Item Search

NameAudit NamePluginCategory
1.8.17 Ensure the operating system prevents users from overriding the screensaver lock-enabled setting for the graphical user interfaceCIS Red Hat Enterprise Linux 8 STIG v2.0.0 STIGUnix

ACCESS CONTROL

1.158 WN16-DC-000130CIS Microsoft Windows Server 2016 STIG v4.0.0 DC CAT IIWindows

CONFIGURATION MANAGEMENT

1.159 WN19-DC-000130CIS Microsoft Windows Server 2019 STIG v4.0.0 DC CAT IIWindows

CONFIGURATION MANAGEMENT

1.159 WN22-DC-000130CIS Microsoft Windows Server 2022 STIG v3.0.0 DC CAT IIWindows

CONFIGURATION MANAGEMENT

1.258 RHEL-09-271115CIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT IIUnix

CONFIGURATION MANAGEMENT

1.350 RHEL-10-700780CIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT IIUnix

ACCESS CONTROL

2.1 Ensure that authentication is enabled for MongoDB databasesCIS MongoDB 3.2 L1 Windows Audit v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

2.1 Ensure that authentication is enabled for MongoDB databasesCIS MongoDB 3.4 L1 Unix Audit v1.0.0Unix

IDENTIFICATION AND AUTHENTICATION

3.8 Ensure only the default permissions specified by Microsoft are granted to the public server roleCIS SQL Server 2016 Database L1 DB v1.4.0MS_SQLDB

ACCESS CONTROL, MEDIA PROTECTION

3.8 Ensure only the default permissions specified by Microsoft are granted to the public server roleCIS SQL Server 2017 Database L1 AWS RDS v1.3.0MS_SQLDB

ACCESS CONTROL, MEDIA PROTECTION

3.8 Ensure only the default permissions specified by Microsoft are granted to the public server roleCIS SQL Server 2017 Database L1 DB v1.3.0MS_SQLDB

ACCESS CONTROL, MEDIA PROTECTION

3.08 init.ora - 'Verify permissions of file referenced by ifile parameter'CIS v1.1.0 Oracle 11g OS Windows Level 1Windows
3.11 Ensure the public role in the msdb database is not granted access to SQL Agent proxiesCIS SQL Server 2016 Database L1 DB v1.4.0MS_SQLDB

ACCESS CONTROL, MEDIA PROTECTION

3.12 Ensure the 'SYSADMIN' Role is Limited to Administrative or Built-in AccountsCIS Microsoft SQL Server 2022 v1.3.0 L1 Database Engine MS_SQLDBMS_SQLDB

ACCESS CONTROL

3.12 Ensure the 'SYSADMIN' Role is Limited to Administrative or Built-in AccountsCIS Microsoft SQL Server 2019 v1.6.0 L1 Database Engine MS_SQLDBMS_SQLDB

ACCESS CONTROL

3.12 Ensure the 'SYSADMIN' Role is Limited to Administrative or Built-in AccountsCIS Microsoft SQL Server 2025 v1.0.0 L1 Database Engine MS_SQLDBMS_SQLDB

ACCESS CONTROL

4.2.12 Restrict Access to SYSCAT.EVENTSCIS IBM DB2 12.1 v1.0.0 Database Level 1IBM_DB2DB

ACCESS CONTROL, MEDIA PROTECTION

4.2.30 Restrict Access to SYSCAT.SECURITYPOLICYEXEMPTIONSCIS IBM DB2 11 v1.2.0 Database Level 1IBM_DB2DB

ACCESS CONTROL, MEDIA PROTECTION

4.3.1 Restrict Access to SYSIBM.SYSAUDITPOLICIESCIS IBM DB2 12.1 v1.0.0 Database Level 1IBM_DB2DB

ACCESS CONTROL, MEDIA PROTECTION

4.3.12 Restrict Access to SYSIBM.SYSEVENTSCIS IBM DB2 12.1 v1.0.0 Database Level 1IBM_DB2DB

ACCESS CONTROL, MEDIA PROTECTION

4.3.26 Restrict Access to SYSIBM.SYSSCHEMATACIS IBM DB2 11 v1.2.0 Database Level 1IBM_DB2DB

ACCESS CONTROL, MEDIA PROTECTION

6.1 Restrict Access to SYSCAT.AUDITPOLICIESCIS IBM DB2 9 Benchmark v3.0.1 Level 2 DBIBM_DB2DB

ACCESS CONTROL

6.1.7 Secure SQLADM AuthorityCIS IBM DB2 12.1 v1.0.0 Database Level 1IBM_DB2DB

ACCESS CONTROL, MEDIA PROTECTION

6.1.7 Secure SQLADM AuthorityCIS IBM DB2 11 v1.2.0 Database Level 1IBM_DB2DB

ACCESS CONTROL, MEDIA PROTECTION

6.9 Ensure the pgcrypto extension is installed and configured correctlyCIS PostgreSQL 12 DB v1.1.0PostgreSQLDB

IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION

6.18 Restrict Access to SYSCAT.SECURITYPOLICYEXEMPTIONSCIS IBM DB2 9 Benchmark v3.0.1 Level 2 DBIBM_DB2DB

ACCESS CONTROL

6.27 Restrict Access to SYSCAT.PROCEDURESCIS IBM DB2 9 Benchmark v3.0.1 Level 2 DBIBM_DB2DB

ACCESS CONTROL

7.7 Secure SQLADM AuthorityCIS IBM DB2 v10 v1.1.0 Database Level 1IBM_DB2DB
7.7 Secure SQLADM AuthorityCIS IBM DB2 v10 v1.1.0 Database Level 2IBM_DB2DB
7.8 Secure DATAACCESS AuthorityCIS IBM DB2 v10 v1.1.0 Database Level 1IBM_DB2DB
7.8 Secure DATAACCESS AuthorityCIS IBM DB2 v10 v1.1.0 Database Level 2IBM_DB2DB
7.9 Secure ACCESSCTRL AuthorityCIS IBM DB2 v10 v1.1.0 Database Level 1IBM_DB2DB
7.9 Secure ACCESSCTRL AuthorityCIS IBM DB2 v10 v1.1.0 Database Level 2IBM_DB2DB
7.16 Secure the DATAACCESS authorityCIS IBM DB2 9 Benchmark v3.0.1 Level 1 DBIBM_DB2DB
7.17 Secure the ACCESSCTRL authorityCIS IBM DB2 9 Benchmark v3.0.1 Level 1 DBIBM_DB2DB
9.2 Enable Backup RedundancyCIS IBM DB2 12.1 v1.0.0 Database Level 1IBM_DB2DB

CONTINGENCY PLANNING

12.36 Oracle Installation - 'Separate users for different components of Oracle'CIS v1.1.0 Oracle 11g OS L2Unix
APPL-13-000033 - The macOS system must be configured to disable password forwarding for FileVault.DISA STIG Apple macOS 13 v1r5Unix

CONFIGURATION MANAGEMENT

APPL-13-003020 - The macOS system must use multifactor authentication for local access to privileged and nonprivileged accounts.DISA STIG Apple macOS 13 v1r5Unix

IDENTIFICATION AND AUTHENTICATION

CD16-00-003400 - Access to external executables must be disabled or restricted.DISA Crunchy Data Postgres 16 STIG v1r3 PostgreSQLDBPostgreSQLDB

CONFIGURATION MANAGEMENT

GEN008140 - The TLS certificate authority file and/or directory (as appropriate) must be owned by rootDISA STIG AIX 6.1 v1r14Unix

ACCESS CONTROL

OH12-1X-000184 - The CustomIdentityKeyStorePassPhrase property of the Node Manager configured to support OHS must be configured for secure communication.DISA STIG Oracle HTTP Server 12.1.3 v2r3Unix

CONFIGURATION MANAGEMENT

OH12-1X-000187 - The listen-address element defined within the config.xml of the OHS Standalone domain that supports OHS must be configured for secure communication.DISA STIG Oracle HTTP Server 12.1.3 v2r3Unix

CONFIGURATION MANAGEMENT

OH12-1X-000192 - OHS must limit access to the Dynamic Monitoring Service (DMS).DISA STIG Oracle HTTP Server 12.1.3 v2r3Unix

CONFIGURATION MANAGEMENT

PGS9-00-006600 - PostgreSQL must generate audit records when security objects are modified.DISA STIG PostgreSQL 9.x on RHEL DB v2r5PostgreSQLDB

AUDIT AND ACCOUNTABILITY

PGS9-00-009100 - Access to external executables must be disabled or restricted.DISA STIG PostgreSQL 9.x on RHEL DB v2r5PostgreSQLDB

CONFIGURATION MANAGEMENT

SQL4-00-016835 - SQL Server must have the Data Quality Services software component removed if it is unused.DISA STIG SQL Server 2014 Instance DB Audit v2r4MS_SQLDB

CONFIGURATION MANAGEMENT

WN19-DC-000130 - Windows Server 2019 domain controllers must run on a machine dedicated to that function.DISA Microsoft Windows Server 2019 STIG v3r9Windows

CONFIGURATION MANAGEMENT

WN22-DC-000130 - Windows Server 2022 domain controllers must run on a machine dedicated to that function.DISA Microsoft Windows Server 2022 STIG v2r8Windows

CONFIGURATION MANAGEMENT

WN25-DC-000130 - Windows Server 2025 domain controllers must run on a machine dedicated to that function.DISA Microsoft Windows Server 2025 STIG v1r1Windows

CONFIGURATION MANAGEMENT