PingSentry   |   Discord   |   System32   |   GitHub   |   Free tools
EventSentry
  • Features
    EventSentry v6.0New Features
    Event Log MonitoringSIEM to the core
    Validation Scripts
    Health Monitoring
    Compliance
    ADMonitor
    Reporting
    Log File Monitoring
    Network
    Environment
    Notifications
    Consolidation
    EventSentry

    Why EventSentry?
  • Solutions
    Finance & Banking
    Event Log Monitoring
    Government
    CMMC
    Healthcare
    On-premise SIEM
    Education
    IT Security
    File Integrity (FIM)
    Ransomware
    Account Lockouts
    Solutions Index
  • Downloads
    Download EventSentry
    Admin Assistant
    EventSentry Light
    SysAdmin Tools
    EventSentry Home Lab
    Compliance Validator
    Version History
    Roadmap
  • Support
    Knowledge Base
    How-to Guides
    Documentation
    Video Tutorials
    EventSentry Blog
    Request Support


    EventSentry v6.0.1 Documentation
  • Purchase


    Product Sheet
    Pricing
    Request a quote
    Schedule a demo
    Testimonials
LoginDownload

EventSentry

Validation Scripts

Tag

hipaa-server

Scripts

95



Accounts: Administrator accounts must not be enumerated during elevation

Accounts: Automatic logons must be disabled

Accounts: Built-in Administrator account must be renamed

Accounts: Built-in Guest account must be renamed

Accounts: Deny log on locally user right must be configured to prevent access from highly privileged domain accounts

Accounts: Enable computer and user accounts delegation user right not be assigned to any groups or accounts

Accounts: Enable computer and user accounts to be trusted user right must only be assigned to the Admins group on DCs

Accounts: Must only allow adminis responsible for the member srv, standalone, nondomain system to have Admin rights on system

Auditing: generate security audits user right must only be assigned to Local Service and Network Service

Auditing: Manage auditing and security log user right must only be assigned to the Administrators group

Auditing: System must be configured to audit Account Logon - Credential Validation failures

Auditing: System must be configured to audit Account Logon - Credential Validation successes

Auditing: System must be configured to audit Account Management - Computer Account Management successes

Auditing: System must be configured to audit Account Management - Other Account Management Events successes

Auditing: System must be configured to audit Account Management - Security Group Management successes

Auditing: System must be configured to audit Account Management - User Account Management failures

Auditing: System must be configured to audit Account Management - User Account Management successes

Auditing: System must be configured to audit DS Access - Directory Service Access failures

Auditing: System must be configured to audit DS Access - Directory Service Access successes

Auditing: System must be configured to audit DS Access - Directory Service Changes successes

Auditing: System must be configured to audit Detailed Tracking - Plug and Play Events successes

Auditing: System must be configured to audit Detailed Tracking - Process Creation successes

Auditing: System must be configured to audit Logon/Logoff - Group Membership successes

Auditing: System must be configured to audit Logon/Logoff - Special Logon successes

Auditing: System must be configured to audit Object Access - Other Object Access Events failures

Auditing: System must be configured to audit Object Access - Other Object Access Events successes

Auditing: System must be configured to audit Object Access - Removable Storage failures

Auditing: System must be configured to audit Object Access - Removable Storage successes

Auditing: System must be configured to audit Policy Change - Authentication Policy Change successes

Auditing: System must be configured to audit Policy Change - Authorization Policy Change successes

Auditing: System must be configured to audit System - System Integrity failures

Auditing: System must be configured to audit System - System Integrity successes

Auditing: System must be configured to audit logoff successes

Auditing: System must be configured to audit logon failures

Auditing: System must be configured to audit logon successes

Auditing: Windows must be configured to audit Logon/Logoff - Account Lockout Failures

Auditing: Windows must be configured to audit System - IPsec Driver failures

Auditing: Windows must be configured to audit System - IPsec Driver successes

Compliance: System must be configured to use FIPS-compliant algorithms for encryption, hashing, and signing

Credentials: Access Credential Manager as a trusted caller user right must not be assigned to any groups or accounts

Domain Controller: Add workstations to domain user right must only be assigned to the Administrators group on domain controllers

Domain Controller: Allow log on through RD Services user right must only be assigned to the Adminis group

Domain Controller: Deny access to this computer from the network user right on DC must be configured to prevent unauth access

Domain Controller: Deny log on Remote Desktop Services user right on DCs must be configured to prevent unauthenticated access

Domain Controller: Deny log on as a batch job user right on DCs must be configured to prevent unauthenticated access

Domain Controller: Deny log on as a service user right must be configured to include no accounts or groups (blank)

Domain Controller: Directory data (outside root DSE) of a nonpublic directory must be configured to prevent anonymous access

Domain Controller: Kerberos policy user ticket renewal maximum lifetime must be limited to seven days or less

Domain Controller: Kerberos service ticket maximum lifetime must be limited to 600 minutes or less

Domain Controller: Kerberos user logon restrictions must be enforced

Domain Controller: Kerberos user ticket lifetime must be limited to 10 hours or less

Domain Controller: Must require LDAP access signing

Domain Controller: Network access must be limited to Admins, Authenticated Users, and Enterprise Domain Controllers

Domain Controller: System must be configured for certificate-based authentication for domain controllers

Domain Controller: System must be configured for name-based strong mappings for certificates

Domain Member: Digitally encrypt or sign secure channel data (always) must be set to Enabled

Domain Member: Digitally encrypt secure channel data (when possible) must be set to Enabled

Domain Member: Digitally sign secure channel data (when possible) must be set to Enabled

Domain Member: Domain-joined systems must have a Trusted Platform Module (TPM) enabled and ready for use

FIPS 140: Security Requirements for Cryptographic Modules

File System: Turning off File Explorer heap termination on corruption must be disabled

General: Windows must prevent the display of slide shows on the lock screen

Internet Browser: Basic authentication for RSS feeds over HTTP must not be used

Logon: Allow log on locally user right must only be assigned to the Administrators group

Logon: Smart Card removal option must be configured to Force Logoff or Lock Workstation

Logon: Title for legal banner dialog box must be configured with the appropriate text

Network Access: System must not allow anonymous SID/Name translation

Network Access: System must prevent PKU2U authentication using online identities

Network: System be configured to prevent ICMP redirects from overriding Open Shortest Path First (OSPF)-generated

Network: System must be configured to ignore NetBIOS name release requests except from WINS servers

Privacy: Windows Telemetry must not be set to Full

Remote Desktop: Deny log RDP user on domain-joined servers be configured to prevent access highly privileged domain accountsn

Security: Access this computer from the network must be limited to Admins and Authenticated Users

Security: Act as part of the operating system user right must not be assigned to any groups or accounts

Security: Create a pagefile user right must only be assigned to the Administrators group

Security: Create a token object user right must not be assigned to any groups or accounts

Security: Create permanent shared objects user right must not be assigned to any groups or accounts

Security: Create symbolic links user right must only be assigned to the Administrators group

Security: Deny access to this computer from the network must include required accounts

Security: Deny log on as a batch job user right on Domain Joined members must be configured to prevent unauthenticated access

Security: Deny log on service user right on domain-join srv be configured to prevent access highly privileged domain accounts

Security: Impersonate client after authentication user right only be assigned to Adminis,Service,Local Service,Network Service

Security: Increase scheduling priority: user right must only be assigned to the Administrators group

Security: Load and unload device drivers user right must only be assigned to the Administrators group

Security: Modify firmware environment values user right must only be assigned to the Administrators group

Security: Perform volume maintenance tasks user right must only be assigned to the Administrators group

Security: Profile single process user right must only be assigned to the Administrators group

Security: Restore files and directories user right must only be assigned to the Administrators group

Security: System default permissions of global system objects must be strengthened

Security: System must have orphaned security identifiers (SIDs) removed from user rights

Security: System must preserve zone information when saving attachments

Security: Take ownership of files or other objects user right must only be assigned to the Administrators group

Security: The Force shutdown from a remote system user right must only be assigned to the Administrators group

Security: create global objects user right must only be assigned to Administrators, Service, Local Service, and Network Service

Windows OS: Must not have the Peer Name Resolution Protocol installed

Full tag list
nist800-53-server (204) stig-medium-server (199) nist800-171-server (177) nist800-53-desktop (169) cmmc2-l2-server (162) stig-medium-desktop (147) pci-dss-v4-server (131) nist800-171-desktop (128) security-server (121) cmmc2-l2-desktop (119) hipaa-server (96) security-desktop (95) pci-dss-v4-desktop (89) hipaa-desktop (65) bestpractice-desktop (39) cis-csc-server (38) bestpractice-server (35) cis-csc-desktop (34) mitre-att-server (32) mitre-att-desktop (30) cmmc2-l1-server (24) stig-high-desktop (23) stig-high-server (22) cmmc2-l1-desktop (21) pci-dss-v3.2-server (20) bestpractice-domaincontroller (16) tisax (16) cmmc2-l3-server (16) pci-dss-v3.2-desktop (15) threat-intel-server (13) cmmc2-l3-desktop (12) threat-intel-desktop (12) sec-hardening-desktop (10) sec-hardening-server (10) nist-privacy-server (10) sig-server (9) stig-low-desktop (8) health (8) csa-cmm-server (7) nist-privacy-desktop (7) stig-low-server (6) privacy-server (6) privacy-desktop (6) owasptop-server (6) owasptop-desktop (5) desktop (4) cce-server (4) cce-desktop (4) stig-medium-ie (4) sig-desktop (3) niap-desktop (3) fips140-2 (3) niap-server (3) msoffice (2) vm-guest-host (2) compliance-desktop (2) info-desktop (1) csa-cmm-desktop (1) server (1) domaincontroller-health (1) bitlocker-security-desktop (1) iis-stig-high (1) hyper-v (1) exchange-security (1)
  • Knowledge Base
  • Documentation
  • Tutorials
  • Screencasts
  • Validation Scripts
  • Support Center

CMMC v2.0ComplianceSTIGCISNIST 800-171ServersDesktops
Resources
  • Tutorials
  • Screencasts
  • Knowledge Base
  • Blog
  • Solutions
  • Support Center
  • MyEventlog
  • System32
About
  • About Us
  • Live Demo
  • In the Press
  • Testimonials
  • Our Customers
  • Our SysAdmin Promise
  • NETIKUS.NET ltd
Contact Us
  • 1-877-NETIKUS
  • 1-312-624-7698
  • sales@netikus.net
  • support@netikus.net
33 N Dearborn St, Suite 1000
Chicago, IL 60602

MON-FRI, 8AM-5PM CDT


Social
  • EventSentry FacebookEventSentry LinkedInEventSentry TwitterEventSentry GithubEventSentry DiscordEventSentry YouTube
Copyright (c) 2002-2026 NETIKUS.NET ltd | Server Monitoring | Event Log Monitoring | Network Monitoring

NETIKUS.NET ltd is a software development company based in Chicago, IL
All rights reserved. This website www.eventsentry.com is part of the www.netikus.net network

XHTML   |   Privacy Policy   |   Your Privacy Choices



Your Privacy Choices

Manage your cookie preferences below:

Helps us improve website performance and understand how visitors use our site.

Allows us to collect feedback about our products and improve them based on your input.

To learn more about our use of cookies, please see our
Privacy Policy.