API → UI component mappings · 90,813 documents
| ID | Document | Source |
|---|---|---|
| 40aa2162f8cffac9 | SCA Check 15859: Ensure 'Disable all apps from Microsoft Store' is set to 'Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0005'] Techniques: ['T1036', 'T1564']… | wazuh-sca |
| 1eaaa46acafb4d7c | SCA Check 15861: Ensure 'Turn off Automatic Download and Install of updates' is set to 'Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0043', 'TA0007']… | wazuh-sca |
| af2b582cce6d839a | SCA Check 15862: Ensure 'Turn off the offer to update to the latest version of Windows' is set to 'Enabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0001', 'TA0011']… | wazuh-sca |
| 85560f4b89eb0f43 | SCA Check 15863: Ensure 'Turn off the Store application' is set to 'Enabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0005'] Techniques: ['T1036', 'T1564'] This… | wazuh-sca |
| acc599c2a50c987f | SCA Check 15864: Ensure 'Allow widgets' is set to 'Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0005'] Techniques: ['T1036', 'T1564'] This policy setting… | wazuh-sca |
| b1048eda5aac12b3 | SCA Check 15865: Ensure 'Configure Windows Defender SmartScreen' is set to 'Enabled: Warn and prevent bypass'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0002',… | wazuh-sca |
| c19c980ff35ed367 | SCA Check 15868: Ensure 'Enables or disables Windows Game Recording and Broadcasting' is set to 'Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0005']… | wazuh-sca |
| ae0d0f5d161488ab | SCA Check 15869: Ensure 'Allow suggested apps in Windows Ink Workspace' is set to 'Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0001', 'TA0011'] Techniques:… | wazuh-sca |
| 82cfb62595c8f613 | SCA Check 15969: Ensure 'Allow Windows Ink Workspace' is set to 'Enabled: On, but disallow access above lock' OR 'Enabled: Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0… | wazuh-sca |
| 94972bed93280ff1 | SCA Check 15871: Ensure 'Allow user control over installs' is set to 'Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0007'] Techniques: ['T1595', 'T1046',… | wazuh-sca |
| f8125039ec31c9cb | SCA Check 15872: Ensure 'Always install with elevated privileges' is set to 'Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0006', 'TA0003'] Techniques:… | wazuh-sca |
| 76e6119636adb21f | SCA Check 15873: Ensure 'Prevent Internet Explorer security prompt for Windows Installer scripts' is set to 'Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics:… | wazuh-sca |
| ead05ff972681a08 | SCA Check 15874: Ensure 'Sign-in and lock last interactive user automatically after a restart' is set to 'Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0006',… | wazuh-sca |
| 6650d7c5ba618991 | SCA Check 15875: Ensure 'Turn on PowerShell Script Block Logging' is set to 'Enabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0005', 'TA0006', 'TA0007'] Techniques:… | wazuh-sca |
| 81d035145772baf3 | SCA Check 15970: Ensure 'Turn on PowerShell Transcription' is set to 'Enabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0005', 'TA0006', 'TA0007'] Techniques:… | wazuh-sca |
| bd2834e6a674f22f | SCA Check 15880: Ensure 'Allow Basic authentication' is set to 'Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0009', 'TA0010'] Techniques: ['T1005', 'T1025',… | wazuh-sca |
| c922a80da51847b5 | SCA Check 15882: Ensure 'Allow unencrypted traffic' is set to 'Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0009', 'TA0010'] Techniques: ['T1005', 'T1025',… | wazuh-sca |
| 9492b76eae278a3f | SCA Check 15879: Ensure 'Disallow Digest authentication' is set to 'Enabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0009', 'TA0010'] Techniques: ['T1005', 'T1025',… | wazuh-sca |
| b0c6a6fe1f584d15 | SCA Check 15881: Ensure 'Allow remote server management through WinRM' is set to 'Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0005'] Techniques: ['T1036',… | wazuh-sca |
| 0938cf05c5be1406 | SCA Check 15883: Ensure 'Disallow WinRM from storing RunAs credentials' is set to 'Enabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0004', 'TA0005'] Techniques:… | wazuh-sca |
| c08aafbc8bad728d | SCA Check 15884: Ensure 'Allow Remote Shell Access' is set to 'Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0005'] Techniques: ['T1036', 'T1564'] This policy… | wazuh-sca |
| 9fc2cbbe24606c01 | SCA Check 15885: Ensure 'Allow clipboard sharing with Windows Sandbox' is set to 'Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0005'] Techniques: ['T1036',… | wazuh-sca |
| 67331c76e1e0839c | SCA Check 15886: Ensure 'Allow networking in Windows Sandbox' is set to 'Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0005'] Techniques: ['T1036', 'T1564']… | wazuh-sca |
| 76b3361bc9ffdfe5 | SCA Check 15887: Ensure 'Prevent users from modifying settings' is set to 'Enabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0002', 'TA0005'] Techniques: ['T1562',… | wazuh-sca |
| 6db14b21f047dd18 | SCA Check 15888: Ensure 'No auto-restart with logged on users for scheduled automatic updates installations' is set to 'Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0… | wazuh-sca |
| 8a1473ab2868d4c7 | SCA Check 15889: Ensure 'Configure Automatic Updates' is set to 'Enabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0043', 'TA0007'] Techniques: ['T1595', 'T1190',… | wazuh-sca |
| ca362ee5459f1775 | SCA Check 15890: Ensure 'Configure Automatic Updates: Scheduled install day' is set to '0 - Every day'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0043', 'TA0007']… | wazuh-sca |
| 426b30e4f1c07661 | SCA Check 15971: Ensure 'Remove access to “Pause updates” feature' is set to 'Enabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0043', 'TA0007'] Techniques:… | wazuh-sca |
| eeacc678dbb4b56b | SCA Check 15892: Ensure 'Manage preview builds' is set to 'Disabled'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0005'] Techniques: ['T1036', 'T1564'] This policy… | wazuh-sca |
| 13a067af6b3bb86c | SCA Check 15893: Ensure 'Select when Preview Builds and Feature Updates are received' is set to 'Enabled: 180 or more days'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics:… | wazuh-sca |
| 5a2b1de0449d713f | SCA Check 15894: Ensure 'Select when Quality Updates are received' is set to 'Enabled: 0 days'. Policy: CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0 Tactics: ['TA0043', 'TA0007'] Techniques:… | wazuh-sca |
| 967f37a21293deb5 | SCA Check 15000: Ensure 'Enforce password history' is set to '24 or more password(s)'. Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0 Tactics: ['TA0006', 'TA0003'] Techniques:… | wazuh-sca |
| 23b198299ac257a9 | SCA Check 15001: Ensure 'Maximum password age' is set to '365 or fewer days, but not 0'. Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0 Tactics: ['TA0006', 'TA0003'] Techniques:… | wazuh-sca |
| 738138bdd2b9c227 | SCA Check 15002: Ensure 'Minimum password age' is set to '1 or more day(s)'. Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0 Tactics: ['TA0006', 'TA0003'] Techniques: ['T1078', 'T1098',… | wazuh-sca |
| 9de86a7f5e78796a | SCA Check 15003: Ensure 'Minimum password length' is set to '14 or more character(s)'. Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0 Tactics: ['TA0006', 'TA0003'] Techniques:… | wazuh-sca |
| ebf1e7aa46c5976b | SCA Check 15004: Ensure 'Account lockout duration' is set to '15 or more minute(s)'. Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0 Tactics: ['TA0006', 'TA0003'] Techniques: ['T1078',… | wazuh-sca |
| b297e91024a7a1e9 | SCA Check 15005: Ensure 'Account lockout threshold' is set to '5 or fewer invalid logon attempt(s), but not 0'. Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0 Tactics: ['TA0006',… | wazuh-sca |
| 22414125e816c8da | SCA Check 15006: Ensure 'Reset account lockout counter after' is set to '15 or more minute(s)'. Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0 Tactics: ['TA0006', 'TA0003'] Techniques:… | wazuh-sca |
| 75fe834205c9e1fa | SCA Check 15007: Ensure 'Accounts: Block Microsoft accounts' is set to 'Users can't add or log on with Microsoft accounts'. Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0 Tactics:… | wazuh-sca |
| 7141426fa62ed447 | SCA Check 15008: Ensure 'Accounts: Guest account status' is set to 'Disabled' (MS only). Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0 Tactics: ['TA0005'] Techniques: ['T1036',… | wazuh-sca |
| 44921df1a4214ba2 | SCA Check 15009: Ensure 'Accounts: Limit local account use of blank passwords to console logon only' is set to 'Enabled'. Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0 Tactics:… | wazuh-sca |
| 35d1ae224602f2be | SCA Check 15010: Configure 'Accounts: Rename administrator account'. Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0 Tactics: ['TA0005'] Techniques: ['T1036', 'T1564'] The built-in… | wazuh-sca |
| 15a43864f103d52d | SCA Check 15011: Configure 'Accounts: Rename guest account'. Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0 Tactics: ['TA0005'] Techniques: ['T1036', 'T1564'] The built-in local guest… | wazuh-sca |
| d87443e487e42978 | SCA Check 15012: Ensure 'Audit: Force audit policy subcategory settings (Windows Vista or later) to override audit policy category settings' is set to 'Enabled'. Policy: CIS Microsoft Windows Server… | wazuh-sca |
| 557b97b58547891b | SCA Check 15013: Ensure 'Audit: Shut down system immediately if unable to log security audits' is set to 'Disabled'. Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0 Tactics: ['TA0005',… | wazuh-sca |
| 914969bb2d296ea3 | SCA Check 15014: Ensure 'Devices: Allowed to format and eject removable media' is set to 'Administrators'. Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0 Tactics: ['TA0009', 'TA0010']… | wazuh-sca |
| 214e9eed459def1d | SCA Check 15015: Ensure 'Devices: Prevent users from installing printer drivers' is set to 'Enabled'. Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0 Tactics: ['TA0007'] Techniques:… | wazuh-sca |
| a7c476b49aeb0190 | SCA Check 15016: Ensure 'Domain controller: Allow server operators to schedule tasks' is set to 'Disabled' (DC only). Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0 Tactics: ['TA0007']… | wazuh-sca |
| 5784b6e124c47c08 | SCA Check 15017: Ensure 'Domain controller: Allow vulnerable Netlogon secure channel connections' is set to 'Not Configured' (DC Only). Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0… | wazuh-sca |
| 17d978301a37dd4b | SCA Check 15018: Ensure 'Domain controller: LDAP server channel binding token requirements' is set to 'Always' (DC Only). Policy: CIS Microsoft Windows Server 2012 R2 Benchmark v3.0.0 Tactics:… | wazuh-sca |