Controls configured by OpenLogic
The following CIS controls are pre-configured by the OpenLogic team as part of the hardened image build process. Applicability varies by image type. VM images include OS-level configurations such as cryptography and SSH settings. Container images may include runtime or base image configurations.
These controls are implemented to ensure baseline compliance and security without requiring additional user intervention.
For the current benchmark version and related release note information, see CIS benchmark version 0.1.81.
On this page:
Virtual machine images
-
CIS 1.6.1: The system cryptography policy is set to
FIPS(but in disabled state)This only sets the crypto-policy profile to FIPS-compliant algorithms, it does not enable full kernel FIPS mode. Full kernel FIPS mode is untouched/out of scope.