CIS Okta IDaaS STIG Benchmark v1.0.0

Rules and current results for this ruleset.

Ruleset

cis.okta.idaas_stig.v1

connector_instance okta active
Source: demo.okta.example.com
Tags
cisoktastig

Rules

Filter and review the current results for this ruleset.

RuleSeverityMonitoringStatus
OKTA-APP-000560
See CIS benchmark recommendation OKTA-APP-000560
highmanualFail
01-01-2026 18:21
OKTA-APP-000570
See CIS benchmark recommendation OKTA-APP-000570
highmanualPass
01-01-2026 18:21
OKTA-APP-001430
Checks that at least one Log Streaming connection is configured and active.
highpartialPass
01-01-2026 18:21
OKTA-APP-000020
Checks Global Session Policy rule priority 1 idle timeout.
mediumautomatedPass
01-01-2026 18:21
OKTA-APP-000025
See CIS benchmark recommendation OKTA-APP-000025
mediummanualFail
01-01-2026 18:21
OKTA-APP-000090
See CIS benchmark recommendation OKTA-APP-000090
mediummanualPass
01-01-2026 18:21
OKTA-APP-000170
Checks password lockout threshold for active password policies.
mediumautomatedFail
01-01-2026 18:21
OKTA-APP-000180
See CIS benchmark recommendation OKTA-APP-000180
mediummanualPass
01-01-2026 18:21
OKTA-APP-000190
See CIS benchmark recommendation OKTA-APP-000190
mediummanualFail
01-01-2026 18:21
OKTA-APP-000200
See CIS benchmark recommendation OKTA-APP-000200
mediummanualPass
01-01-2026 18:21
OKTA-APP-000650
Checks password minimum length for active password policies.
mediumautomatedFail
01-01-2026 18:21
OKTA-APP-000670
Checks password uppercase requirement for active password policies.
mediumautomatedPass
01-01-2026 18:21
OKTA-APP-000680
Checks password lowercase requirement for active password policies.
mediumautomatedFail
01-01-2026 18:21
OKTA-APP-000690
Checks password numeric requirement for active password policies.
mediumautomatedPass
01-01-2026 18:21
OKTA-APP-000700
Checks password symbol requirement for active password policies.
mediumautomatedFail
01-01-2026 18:21
OKTA-APP-000740
Checks password minimum age for active password policies.
mediumautomatedPass
01-01-2026 18:21
OKTA-APP-000745
Checks password maximum age for active password policies.
mediumautomatedFail
01-01-2026 18:21
OKTA-APP-001665
Checks Global Session Policy rule priority 1 session lifetime.
mediumautomatedFail
01-01-2026 18:21
OKTA-APP-001670
Checks that the Smart Card Authenticator is present and active.
mediumautomatedPass
01-01-2026 18:21
OKTA-APP-001700
See CIS benchmark recommendation OKTA-APP-001700
mediummanualFail
01-01-2026 18:21
OKTA-APP-001710
Checks Global Session Policy rule priority 1 persistent cookie setting.
mediumautomatedPass
01-01-2026 18:21
OKTA-APP-001920
See CIS benchmark recommendation OKTA-APP-001920
mediummanualFail
01-01-2026 18:21
OKTA-APP-002980
Checks common/compromised password protections for active password policies.
mediumautomatedPass
01-01-2026 18:21
OKTA-APP-003010
Checks password reuse history for active password policies.
mediumautomatedFail
01-01-2026 18:21