due to changes in the Microsoft 365 Commercial Cloud, including moving, adding, and renaming content
  • Provided new UI guidance to accommodate the introduction of Microsoft Entra
  • Replaced cmdlets from deprecated PowerShell modules with their Microsoft Graph PowerShell equivalent
  • Added 14 new recommendations
  • Updated 37 recommendations
  • Removed the Intune (EndPoint Manager) section, as Intune now has its own dedicated community

A huge thank you to the CIS Microsoft 365 Community team for making this Benchmark happen. Special thanks go to Cody McLees, Brandon Cox, Samuel Emangard, and David Bjurman-Birr.

Visit CIS WorkBench here to download other formats and related resources.

CIS Microsoft Windows Server 2016 Benchmark v2.0.0

Here are some highlights of the work that we did to produce this Benchmark:

  • Analyzed over 80 new settings and services (the biggest release the team has seen!)
  • Added 13 new security settings
  • Updated four settings
  • Removed two settings
  • Moved one setting (section change)
  • Moved, added, and removed sections due to updated ADMX templates

A huge thank you to the CIS Windows Community and Windows team for making this Benchmark happen. Special thanks go to Haemish Edgerton!

Visit CIS WorkBench here to download other formats and related resources.

CIS Microsoft Windows Server 2019 Benchmark v2.0.0

Here's a quick overview of the key improvements we made to update this Benchmark:

  • Analyzed over 80 new settings and services (the biggest release the team has seen!)
  • Added 16 new security settings
  • Updated four settings
  • Removed two settings
  • Moved one setting (section change)
  • Moved, added, and removed sections due to updated ADMX templates

A huge thank you to the CIS Windows Community and Windows team for making this Benchmark happen. Special thanks go to Haemish Edgerton!

Visit CIS WorkBench here to download other formats and related resources.

CIS Microsoft Windows Server 2022 Benchmark v2.0.0

Here are some highlights of the work that we did to produce this Benchmark:

  • Analyzed over 80 new settings and services (the biggest release the team has seen!)
  • Added 20 new security settings
  • Updated four settings
  • Removed one setting
  • Moved one setting (section change)
  • Moved, added, and removed sections due to updated ADMX templates

A huge thank you to the CIS Windows Community and Windows team for making this Benchmark happen. Special thanks go to Haemish Edgerton!

Visit CIS WorkBench here to download other formats and related resources.

 


 

Get involved by helping us develop content, review recommendations, and test CIS Benchmarks. Join a community today! We're looking for contributors for the following technologies:

 
If you're interested, please reach out to us at [email protected]. You can also learn more on the CIS Benchmarks Community page.