Restrict access to Tomcat configuration directory
Skills in this repository
CyberStrikeus/CyberStrike - Page 160
SkillsMP has collected 7,442 skills from CyberStrikeus/CyberStrike. Open a skill to review its source and details.
CyberStrikeus/CyberStrikeShowing 40 of 7,442 collected skills.
Restrict access to Tomcat logs directory
Restrict access to Tomcat temp directory
Restrict access to Tomcat binaries directory
Restrict access to Tomcat web application directory
Restrict access to Tomcat catalina.properties
Restrict access to Tomcat catalina.policy
Use secure Realms
Use LockOut Realms
Setup Client-cert Authentication
Ensure SSLEnabled is set to True for Sensitive Connectors
Ensure scheme is set accurately
Ensure secure is set to true only for SSL-enabled Connectors
Ensure 'sslProtocol' is Configured Correctly for Secure Connectors
Ensure That Corporate Login Credentials Are Used
Ensure KMS Encryption Keys Are Rotated Within a Period of 90 Days
Ensure That Separation of Duties Is Enforced While Assigning KMS Related Roles to Users
Ensure API Keys Only Exist for Active Services
Ensure API Keys Are Restricted To Use by Only Specified Hosts and Apps
Ensure API Keys Are Restricted to Only APIs That Application Needs Access
Ensure API Keys Are Rotated Every 90 Days
Ensure Essential Contacts is Configured for Organization
Ensure Secrets are Not Stored in Cloud Functions Environment Variables by Using Secret Manager
Ensure That Multi-Factor Authentication is Enabled for All Non-Service Accounts
Ensure That Security Key Enforcement is Enabled for All Admin Accounts
Ensure That There Are Only GCP-Managed Service Account Keys for Each Service Account
Ensure That Service Account Has No Admin Privileges
Ensure That IAM Users Are Not Assigned the Service Account User or Service Account Token Creator Roles at Project Level
Ensure User-Managed/External Keys for Service Accounts Are Rotated Every 90 Days or Fewer
Ensure That Separation of Duties Is Enforced While Assigning Service Account Related Roles to Users
Ensure That Cloud KMS Cryptokeys Are Not Anonymously or Publicly Accessible
Ensure That Cloud Audit Logging Is Configured Properly
Ensure That the Log Metric Filter and Alerts Exist for Cloud Storage IAM Permission Changes
Ensure That the Log Metric Filter and Alerts Exist for SQL Instance Configuration Changes
Ensure That Cloud DNS Logging Is Enabled for All VPC Networks
Ensure Cloud Asset Inventory Is Enabled
Ensure 'Access Transparency' is 'Enabled'
Ensure 'Access Approval' is 'Enabled'
Ensure Logging is enabled for HTTP(S) Load Balancer
Ensure That Sinks Are Configured for All Log Entries