Listing CIS Benchmarks in a Host Scan

View the results of CIS benchmark testing on a specific Compute instance.

  • The Center for Internet Security (CIS) publishes best practices for devices and operating systems, which result from the collaboration of cybersecurity professionals and subject matter experts. The Vulnerability Scanning service checks hosts for compliance with the section 5 (Access, Authentication, and Authorization) benchmarks defined for Distribution Independent Linux.

    1. On the Scanning reports list page, select the scan that you want to work with. If you need help finding the list page or the scan, see Listing Host Scans.
    2. (Optional) Select dates in Scan start date and Scan end date.

      By default, only the most recent scan reports are displayed. To view older reports, select specific start and end dates.

      Or, select Scan start date and select either Past 7 Days or Past 30 Days.

      Select Reset at any time to set the risk level and date ranges back to the default values.

  • Use the oci vulnerability-scanning host scan result cis-benchmark list command and required parameters to retrieve a list of host CIS benchmark scan results in a compartment:

    oci vulnerability-scanning host scan result cis-benchmark list [OPTIONS]

    For a complete list of flags and variable options for CLI commands, see the Command Line Reference.

  • Run the ListHostCisBenchmarkScanResults operation to retrieve a list of host CIS benchmark scan results in a compartment.