精选 Skills 索引(第 161 页)
按质量分排序的前 8,000 个 Skills,每个都有可收录的独立页面。需要全库 15.8 万条检索时,请使用 Skills 目录。
- cis-aws-euc-2.6
Ensure Web Access to Workspaces is Disabled
- cis-aws-euc-2.7
Ensure access is limited to trusted devices
- cis-aws-euc-2.8
Ensure the default IP access control group is disassociated
- cis-aws-euc-2.9
Ensure CloudWatch is set up for WorkSpaces
- cis-aws-euc-4.1
Ensure Administrators of WorkDocs is defined using IAM
- cis-aws-euc-4.3
Ensure Workdocs access is limited to a range of allowable IP addresses
- cis-aws-euc-4.4
Utilize site wide activity feed for monitoring
- cis-aws-euc-4.5
Ensure new users can only be invited from allowed domains
- cis-aws-euc-4.6
Ensure only specific users are allowed to invite external users
- cis-aws-euc-4.7
Ensure publicly shareable links is not allowed in WorkDocs
- cis-aws-euc-4.8
Ensure any user that has not accessed WorkDocs in 30 days is set to inactive
- cis-aws-euc-5.1
Ensure AppStream is utilizing its own virtual private cloud (VPC)
- cis-aws-euc-5.2
Ensure a VPC Endpoint is set for AppStream
- cis-aws-euc-5.3
Ensure maximum session duration is no longer than 10 hours
- cis-aws-euc-5.4
Ensure session disconnect timeout is set to 5 minutes or less
- cis-aws-euc-5.5
Ensure session Idle disconnect timeout is set to 10 minutes or less
- cis-aws-euc-5.6
Ensure internet access is granted and managed through your VPC
- cis-aws-euc-5.7
Ensure Operating system updates are applied to your base image every 30 days
- cis-aws-foundations-2.1.1
Ensure centralized root access in AWS Organizations
- cis-aws-foundations-2.1.2
Ensure authorization guardrails for all AWS Organization accounts
- cis-aws-foundations-2.1.3
Ensure Organizations management account is not used for workloads
- cis-aws-foundations-2.1.4
Ensure Organizational Units are structured by environment and sensitivity
- cis-aws-foundations-2.1.5
Ensure delegated admin manages AWS Organizations policies
- cis-aws-foundations-2.1.6
Ensure delegated admins manage AWS Organizations-integrated services
- cis-aws-foundations-2.10
Ensure multi-factor authentication (MFA) is enabled for all IAM users that have a console password
- cis-aws-foundations-2.17
Ensure that all expired SSL/TLS certificates stored in AWS IAM are removed
- cis-aws-foundations-2.18
Ensure that IAM External Access Analyzer is enabled for all regions
- cis-aws-foundations-2.19
Ensure IAM users are managed centrally via identity federation or AWS Organizations for multi-account environments
- cis-aws-foundations-2.2
Maintain current AWS account contact details
- cis-aws-foundations-2.20
Ensure access to AWSCloudShellFullAccess is restricted
- cis-aws-foundations-2.21
Ensure AWS resource policies do not allow unrestricted access using "Principal": "*"
- cis-aws-foundations-2.3
Ensure security contact information is registered
- cis-aws-foundations-2.4
Ensure no 'root' user account access key exists
- cis-aws-foundations-2.5
Ensure MFA is enabled for the 'root' user account
- cis-aws-foundations-2.6
Ensure hardware MFA is enabled for the 'root' user account
- cis-aws-foundations-2.7
Eliminate use of the 'root' user for administrative and daily tasks
- cis-aws-foundations-2.8
Ensure IAM password policy requires minimum length of 14 or greater
- cis-aws-foundations-2.9
Ensure IAM password policy prevents password reuse
- cis-aws-foundations-3.1.1
Ensure S3 Bucket Policy is set to deny HTTP requests
- cis-aws-foundations-3.1.2
Ensure MFA Delete is enabled on S3 buckets