Item Search

NameAudit NamePluginCategory
1.2 Install only required packagesCIS PostgreSQL 14 DB v 1.3.0PostgreSQLDB

CONFIGURATION MANAGEMENT

1.3 Ensure Data Cluster Initialized SuccessfullyCIS PostgreSQL 12 OS v1.1.0Unix

ACCESS CONTROL, MEDIA PROTECTION

1.4 Ensure Data Cluster Initialized SuccessfullyCIS PostgreSQL 13 v1.3.0 L1 OS Linux UnixUnix

ACCESS CONTROL, MEDIA PROTECTION

1.4 Ensure Data Cluster Initialized SuccessfullyCIS PostgreSQL 15 v1.2.0 L1 OS Linux UnixUnix

ACCESS CONTROL, MEDIA PROTECTION

1.4 Ensure Data Cluster Initialized SuccessfullyCIS PostgreSQL 18 v1.0.0 L1 OS Linux UnixUnix

ACCESS CONTROL, MEDIA PROTECTION

1.4 Ensure Data Cluster Initialized SuccessfullyCIS PostgreSQL 14 OS v 1.3.0Unix

ACCESS CONTROL, MEDIA PROTECTION

1.4 Ensure Data Cluster Initialized SuccessfullyCIS PostgreSQL 17 v1.0.0 L1 PostgreSQLUnix

ACCESS CONTROL, MEDIA PROTECTION

1.4 Ensure Data Cluster Initialized SuccessfullyCIS PostgreSQL 16 v1.1.0 L1 OS Linux UnixUnix

ACCESS CONTROL, MEDIA PROTECTION

1.7 Verify That the 'PGPASSWORD' Environment Variable is Not in UseCIS PostgreSQL 16 v1.1.0 L1 OS Linux UnixUnix

IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION

1.90 AZLX-23-002095CIS Amazon Linux 2023 STIG v1.0.0 CAT IIUnix

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, MAINTENANCE

1.91 AZLX-23-002100CIS Amazon Linux 2023 STIG v1.0.0 CAT IIUnix

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, MAINTENANCE

1.92 AZLX-23-002105CIS Amazon Linux 2023 STIG v1.0.0 CAT IIUnix

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, MAINTENANCE

1.185 RHEL-10-500300CIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT IIUnix

ACCESS CONTROL

1.205 OL08-00-030000CIS Oracle Linux 8 STIG v1.0.0 CAT IIUnix

ACCESS CONTROL

3.2 Ensure the PostgreSQL Audit Extension (pgAudit) is enabledCIS PostgreSQL 16 v1.1.0 L1 OS Linux PostgreSQLDBPostgreSQLDB

AUDIT AND ACCOUNTABILITY

3.2 Ensure the PostgreSQL Audit Extension (pgAudit) is enabledCIS PostgreSQL 17 v1.0.0 L1 PostgreSQLPostgreSQLDB

AUDIT AND ACCOUNTABILITY

3.2 Ensure the PostgreSQL Audit Extension (pgAudit) is enabled - pgaudit installedCIS PostgreSQL 9.5 DB v1.1.0PostgreSQLDB

AUDIT AND ACCOUNTABILITY

3.2 Ensure the PostgreSQL Audit Extension (pgAudit) is enabled - audit.logCIS PostgreSQL 9.5 DB v1.1.0PostgreSQLDB

AUDIT AND ACCOUNTABILITY

3.2 Ensure the PostgreSQL Audit Extension (pgAudit) is enabled - audit.logCIS PostgreSQL 9.6 DB v1.0.0PostgreSQLDB

AUDIT AND ACCOUNTABILITY

3.2 Ensure the PostgreSQL Audit Extension (pgAudit) is enabled - pgaudit installedCIS PostgreSQL 9.6 DB v1.0.0PostgreSQLDB

AUDIT AND ACCOUNTABILITY

5.1 Do Not Specify Passwords in the Command LineCIS PostgreSQL 15 v1.2.0 L1 OS Linux PostgreSQLDBPostgreSQLDB

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION

5.1 Do Not Specify Passwords in the Command LineCIS PostgreSQL 16 v1.1.0 L1 OS Linux PostgreSQLDBPostgreSQLDB

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION

5.1 Ensure login via 'local' UNIX Domain Socket is configured correctly - local UNIX Domain Socket is configured correctlyCIS PostgreSQL 12 OS v1.1.0Unix

IDENTIFICATION AND AUTHENTICATION

5.3 Ensure login via 'local' UNIX Domain Socket is configured correctlyCIS PostgreSQL 14 OS v 1.3.0Unix

IDENTIFICATION AND AUTHENTICATION

5.3 Ensure login via "local" UNIX Domain Socket is configured correctlyCIS PostgreSQL 13 v1.3.0 L1 OS Linux PostgreSQLDBPostgreSQLDB

IDENTIFICATION AND AUTHENTICATION

5.3 Ensure login via "local" UNIX Domain Socket is configured correctlyCIS PostgreSQL 17 v1.0.0 L1 PostgreSQLPostgreSQLDB

IDENTIFICATION AND AUTHENTICATION

5.3 Ensure login via "local" UNIX Domain Socket is configured correctlyCIS PostgreSQL 18 v1.0.0 L1 OS Linux PostgreSQLDBPostgreSQLDB

IDENTIFICATION AND AUTHENTICATION

5.3 Ensure login via "local" UNIX Domain Socket is configured correctlyCIS PostgreSQL 15 v1.2.0 L1 OS Linux PostgreSQLDBPostgreSQLDB

IDENTIFICATION AND AUTHENTICATION

5.3 Ensure login via "local" UNIX Domain Socket is configured correctlyCIS PostgreSQL 16 v1.1.0 L1 OS Linux PostgreSQLDBPostgreSQLDB

IDENTIFICATION AND AUTHENTICATION

6.5 Ensure 'Superuser' Runtime Parameters are ConfiguredCIS PostgreSQL 13 v1.3.0 L1 Database PostgreSQLDBPostgreSQLDB

CONFIGURATION MANAGEMENT

6.8 Ensure SSL is enabled and configured correctlyCIS PostgreSQL 11 DB v1.0.0PostgreSQLDB

SYSTEM AND COMMUNICATIONS PROTECTION

AZLX-23-002080 - Amazon Linux 2023 must be configured to off-load audit records onto a different system from the system being audited via syslog.DISA Amazon Linux 2023 STIG v1r3Unix

AUDIT AND ACCOUNTABILITY

CD12-00-002900 - PostgreSQL must by default shut down upon audit failure, to include the unavailability of space for more audit log records; or must be configurable to shut down upon audit failure.DISA STIG Crunchy Data PostgreSQL DB v3r1PostgreSQLDB

AUDIT AND ACCOUNTABILITY

CD12-00-004900 - PostgreSQL must generate audit records when privileges/permissions are added.DISA STIG Crunchy Data PostgreSQL DB v3r1PostgreSQLDB

AUDIT AND ACCOUNTABILITY

CD12-00-005200 - PostgreSQL must generate audit records when security objects are deleted.DISA STIG Crunchy Data PostgreSQL DB v3r1PostgreSQLDB

AUDIT AND ACCOUNTABILITY

CD12-00-005500 - PostgreSQL must be able to generate audit records when privileges/permissions are retrieved.DISA STIG Crunchy Data PostgreSQL DB v3r1PostgreSQLDB

AUDIT AND ACCOUNTABILITY

CD12-00-005800 - PostgreSQL must generate audit records for all privileged activities or other system-level access.DISA STIG Crunchy Data PostgreSQL DB v3r1PostgreSQLDB

AUDIT AND ACCOUNTABILITY

CD12-00-006100 - PostgreSQL must generate audit records when privileges/permissions are deleted.DISA STIG Crunchy Data PostgreSQL DB v3r1PostgreSQLDB

AUDIT AND ACCOUNTABILITY

CD12-00-006400 - PostgreSQL must generate audit records when privileges/permissions are modified.DISA STIG Crunchy Data PostgreSQL DB v3r1PostgreSQLDB

AUDIT AND ACCOUNTABILITY

CD12-00-008100 - PostgreSQL must use NSA-approved cryptography to protect classified information in accordance with the data owner's requirements.DISA STIG Crunchy Data PostgreSQL DB v3r1PostgreSQLDB

SYSTEM AND COMMUNICATIONS PROTECTION

CD16-00-003400 - Access to external executables must be disabled or restricted.DISA Crunchy Data Postgres 16 STIG v1r2 PostgreSQLDBPostgreSQLDB

CONFIGURATION MANAGEMENT

CD16-00-007200 - PostgreSQL must allocate audit record storage capacity in accordance with organization-defined audit record storage requirements.DISA Crunchy Data Postgres 16 STIG v1r2 PostgreSQLDBPostgreSQLDB

AUDIT AND ACCOUNTABILITY

CD16-00-008300 - PostgreSQL must use NSA-approved cryptography to protect classified information in accordance with the data owner's requirements.DISA Crunchy Data Postgres 16 STIG v1r2 PostgreSQLDBPostgreSQLDB

SYSTEM AND COMMUNICATIONS PROTECTION

CD16-00-009600 - PostgreSQL must generate audit records when categories of information (e.g., classification levels/security levels) are accessed.DISA Crunchy Data Postgres 16 STIG v1r2 PostgreSQLDBPostgreSQLDB

AUDIT AND ACCOUNTABILITY

CD16-00-011400 - PostgreSQL must generate audit records for all privileged activities or other system-level access.DISA Crunchy Data Postgres 16 STIG v1r2 PostgreSQLDBPostgreSQLDB

AUDIT AND ACCOUNTABILITY

OL09-00-000855 - OL 9 must be configured to offload audit records onto a different system from the system being audited via syslog.DISA Oracle Linux 9 STIG v1r5Unix

AUDIT AND ACCOUNTABILITY

PGS9-00-004200 - The audit information produced by PostgreSQL must be protected from unauthorized read access - log directoryDISA STIG PostgreSQL 9.x on RHEL OS v2r5Unix

AUDIT AND ACCOUNTABILITY

PGS9-00-004200 - The audit information produced by PostgreSQL must be protected from unauthorized read access - log filesDISA STIG PostgreSQL 9.x on RHEL OS v2r5Unix

AUDIT AND ACCOUNTABILITY

TCAT-AS-001592 - Changes to $CATALINA_HOME/lib/ folder must be logged.DISA STIG Apache Tomcat Application Server 9 v3r4 MiddlewareUnix

AUDIT AND ACCOUNTABILITY

VCENTER-000021 - The use of Linux-based clients must be restricted.DISA STIG VMWare ESXi vCenter 5 STIG v2r1VMware

CONFIGURATION MANAGEMENT