Listing CIS Benchmarks in a Host Scan

View the results of CIS benchmark testing on a specific Compute instance.

  • The Center for Internet Security (CIS) publishes best practices for devices and operating systems, which result from the collaboration of cybersecurity professionals and subject matter experts. The Vulnerability Scanning service checks hosts for compliance with the section 5 (Access, Authentication, and Authorization) benchmarks defined for Distribution Independent Linux.

    1. Open the navigation menu and click Identity & Security. Under Scanning, click Scanning Reports.
    2. Select the compartment in which you created the target.
    3. Click the Hosts tab if not already selected.
    4. (Optional) Select dates in Scan start date and Scan end date.

      By default, only the most recent scan reports are displayed. To view older reports, choose specific start and end dates.

      Or, click Scan start date and click either Past 7 Days or Past 30 Days.

      Click Reset at any time to set the risk level and date ranges back to the default values.

  • Use the oci vulnerability-scanning host scan result cis-benchmark list command and required parameters to retrieve a list of host CIS benchmark scan results in a compartment:

    oci vulnerability-scanning host scan result cis-benchmark list [OPTIONS]

    For a complete list of flags and variable options for CLI commands, see the Command Line Reference.

  • Run the ListHostCisBenchmarkScanResults operation to retrieve a list of host CIS benchmark scan results in a compartment.