Skip to content

Content Library

Security content for validation and hardening across platforms and compliance standards.

83 items79 validation4 hardening
Showing 83 of 83 items

AWS CIS

active
CIS

AWS CIS Foundations security validation

InSpec
v1.0.0
Amazon Web Services

AWS MSQL 2014 STIG

active
STIG

AWS RDS Microsoft SQL 2014 Server STIG Instance

InSpec
v1.0.0
Amazon Web Services

AWS RDS Best Practices Benchmark

active
Vendor

Validates AWS RDS configuration against vendor best practices

InSpec
v1.0.0
Amazon Web Services

AWS RDS CIS

active
CIS

AWS RDS Infrastructure CIS security validation

InSpec
v1.0.0
Amazon Web Services

AWS RDS MySQL 5.7 CIS

active
CIS

AWS RDS MySQL Enterprise Edition 5.7 CIS security validation

InSpec
v1.0.0
MySQL 5.7

AWS RDS Oracle Database 12c STIG

active
STIG

AWS RDS Oracle Database 12c STIG

InSpec
v1.0.0
Oracle Database 12

AWS RDS PostgreSQL 10+ STIG

active
STIG

AWS RDS PostgreSQL 10+ STIG

InSpec
v1.0.0
PostgreSQL 10

AWS RDS PostgreSQL 9.x STIG

active
STIG

AWS RDS Crunchy Data PostgreSQL 9.x STIG

InSpec
v1.0.0
PostgreSQL 9

AWS S3

active
Vendor

Validates AWS S3 buckets against security best practices

InSpec
v1.0.0
Amazon Web Services

AWS S3 Best Practices Benchmark

active
Vendor

Validates AWS S3 bucket security according to best practices including encryption, access policies, and logging.

InSpec
vn/a
Amazon Web Services

AWS S3 Best Practices Benchmark

active
Vendor

Validates AWS S3 bucket configuration against vendor best practices

InSpec
v1.0.0
Amazon Web Services

AWS S3 Security

active
CIS

Validates AWS S3 bucket security configuration and access controls

InSpec
v1.0.0
Amazon Web Services

Apache HTTP Server SRG-Ready

draft
STIG-Ready

Validates Apache HTTP Server configurations against DoD SRG requirements for baseline security controls.

InSpec
v1.0.0
Apache HTTP Server

Apache Server 2.2 STIG

active
STIG

Apache Server 2.2 STIG

InSpec
v1.0.0
Apache HTTP Server

Apache Server 2.4x STIG

active
STIG

Apache Server 2.4x STIG

InSpec
v1.0.0
Apache HTTP Server

Apache Site 2.2 STIG

active
STIG

Apache Site 2.2 STIG

InSpec
v1.0.0
Apache HTTP Server

Apache Site 2.4x STIG

active
STIG

Apache Site 2.4x STIG

InSpec
v1.0.0
Apache HTTP Server

Apache Tomcat 9.x STIG

active
STIG

Apache Tomcat 9.x STIG

InSpec
v1.0.0
Apache Tomcat

Apache Web Server Hardening

draft

Ansible playbook for hardening Apache web server configurations according to security best practices.

Ansible
v1.0.0
Apache HTTP Server

Azure Security Benchmark

beta

Validates Microsoft Azure resources against security best practices

InSpec
v1.0.0
Microsoft Azure

Docker CE CIS

active
CIS

Validates Docker Community Edition installations against CIS Docker Benchmark security requirements

InSpec
v1.1.0
Docker

Docker CIS Hardening

active

Ansible playbook for hardening Docker CE configurations according to CIS Docker Benchmark.

Ansible
v1.0.0
Docker

Docker CIS Hardening Chef

active

Chef cookbook for hardening Docker CE configurations according to CIS Docker Benchmark.

Chef
v1.0.0
Docker

GCP CIS Benchmark

active

Validates Google Cloud Platform resources against CIS benchmarks for security and compliance

InSpec
v1.2.0
Google Cloud Platform

GCP PCI-DSS 3.2.1

active
PCI-DSS

Validates GCP infrastructure against PCI-DSS 3.2.1 compliance requirements for payment card data security.

InSpec
v3.2.1
Google Cloud Platform

GKE CIS Benchmark

active

Google Kubernetes Engine CIS Benchmark

InSpec
v1.1.0

GitHub Security

draft

Validates GitHub organization and repository security controls

InSpec
v1.0.0

IIS 8.5 Server STIG

active
STIG

Microsoft IIS 8.5 Server STIG

InSpec
v1.0.0
Microsoft IIS

IIS 8.5 Site STIG

active
STIG

Microsoft IIS 8.5 Site STIG

InSpec
v1.0.0
Microsoft IIS

JRE 7 STIG

active
STIG

Oracle Java Runtime Environment 7 Unix STIG

InSpec
v1.0.0

JRE 8 STIG

active
STIG

Oracle Java Runtime Environment 8 Unix STIG

InSpec
v1.0.0

K3s Cluster STIG

active
STIG

K3s Cluster STIG

InSpec
v1.0.0

K3s Node STIG

active
STIG

K3s Node STIG

InSpec
v1.0.0

Kubernetes CIS

beta
CIS

Validates Kubernetes clusters against CIS Kubernetes Benchmark to ensure secure configuration

InSpec
v1.1.0
Kubernetes

Kubernetes CIS Hardening

draft

Terraform configuration for deploying a hardened Kubernetes cluster according to CIS Kubernetes Benchmark.

Terraform
v1.0.0
Kubernetes

Kubernetes Cluster STIG

active
STIG

Kubernetes Cluster STIG

InSpec
v1.0.0
Kubernetes

Kubernetes Node STIG

active
STIG

Kubernetes Node STIG

InSpec
v1.0.0
Kubernetes

MSQL 2014 Database STIG

active
STIG

Microsoft SQL Server 2014 Database STIG

InSpec
v1.0.0

MSQL 2014 Instance STIG

active
STIG

Microsoft SQL Server 2014 Database STIG

InSpec
v1.0.0

MongoDB STIG

active
STIG

MongoDB STIG

InSpec
v1.0.0
MongoDB

NGINX SRG-Ready

active
STIG-Ready

Validates NGINX web server configurations against DoD SRG requirements for enhanced security posture.

InSpec
v1.0.0
NGINX

NGINX STIG Ready Baseline

active
STIG

NGINX STIG Ready Baseline

InSpec
v1.0.0
NGINX

Oracle Database 12c STIG

active
STIG

Oracle Database 12c STIG

InSpec
v1.0.0
Oracle Database 12

Oracle Database 19c CIS

active

Oracle Database 19c CIS Benchmark validation

InSpec
v1.0.0
Oracle Database 19

Oracle MySQL 5.7 CIS

active

Oracle MySQL Enterprise Edition 5.7 CIS security validation

InSpec
v1.0.0
MySQL 5.7

Oracle MySQL 8.0 STIG

active
STIG

Oracle MySQL 8.0 STIG Baseline

InSpec
v1.0.0
MySQL 8.0

PostgreSQL 10+ STIG

active
STIG

PostgreSQL 10+ STIG

InSpec
v1.0.0
PostgreSQL 10

PostgreSQL 9.x STIG

active
STIG

Crunchy Data PostgreSQL 9.x STIG

InSpec
v1.0.0
PostgreSQL 9

Red Hat 6 STIG

active
STIG

Red Hat 6 STIG

InSpec
v1.0.0
Red Hat Enterprise Linux 6

Red Hat 7 STIG

active
STIG

Red Hat 7 STIG

InSpec
v1.0.0
Red Hat Enterprise Linux 7

Red Hat 8 STIG

active
STIG

Red Hat 8 STIG

InSpec
v1.0.0
Red Hat Enterprise Linux 8

Red Hat CVE Scan

active

Scans Red Hat Enterprise Linux systems for known CVE vulnerabilities

InSpec
v1.0.0
Red Hat Enterprise Linux

Red Hat Jboss EAP 6.3 STIG

active
STIG

Red Hat Jboss Enterprise Application Server 6.3 STIG

InSpec
v1.0.0
Red Hat Enterprise Linux 6

RedHat Enterprise Linux 9

active
STIG

InSpec Profile for RHEL9

InSpec
v2.4.0
Red Hat Enterprise Linux 9

Tomcat 7 CIS

beta
CIS

Apache Tomcat 7 CIS security validation (Beta)

InSpec
v1.0.0
Apache Tomcat

Tomcat 8 CIS

beta
CIS

Apache Tomcat 8 CIS security validation (Beta)

InSpec
v1.0.0
Apache Tomcat

Ubuntu 16.04 STIG

active
STIG

Canonical Ubuntu 16.04 STIG

InSpec
v1.0.0
Ubuntu 16.04

Ubuntu 20.04 STIG

active
STIG

Canonical Ubuntu 20.04 STIG

InSpec
v1.0.0
Ubuntu 20.04

VMware Aria Automation 8.x STIG

active
STIG

VMware Aria Automation 8.x STIG Readiness Guide Chef InSpec Profile

InSpec
v1.0.0

VMware Aria Operations 8.x STIG

active
STIG

VMware Aria Operations 8.x STIG Readiness Guide Chef InSpec Profile

InSpec
v1.0.0

VMware Cloud Director 10.4 STIG

active
STIG

VMware Cloud Director 10.4 STIG Readiness Guide Chef InSpec Profile

InSpec
v1.0.0

VMware Cloud Foundation 4.5 STIG

active
STIG

VMware Cloud Foundation 4.5 STIG Readiness Guide Chef InSpec Profile

InSpec
v1.0.0

VMware Cloud Foundation 5.0 STIG

active
STIG

VMware Cloud Foundation 5.0 STIG Readiness Guide Chef InSpec Profile

InSpec
v1.0.0

VMware ESXI 6.5 STIG

active
STIG

VMware ESXI 6.5 STIG

InSpec
v1.0.0

VMware ESXI 6.7 STIG

active
STIG

VMware ESXI 6.7 STIG

InSpec
v1.0.0

VMware Horizon 8.0 STIG

active
STIG

VMware Horizon 8.0 STIG Readiness Guide Chef InSpec Profile

InSpec
v1.0.0

VMware Identity Manager 3.3.x STIG

active
STIG

VMware Identity Manager 3.3.x STIG Readiness Guide Chef InSpec Profile

InSpec
v1.0.0

VMware NSX 4.x STIG

active
STIG

VMware NSX 4.x STIG Readiness Guide Chef InSpec Profile

InSpec
v1.0.0

VMware NSX-T 3.x STIG

active
STIG

VMware NSX-T 3.x STIG Chef InSpec Profile

InSpec
v1.0.0

VMware Photon OS 3.0 STIG

active
STIG

VMware Photon OS 3.0 STIG Readiness Guide Chef InSpec Profile

InSpec
v1.0.0

VMware Photon OS 4.0 STIG

active
STIG

VMware Photon OS 4.0 STIG Readiness Guide Chef InSpec Profile

InSpec
v1.0.0

VMware Photon OS 5.0 STIG

active
STIG

VMware Photon OS 5.0 STIG Readiness Guide Chef InSpec Profile

InSpec
v1.0.0

VMware VCSA 6.7 STIG

active
STIG

VMware vCenter Server Appliance 6.7 STIG

InSpec
v1.0.0

VMware VCSA 7.0 STIG Readiness Guide

active
STIG

VMware vCenter Service Appliance version 7.0 STIG Readiness Guide

InSpec
v1.0.0

VMware vSphere 7.0 STIG

active
STIG

VMware vSphere 7.0 STIG Chef InSpec Profile

InSpec
v1.0.0

VMware vSphere 7.0 STIG Readiness Guide

active
STIG

VMware vSphere(ESXi,vCenter,VMs) 7.0 STIG Readiness Guide

InSpec
v1.0.0

VMware vSphere VM 6.7 STIG

active
STIG

VMware vSphere Virtual Machines version 6.7 STIG

InSpec
v1.0.0

VMware vSphere vCenter 7.0 STIG

active
STIG

VMware vSphere vCenter Appliance 7.0 STIG Chef InSpec Profile

InSpec
v1.0.0

VMware vSphere vCenter 8.0 STIG

active
STIG

VMware vSphere vCenter Appliance 8.0 STIG Readiness Guide Chef InSpec Profile

InSpec
v1.0.0

Windows 10 STIG

active
STIG

Microsoft Windows 10 STIG v1r19

InSpec
v1.0.0
Windows 10

Windows 2012 STIG

active
STIG

Microsoft Windows 2012r2 Member Server STIG

InSpec
v1.0.0
Windows 2012

Windows 2016 STIG

active
STIG

Microsoft Windows Server 2016 STIG

InSpec
v1.0.0
Windows 2016

Windows 2019 STIG

active
STIG

Microsoft Windows Server 2019 STIG

InSpec
v1.0.0
Windows 2019

Released under the Apache 2.0 License.