Listing CIS Benchmarks in a Host Scan

View the results of CIS benchmark testing on a specific Compute instance.

  • The Center for Internet Security (CIS) publishes best practices for devices and operating systems, which result from the collaboration of cybersecurity professionals and subject matter experts. The Vulnerability Scanning service checks hosts for compliance with the section 5 (Access, Authentication, and Authorization) benchmarks defined for Distribution Independent Linux.

    1. Open the navigation menu and select Identity & Security. Under Scanning, select Scanning Reports.
    2. Select the compartment in which you created the target.
    3. Select the Hosts tab if not already selected.
    4. (Optional) Select dates in Scan start date and Scan end date.

      By default, only the most recent scan reports are displayed. To view older reports, select specific start and end dates.

      Or, select Scan start date and select either Past 7 Days or Past 30 Days.

      Select Reset at any time to set the risk level and date ranges back to the default values.

  • Use the oci vulnerability-scanning host scan result cis-benchmark list command and required parameters to retrieve a list of host CIS benchmark scan results in a compartment:

    oci vulnerability-scanning host scan result cis-benchmark list [OPTIONS]

    For a complete list of flags and variable options for CLI commands, see the Command Line Reference.

  • Run the ListHostCisBenchmarkScanResults operation to retrieve a list of host CIS benchmark scan results in a compartment.