<?xml version="1.0" encoding="UTF-8" standalone="no"?>
<feed xmlns="http://www.w3.org/2005/Atom">
  <title>Ideas for CIS WorkBench</title>
  <subtitle>Ideas for CIS WorkBench as submitted to our Feature Upvote board. Ideas are ordered by 'new' and the 50 top matches are included.</subtitle>
  <link href="https://workbench.feedback.cisecurity.org"/>
  <id>pr_hfwnlubmsz0yex4</id>
  <updated>2025-05-18T12:19:04Z</updated>
  <entry>
    <title>Missing search funcion</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/716392/missing-search-funcion"/>
    <id>sug_ln9ncgxbhdpb7re</id>
    <published>2026-06-11T13:13:09Z</published>
    <updated>2026-06-15T14:14:20Z</updated>
    <content type="text/plain">On my dashboard, there's a "quick link" to the list of published benchmarks (https://workbench.cisecurity.org/published/benchmarks?from=dashboard).&#13;
This list has no search, nor the option to show all benchmarks on one page so I could easily use ctrl-F in my browser.&#13;
Please add a search function to that list, if possible. The "normal" (not quick) list (https://workbench.cisecurity.org/benchmarks) has a search, so this list is the real quick one as I don't have to click through 72 pages.</content>
  </entry>
  <entry>
    <title>Update Red Hat Enterprise Linux 9 Benchmark Section 1.6.2</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/711562/update-red-hat-enterprise-linux-9-benchmark-section-162"/>
    <id>sug_g6lqjbb5okrhjto</id>
    <published>2026-05-12T08:57:46Z</published>
    <updated>2026-05-19T13:22:43Z</updated>
    <content type="text/plain">CIS Red Hat Enterprise Linux 9 Benchmark Section 1.6.2 (Ensure system wide crypto policy is not set in sshd configuration) is wrong.&#13;
On RHEL9 system wide crypto policies are not set this way anymore. More info here:&#13;
https://docs.redhat.com/en/documentation/red_hat_enterprise_linux/9/html/security_hardening/using-the-system-wide-cryptographic-policies_security-hardening#examples-of-opting-out-of-system-wide-crypto-policies_using-the-system-wide-cryptographic-policies&#13;
&#13;
Neither audit nor remediation procedure does anything. Every RHEL9 will always pass this audit procedure.</content>
  </entry>
  <entry>
    <title>Server2022v5.0.0 Build Kit Missing GPO</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/708408/server2022v500-build-kit-missing-gpo"/>
    <id>sug_x6ug1fqxgzrk1ol</id>
    <published>2026-04-23T19:32:28Z</published>
    <updated>2026-05-11T13:10:25Z</updated>
    <content type="text/plain">Within the Windows Server 2022 Benchmark v5.0.0 Build Kit, there is a callout in the PDF documentation to import GPOs for L1 Domain Controllers. Those CIS Group Policy Object Names are: User-L1, Services-L1, and DC-L1. When unzipping the package, there is no Services-L1, only Services-L2.</content>
  </entry>
  <entry>
    <title>Update to Linux Mint 22.3 "Zena?"</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/695057/update-to-linux-mint-223-zena"/>
    <id>sug_r2lymghkcift9dp</id>
    <published>2026-02-16T15:28:25Z</published>
    <updated>2026-05-11T13:09:37Z</updated>
    <content type="text/plain">Currently using the C4K-linuxmint-10-25-2025.iso to install CIS-configured Linux Mint 22.2 Cinnamon for the Reno Cigar Lions Club's Computers 4 Kids giveaways.&#13;
&#13;
I understand  Linux Mint 22.3 "Zena" is now available.  Is there an effort to install the CIS configuration and generate an iso for this newer version?  There is no urgent need, just curious.  &#13;
&#13;
Our client kids and their parents will get a pop-up indicating Zena is available to install. I am new to this and don't know if the CIS configurations from 22.2 will be overwritten or not and therefore cannot advise our clients appropriately.  Please advise.</content>
  </entry>
  <entry>
    <title>Audit Procedure incorrect</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/709614/audit-procedure-incorrect"/>
    <id>sug_uijdzllfqflfknh</id>
    <published>2026-04-30T08:07:05Z</published>
    <updated>2026-05-04T16:56:52Z</updated>
    <content type="text/plain">For GitLab "1.1.5 Ensure there are restrictions on who can dismiss code change reviews" I think the audit procedure is not complete what happens after I "Expand Protected branches."</content>
  </entry>
  <entry>
    <title>Email change?</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/708930/email-change"/>
    <id>sug_ansbib3mtwjnka8</id>
    <published>2026-04-26T12:47:26Z</published>
    <updated>2026-04-27T13:23:12Z</updated>
    <content type="text/plain">Can’t figure out how to change my account email.  Please advise.</content>
  </entry>
  <entry>
    <title>CIS Microsoft Windows 11 Enterprise Benchmark v5.0.1 - Build Kit for Intune</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/707882/cis-microsoft-windows-11-enterprise-benchmark-v501-build-kit-for-intune"/>
    <id>sug_zi8cfexljajvwvu</id>
    <published>2026-04-21T09:54:28Z</published>
    <updated>2026-04-27T13:19:15Z</updated>
    <content type="text/plain">Add the moment the build kit and scan for CIS Microsoft Windows 11 Enterprise Benchmark v5.0.1 is fully setup on Active Directory.&#13;
We would like to move our workloads from AD to Intune only for these Hybrid devices nothing is in place.&#13;
The Intune for Windows 11 is missing allot of settings necessary add the moment. Add hopefully this month the version 5 will also be released for Intune.</content>
  </entry>
  <entry>
    <title>CIS Red Hat Enterprise Linux 9 Benchmark Section 1.6.2 is wrong</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/706450/cis-red-hat-enterprise-linux-9-benchmark-section-162-is-wrong"/>
    <id>sug_pf3wfolqp5pz3ni</id>
    <published>2026-04-13T10:51:42Z</published>
    <updated>2026-04-20T17:51:01Z</updated>
    <content type="text/plain">CIS Red Hat Enterprise Linux 9 Benchmark Section 1.6.2 (Ensure system wide crypto policy is not set in sshd configuration) is wrong.&#13;
On RHEL9 system wide crypto policies are not set this way anymore. More info here:&#13;
https://docs.redhat.com/en/documentation/red_hat_enterprise_linux/9/html/security_hardening/using-the-system-wide-cryptographic-policies_security-hardening#examples-of-opting-out-of-system-wide-crypto-policies_using-the-system-wide-cryptographic-policies&#13;
&#13;
Neither audit nor remediation procedure does anything. Every RHEL9 will always pass this audit procedure.</content>
  </entry>
  <entry>
    <title>Detailed benchmark information</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/705900/detailed-benchmark-information"/>
    <id>sug_zvpxk4cfdahgcbo</id>
    <published>2026-04-10T06:56:23Z</published>
    <updated>2026-04-20T17:47:33Z</updated>
    <content type="text/plain">I have reviewed several benchmarks, particularly those related to Windows Workstation and Windows Server. Overall, I found that most controls are well-defined and described in depth. However, I noticed that a few areas seem to be either missing or not fully covered—possibly due to limitations in automation.&#13;
&#13;
Specifically, it would be beneficial to include more detailed guidance, including overviews and remediation steps (or sub-sections), for the following areas:&#13;
&#13;
IP Security&#13;
Wired Network configurations&#13;
Public Key Policies&#13;
Software Restriction Policies&#13;
&#13;
Providing additional context or structured remediation details for these categories would enhance completeness and usability.&#13;
&#13;
Additionally, if possible, it would be helpful to include a basic checksum verification script as part of the benchmark resources to support integrity validation.</content>
  </entry>
  <entry>
    <title>Can we also get the Build Kit for SUSE SLES 16</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/706453/can-we-also-get-the-build-kit-for-suse-sles-16"/>
    <id>sug_l2yh8eogk5fsxqh</id>
    <published>2026-04-13T11:01:08Z</published>
    <updated>2026-04-20T17:43:36Z</updated>
    <content type="text/plain">for SUSE SLES 16?</content>
  </entry>
  <entry>
    <title>CIS CAT Pro: Windows Server Benchmarks for Windows OS that use 3rd party Virusscanner/Firewall etc.</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/698579/cis-cat-pro-windows-server-benchmarks-for-windows-os-that-use-3rd-party-virussca"/>
    <id>sug_l6r4hw8syc3quml</id>
    <published>2026-03-07T09:12:22Z</published>
    <updated>2026-03-20T16:54:05Z</updated>
    <content type="text/plain">Hi,&#13;
&#13;
I would be very helpfull to have a set of Benchmarks for CIS CAT Pro for instances of Windows Server where the customer uses a 3rd party Virusscanner/Firewall. &#13;
&#13;
At current customers are required (1) investigate which controls are Virusscanner/Firewall related and (2) set each of of them to manual. &#13;
&#13;
It would be very helpful if this would be possible from the get go. Maybe a checkbox in CIS CAT Pro to check where all these controls can de "deactivated"?&#13;
&#13;
With regards</content>
  </entry>
  <entry>
    <title>CIS Microsoft Windows 11 Stand-alone v4.0.0 L1 - 2.2.23 (L1) - Include printspoolerservice</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/700082/cis-microsoft-windows-11-standalone-v400-l1-2223-l1-include-printspoolerservice"/>
    <id>sug_ojn9u1punkor9o1</id>
    <published>2026-03-10T03:50:58Z</published>
    <updated>2026-03-20T16:52:52Z</updated>
    <content type="text/plain">2.2.23 (L1) Ensure 'Generate security audits' is set to 'LOCAL SERVICE, NETWORK SERVICE'&#13;
&#13;
FAILED due to:&#13;
&#13;
Output&#13;
&#13;
'printspoolerservice' &amp;&amp; 'network service' &amp;&amp; 'local service'&#13;
&#13;
Policy Value&#13;
&#13;
'LOCAL SERVICE' &amp;&amp; 'NETWORK SERVICE'&#13;
&#13;
I believe Windows 11 newest version includes 'printspoolerservice' by default in this, so the check fails.&#13;
Maybe related to this?&#13;
https://techcommunity.microsoft.com/blog/microsoft-security-baselines/windows-11-version-25h2-security-baseline/4456231 &#13;
&#13;
Would be good to review update your benchmark if required.&#13;
&#13;
Thank you&#13;
&#13;
EDIT - same for '2.2.24 (L1) Ensure 'Impersonate a client after authentication' is set to 'Administrators, LOCAL SERVICE, NETWORK SERVICE, SERVICE''&#13;
Output&#13;
&#13;
'printspoolerservice' &amp;&amp; 'service' &amp;&amp; 'administrators' &amp;&amp; 'network service' &amp;&amp; 'local service'&#13;
&#13;
Policy Value&#13;
&#13;
'Administrators' &amp;&amp; 'LOCAL SERVICE' &amp;&amp; 'NETWORK SERVICE' &amp;&amp; 'SERVICE'</content>
  </entry>
  <entry>
    <title>xml (-cpe-dictionary, cpe-oval, oval, xccdf) file for F5 Networks</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/701895/xml-cpedictionary-cpeoval-oval-xccdf-file-for-f5-networks"/>
    <id>sug_gbli29o2vckudca</id>
    <published>2026-03-19T13:22:28Z</published>
    <updated>2026-03-20T16:51:02Z</updated>
    <content type="text/plain">There is no XML file available for F5, and the only version of F5 currently listed is archived. Could you upload a newer version or make the XML file available?</content>
  </entry>
  <entry>
    <title>Adding Community for Unifi/Ubiquiti Devices</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/696968/adding-community-for-unifiubiquiti-devices"/>
    <id>sug_mbx0notmmpxuxt1</id>
    <published>2026-02-26T19:01:41Z</published>
    <updated>2026-03-02T13:17:59Z</updated>
    <content type="text/plain"/>
  </entry>
  <entry>
    <title>Oracle19c-benchmark</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/695808/oracle19cbenchmark"/>
    <id>sug_d0hbzfsg4xcz9ni</id>
    <published>2026-02-20T09:09:53Z</published>
    <updated>2026-02-23T13:26:10Z</updated>
    <content type="text/plain">Since new CISCAT 4.58/9 the regular  Oracle19c Benchmark for unified auditing has been removed/disappeared. This was available until CISCAT 4.56/7. Please add this functionality or put it in place in the new coming ciscat-versions</content>
  </entry>
  <entry>
    <title>CIS-CAT Pro Assessor Download (See what's changed.) - Dead link</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/695912/ciscat-pro-assessor-download-see-whats-changed-dead-link"/>
    <id>sug_0pcyiplmm3hgcmu</id>
    <published>2026-02-20T18:42:40Z</published>
    <updated>2026-02-23T13:16:05Z</updated>
    <content type="text/plain">From this page. (https://workbench.cisecurity.org/download/cis-cat/assessor).&#13;
404-Dead link - (https://workbench.cisecurity.org/community/30/discussions/12709)</content>
  </entry>
  <entry>
    <title>CIS for IBM VIOs</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/694222/cis-for-ibm-vios"/>
    <id>sug_qjzrqoooclp7ycr</id>
    <published>2026-02-12T08:27:01Z</published>
    <updated>2026-02-17T15:35:26Z</updated>
    <content type="text/plain">Outside CIS AIX we also have the PowerVM VIOs (AIX-based but configured differently and delivered separately from AIX), any thoughts on this?</content>
  </entry>
  <entry>
    <title>CIS for IBM HMC</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/694219/cis-for-ibm-hmc"/>
    <id>sug_eiemma5itliejoi</id>
    <published>2026-02-12T08:24:11Z</published>
    <updated>2026-02-17T15:35:13Z</updated>
    <content type="text/plain">Assessment for IBM HMC (hw appliance and virtual HMC) would be interesting.</content>
  </entry>
  <entry>
    <title>Please adopt Passkeys as an authentication option</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/695001/please-adopt-passkeys-as-an-authentication-option"/>
    <id>sug_zasqlbcvbcvrkpq</id>
    <published>2026-02-16T09:16:07Z</published>
    <updated>2026-02-17T15:33:23Z</updated>
    <content type="text/plain">Rather than relying on passwords, which you understandably want rotated (frequently), please adopt passkeys, which would be simpler for end-users, and more secure.</content>
  </entry>
  <entry>
    <title>No Active License Keys</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/688288/no-active-license-keys"/>
    <id>sug_xu9b0kxomfuqz3x</id>
    <published>2026-01-12T13:41:04Z</published>
    <updated>2026-02-04T14:22:56Z</updated>
    <content type="text/plain">Hello,&#13;
there is No Active License Keys for Orange. I can not use my Assessor Pro application.&#13;
Do you know what happened?&#13;
&#13;
Regards&#13;
Paweł Giergoń&#13;
Orange Polska</content>
  </entry>
  <entry>
    <title>More helpful email notifications</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/687703/more-helpful-email-notifications"/>
    <id>sug_mhjkf2x2gg1hdg6</id>
    <published>2026-01-08T20:37:01Z</published>
    <updated>2026-02-04T14:18:47Z</updated>
    <content type="text/plain">I get a lot of emails about work being done in Workbench, but few of them seem to give me the context I need within the email or in the link to understand what was actually done. For instance today I got an email that says "USER 1 modified recommendation 1.1.1 Enable 'aaa new-model'". When I select "View Recommendation" in the email I'm taken to the correct remediation but all I see if current version and 2 months ago. It doesn't seem like this was changed at all and if it was the UX is not showing that in any actionable way. I REALLY want to be involved in updates and I'm just struggling to use Workbench to see what's actually happening in these benchmarks. Seeing the history of a benchmark as it progresses is difficult at best, but feels impossible often.</content>
  </entry>
  <entry>
    <title>network  security auditing</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/691467/network-security-auditing"/>
    <id>sug_xszuocxk9wb8dye</id>
    <published>2026-01-28T13:51:01Z</published>
    <updated>2026-02-04T14:14:04Z</updated>
    <content type="text/plain">i want  to audit network security in the  financial  sector, for perfect assessment network efficiency&#13;
i want a good checklists for the success of my audit points&#13;
please provide me with great support and guide me for perfect work</content>
  </entry>
  <entry>
    <title>9.1.10 - (L1)  : Service principals can use Fabric APIs</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/691672/9110-l1-service-principals-can-use-fabric-apis"/>
    <id>sug_h7wqwjik9nbujgd</id>
    <published>2026-01-29T13:28:10Z</published>
    <updated>2026-02-04T14:08:42Z</updated>
    <content type="text/plain">The option : Service principals can use Fabric APIs is not an option anymore. Probaply changed or removed.&#13;
https://workbench.cisecurity.org/sections/3075062/recommendations/5003625&#13;
&#13;
There should be an update for this check.</content>
  </entry>
  <entry>
    <title>Request for CIS Benchmark Comparison Feature</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/688338/request-for-cis-benchmark-comparison-feature"/>
    <id>sug_jhhffpozlk1xpd6</id>
    <published>2026-01-12T17:29:05Z</published>
    <updated>2026-01-26T15:10:26Z</updated>
    <content type="text/plain">I’m looking for a way to compare Windows 11 Enterprise CIS Benchmarks version 3.0 against version 4.0. It has been challenging to identify which policies have changed, which are new, and which have been removed.&#13;
&#13;
If there’s an effective method or tool for this comparison, please share your approach. If not, I’d like to suggest an enhancement request for a report or feature that provides a clear comparison between versions.&#13;
&#13;
Thank you!</content>
  </entry>
  <entry>
    <title>Benchmark Filters</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/686350/benchmark-filters"/>
    <id>sug_sc75silfihnelyy</id>
    <published>2025-12-30T14:34:10Z</published>
    <updated>2026-01-06T14:23:18Z</updated>
    <content type="text/plain">The Benchmarks page (https://workbench.cisecurity.org/benchmarks) really needs basic functionality like filters.  I should be able to pick an OS from dropdown.&#13;
Thank you.</content>
  </entry>
  <entry>
    <title>When duplicating forked benchmarks the status of the recommendation does not carry over</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/685359/when-duplicating-forked-benchmarks-the-status-of-the-recommendation-does-not-car"/>
    <id>sug_zdbappwbhgzvipp</id>
    <published>2025-12-22T16:18:04Z</published>
    <updated>2025-12-29T14:35:22Z</updated>
    <content type="text/plain">In our forked benchmark, we review each recommendation and the ones we will use have their status changed to "Accepted". But when we duplicate or fork from this benchmark in order to publish a minor/bug fix release, the status of all recommendations goes back to "draft". In relation to this, please provide a feature in the GUI or via API to bulk update the status of recommendations. At a minimum, please allow to change the status from the profiles section. Right now, to change the status we would need to go each recommendation individually and change it from that page.</content>
  </entry>
  <entry>
    <title>Disable forced password rotation on CIS Account Inactivity Notification</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/682047/disable-forced-password-rotation-on-cis-account-inactivity-notification"/>
    <id>sug_sxpzscred76e8ih</id>
    <published>2025-12-08T10:11:51Z</published>
    <updated>2025-12-08T14:52:55Z</updated>
    <content type="text/plain">Dear CIS team,&#13;
&#13;
I totally understand your CIS account review process and that you want to disable accounts that are not used anymore. What I don´t understand is, that you require a mandatory password change, when I log-in again and confirm that I´m still using my account. I need my CIS workbench account rarely, but I need it. &#13;
&#13;
Having to change the password after every account inactivity notification also does not align to NIST SP 800-63-3 (Password reset - Required only if the password is compromised or forgotten.). Frequent changes of passwords lead to weaker passwords and annoys users.&#13;
&#13;
It would be highly appreciated if you could change that. &#13;
&#13;
Best regards&#13;
Sebastian</content>
  </entry>
  <entry>
    <title>Delays in CIS-CAT Assessor v4.57 continue to be unexplained</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/677210/delays-in-ciscat-assessor-v457-continue-to-be-unexplained"/>
    <id>sug_7l6tntahxkqfz7a</id>
    <published>2025-11-13T14:00:12Z</published>
    <updated>2025-11-21T15:45:24Z</updated>
    <content type="text/plain">There is a continued lack of communication in the status of the release of v4.57 this is impacting my project and put at risk our longstanding recommendation of its use to our customers</content>
  </entry>
  <entry>
    <title>ASLR checks in versions of RHEL CIS are giving False positives</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/676735/aslr-checks-in-versions-of-rhel-cis-are-giving-false-positives"/>
    <id>sug_zdjigykeqzte4mt</id>
    <published>2025-11-11T08:51:27Z</published>
    <updated>2025-11-17T14:53:46Z</updated>
    <content type="text/plain">Hi,&#13;
I have looked into the profiles of CIS for Red Hat Enterprise, and found the checks for ASLR are implemented differently.&#13;
&#13;
(FP = False Positive)&#13;
CIS Red Hat Enterprise Linux 7 Benchmark v4.0.0	§1.4.1	    FP&#13;
CIS Red Hat Enterprise Linux 8 Benchmark v4.0.0	§1.5.8	    TP&#13;
CIS Red Hat Enterprise Linux 9 Benchmark v2.0.0	§1.5.1	    FP&#13;
CIS Red Hat Enterprise Linux 10 Benchmark v1.0.1 §1.5.8       TP&#13;
&#13;
Only RHEL 8 and RHEL 10 has working versions. Can you fix the RHEL 7 and RHEL 9 scripts?</content>
  </entry>
  <entry>
    <title>Review webinars page for Linux</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/674964/review-webinars-page-for-linux"/>
    <id>sug_ceafowfa68jxjcm</id>
    <published>2025-10-31T19:09:01Z</published>
    <updated>2025-11-17T15:01:08Z</updated>
    <content type="text/plain">If you visit https://workbench.cisecurity.org/support-center/pages/recorded-webinars you will see a link to a video on CIS-CAT Pro on Linux/Unix but the video link is for CIS-CAT Pro Dashboard and not CIS-CAT Pro for Linux.  It does appear they might scan a remote system based on the intro...but should there be a video JUST on the tool for Linux?</content>
  </entry>
  <entry>
    <title>Windows 2016: 2.3.10.1: 'Network access: Allow anonymous SID/Name translation' is set to 'Disabled'</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/674333/windows-2016-23101-network-access-allow-anonymous-sidname-translation-is-set-to-"/>
    <id>sug_ehtndxn5en9h5sa</id>
    <published>2025-10-28T11:45:16Z</published>
    <updated>2025-11-25T20:34:30Z</updated>
    <content type="text/plain">CIS Microsoft Windows Server 2016 Benchmark v4.0.0&#13;
&#13;
2.3.10.1 (L1) Ensure 'Network access: Allow anonymous SID/Name translation' is set to 'Disabled' &#13;
&#13;
Below Audit procedure is technically not achievable&#13;
&#13;
Audit Procedure&#13;
Navigate to the UI Path articulated in the Remediation section and confirm it is set as prescribed. This group policy setting is backed by the following registry location with a REG_DWORD value of 1.&#13;
&#13;
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Lsa:TurnOffAnonymousBlock</content>
  </entry>
  <entry>
    <title>2.6.6.6.2.1.1 Audit Procedure Path incorrect</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/674319/2666211-audit-procedure-path-incorrect"/>
    <id>sug_hf5kuqdel3cum0k</id>
    <published>2025-10-28T10:29:19Z</published>
    <updated>2025-11-25T20:36:48Z</updated>
    <content type="text/plain">The Audit procedure for 2.6.6.6.2.1.1 in the Office Enterprise benchmark suggests the path to be: "HKEY_USERS\[USER SID]\SOFTWARE\Policies\Microsoft\office\16.0\excel\powerpoint\security\fileblock:binaryfiles". The excel directory does not contain a powerpoint directory. This can be fixed by removing "excel" from the path, since this control is targeted at the powerpoint section.&#13;
This error is included in the currently published version 1.2.0 and the vNext.</content>
  </entry>
  <entry>
    <title>TOAD SERVER</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/672365/toad-server"/>
    <id>sug_bf3xt1qfxs1eyyh</id>
    <published>2025-10-16T07:20:19Z</published>
    <updated>2025-10-20T11:59:51Z</updated>
    <content type="text/plain">Dear Team,&#13;
We are using Toad server but when we perform cis scan then we got an error oci error kindly check</content>
  </entry>
  <entry>
    <title>motd and network access</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/671171/motd-and-network-access"/>
    <id>sug_vtyvvudpqpdaidr</id>
    <published>2025-10-09T13:57:51Z</published>
    <updated>2025-10-20T11:58:07Z</updated>
    <content type="text/plain">We see that motd accesses a server on AWS on port 8089.&#13;
But should this service not be disabled, or at least not being able to contact servers on the internet and exchange information.&#13;
&#13;
We can not find explicid instructions on disabling motd , but it seems a irrelevant service that should be disabled.</content>
  </entry>
  <entry>
    <title>add user button</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/669890/add-user-button"/>
    <id>sug_pd5q0qkiudsw2q7</id>
    <published>2025-10-03T03:05:25Z</published>
    <updated>2025-10-14T14:14:21Z</updated>
    <content type="text/plain">add user button does not always work when I click on it.</content>
  </entry>
  <entry>
    <title>Typo on benchmark for macOS 14.</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/667998/typo-on-benchmark-for-macos-14"/>
    <id>sug_869qhcwmfdkcozz</id>
    <published>2025-09-24T14:11:03Z</published>
    <updated>2025-09-29T13:15:35Z</updated>
    <content type="text/plain">When going to your v2.1.0 build kit &#13;
=&gt; CIS Apple macOS 14.0 Sonoma Benchmark v2.1.0 - Build Kit &#13;
We are offered to download this build kit&#13;
=&gt; CIS_Apple_macOS_14.0_Sonoma_Benchmark_v2.0.0_Configuration_Profiles.zip&#13;
But inside the zip file are the right recommendations (v2.1.0) &#13;
=&gt; CIS_macOS_14_Sonoma_v2.1.0_Level_2.mobileconfig&#13;
&#13;
This caused us to delay implementation because we kept thinking our team members were uploading the wrong benchmark. &#13;
Kindly&#13;
Thank you for all the work you do.</content>
  </entry>
  <entry>
    <title>"Sorting" error</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/667493/sorting-error"/>
    <id>sug_n32wviyhaz28xo3</id>
    <published>2025-09-22T06:56:50Z</published>
    <updated>2025-09-29T13:18:26Z</updated>
    <content type="text/plain">in CIS Workbench Downloads, sorting by "updated" field is not working correctly.</content>
  </entry>
  <entry>
    <title>Microsoft Edge Benchmark for Intune Managed browser</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/666997/microsoft-edge-benchmark-for-intune-managed-browser"/>
    <id>sug_tngjvl46wo2p3wm</id>
    <published>2025-09-19T14:40:51Z</published>
    <updated>2025-09-22T15:56:28Z</updated>
    <content type="text/plain"/>
  </entry>
  <entry>
    <title>Improve search filtering in CIS workbench</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/662324/improve-search-filtering-in-cis-workbench"/>
    <id>sug_7ejau2kitvxg8z3</id>
    <published>2025-08-26T14:14:41Z</published>
    <updated>2025-09-02T15:30:45Z</updated>
    <content type="text/plain">I was trying to search for build kits under the downloads section. If I typed in "build kits" it gave me many results. If I added additional words such as "windows", it provided no results, despite there being items with "windows" in their title that showed in the previous search results. I tried different strings such as "microsoft windows" and that yielded many results, however, if I then searched "microsoft windows build kits" it showed no results again. If I type in "microsoft windows server domain" it provides relevant results. So, it appears that the default search is set to only return results on exact matches of text strings/words in the order they are titled (vs. any order). Fixing this and/or providing a filtering breakdown function on the side would make it a lot easier, quicker, and nicer to use. Thank you.</content>
  </entry>
  <entry>
    <title>Link broken</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/660674/link-broken"/>
    <id>sug_pvu0h2g3ttjrsmx</id>
    <published>2025-08-15T16:47:36Z</published>
    <updated>2025-09-02T15:33:22Z</updated>
    <content type="text/plain">Tried to view the "What's changed" URL and got a 401 error.&#13;
Assessor v4.56.0 (latest)&#13;
&#13;
Analyze target systems configuration and generate reports.&#13;
See what's changed.</content>
  </entry>
  <entry>
    <title>search within benchmark</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/660487/search-within-benchmark"/>
    <id>sug_azij1fhuj1qlbe4</id>
    <published>2025-08-14T14:51:13Z</published>
    <updated>2025-09-02T15:33:46Z</updated>
    <content type="text/plain">why is there no search function within a benchmark? For example, I need to find all the controls that relate to PIN complexity in the "CIS Microsoft Windows 11 Enterprise Benchmark v4.0.0". &#13;
I have not found another way to do this than downloading the PDF or xlsx and search the text in the files.</content>
  </entry>
  <entry>
    <title>Clarification of 4.1.5Secure Permissions for the Primary Archive Log Location (LOGARCHMETH1)</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/657587/clarification-of-415secure-permissions-for-the-primary-archive-log-location-loga"/>
    <id>sug_akgxkzmb2j5vpfg</id>
    <published>2025-07-30T01:58:44Z</published>
    <updated>2025-08-04T14:52:01Z</updated>
    <content type="text/plain">The control is about secure archive log location but the benchmark requirement is "Although there are many ways to ensure that your primary logs will be archived, we recommend using the value of DISK as part of the LOGARCHMETH1 parameter. This will properly ensure that the primary logs are archived. A finding of OFF is not acceptable." Why it is related to the control objective?</content>
  </entry>
  <entry>
    <title>Question</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/656346/question"/>
    <id>sug_kw4ygmf8ei9thur</id>
    <published>2025-07-23T19:24:52Z</published>
    <updated>2025-07-28T14:24:29Z</updated>
    <content type="text/plain">Hey Guys,&#13;
&#13;
So my suggestion is that you make all your effort a little bit more intuitive or user-friendly, maybe also actualize the infos, I have the feeling there is not updated.&#13;
ex.: CIS-CAT-LITE cannot remotely asses... correct me if Im wrong?&#13;
&#13;
I also asked for a pro version to test remotely... still today no answer... not even an autoresponder...&#13;
I tried with the CIS-CAT-LITE Version, reading your docs it should be able to remote assess, no it is not.&#13;
Tried to download a benchmark for ubuntu24, I got the PDF but not the benchmark, it is impossible to download it...&#13;
&#13;
So I tried to get some results 2 days and I have nothing...&#13;
so maybe someone could help? or give some advice?</content>
  </entry>
  <entry>
    <title>Search feature</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/656027/search-feature"/>
    <id>sug_lyvmrui9pd8uspw</id>
    <published>2025-07-22T15:32:26Z</published>
    <updated>2025-07-28T14:39:16Z</updated>
    <content type="text/plain">On the CIS Published Benchmarks page, there are 22 pages with benchmark items. It would be useful to have a search bar to look for some titles.</content>
  </entry>
  <entry>
    <title>Please use ISO dates in the created, updated fields in files.</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/654927/please-use-iso-dates-in-the-created-updated-fields-in-files"/>
    <id>sug_nove9arxrxrmehs</id>
    <published>2025-07-16T05:38:58Z</published>
    <updated>2025-07-21T12:19:34Z</updated>
    <content type="text/plain">As per the title - this would allow us to sort things (usefully) quickly to keep up-to-date whereas currently sorting by those fields is...sub-optimal! ;-)</content>
  </entry>
  <entry>
    <title>Provide link to CIS-CAT downloads</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/651066/provide-link-to-ciscat-downloads"/>
    <id>sug_3bvhqfgoa69ivb1</id>
    <published>2025-06-27T20:26:09Z</published>
    <updated>2025-06-30T12:25:30Z</updated>
    <content type="text/plain">Just need a simple direct link to download CIS-CAT, but the email confirmation just directs to Workbench, and within Workbench it's not obvious to me.</content>
  </entry>
  <entry>
    <title>ensure XML files for the assessment tool are available for benchmark files</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/649178/ensure-xml-files-for-the-assessment-tool-are-available-for-benchmark-files"/>
    <id>sug_dl37e1rcrgbmdhd</id>
    <published>2025-06-18T13:26:32Z</published>
    <updated>2025-07-01T14:40:57Z</updated>
    <content type="text/plain">For use with the CISCAT Pro Assessment tool XML files are used for checking you system against a benchmark, please ensure that all benchmarks have an XML file available for this purpose, rather than forcing users to have to create a workaround using Excel to create the XML file.</content>
  </entry>
  <entry>
    <title>CIS CAT Pro Assessor latest version errors on Windows 11</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/649065/cis-cat-pro-assessor-latest-version-errors-on-windows-11"/>
    <id>sug_gooo5vcgx8cgwvz</id>
    <published>2025-06-17T22:04:21Z</published>
    <updated>2025-07-01T14:44:13Z</updated>
    <content type="text/plain">Hello  I have run Assessor successfully on a Windows 11 before but ran into a machine that it stalled on at Credential Validation is equal to audit success failure .   It won't go any farther.  Tried gui and cli (with java 11)   turned off bitlocker  turned off defender  running everything as administrator.   I am at a dead end.   would be nice to have just a IG1 benchmark  thanks</content>
  </entry>
  <entry>
    <title>Create workbench for CentOS Stream (8, 9 y 10)</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/647266/create-workbench-for-centos-stream-8-9-y-10"/>
    <id>sug_osrw4wl7ktwfzfa</id>
    <published>2025-06-09T12:33:13Z</published>
    <updated>2025-07-01T14:49:58Z</updated>
    <content type="text/plain"/>
  </entry>
  <entry>
    <title>Missing info on 18.10.43.11.1.1.2 on Windows 11 Benchmark v4.0.0</title>
    <link href="https://workbench.feedback.cisecurity.org/suggestions/646524/missing-info-on-18104311112-on-windows-11-benchmark-v400"/>
    <id>sug_951ac5wyx9oeefp</id>
    <published>2025-06-05T13:58:39Z</published>
    <updated>2025-07-01T14:52:30Z</updated>
    <content type="text/plain">Hello all,&#13;
&#13;
At least on workbench the data page for 18.10.43.11.1.1.2 contains info on 18.10.43.11.1.1.1, not 18.10.43.11.1.1.2.&#13;
&#13;
Thanks</content>
  </entry>
</feed>
