Item Search

NameAudit NamePluginCategory
1.1 OL08-00-010000CIS Oracle Linux 8 STIG v1.0.0 CAT IUnix

CONFIGURATION MANAGEMENT

1.2 RHEL-09-211010CIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT IUnix

CONFIGURATION MANAGEMENT

1.132 OL08-00-010820CIS Oracle Linux 8 STIG v1.0.0 CAT IUnix

CONFIGURATION MANAGEMENT

1.180 RHEL-09-252070CIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT IUnix

CONFIGURATION MANAGEMENT

1.314 RHEL-09-611025CIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT IUnix

CONFIGURATION MANAGEMENT

1.336 OL08-00-040190CIS Oracle Linux 8 STIG v1.0.0 CAT IUnix

CONFIGURATION MANAGEMENT

1.369 OL08-00-040360CIS Oracle Linux 8 STIG v1.0.0 CAT IUnix

CONFIGURATION MANAGEMENT

AIOS-17-006950 - Apple iOS/iPadOS 17 must be configured to enforce a passcode reuse prohibition of at least two generations.AirWatch - DISA Apple iOS/iPadOS 17 v2r2MDM

CONFIGURATION MANAGEMENT

AIOS-18-010400 - Apple iOS/iPadOS 18 must require a valid password be successfully entered before the mobile device data is unencrypted.AirWatch - DISA Apple iOS/iPadOS 18 v1r4MDM

SYSTEM AND COMMUNICATIONS PROTECTION

APPL-11-004021 - The macOS system must be configured with the sudoers file configured to authenticate users on a per -tty basis.DISA STIG Apple macOS 11 v1r5Unix

CONFIGURATION MANAGEMENT

APPL-11-004021 - The macOS system must be configured with the sudoers file configured to authenticate users on a per -tty basis.DISA STIG Apple macOS 11 v1r8Unix

CONFIGURATION MANAGEMENT

APPL-13-002070 - The macOS system must use an approved antivirus program.DISA STIG Apple macOS 13 v1r5Unix

CONFIGURATION MANAGEMENT

CASA-ND-000690 - The Cisco ASA must be configured to terminate all network connections associated with a device management session at the end of the session, or the session must be terminated after five minutes of inactivity except to fulfill documented and validated mission requirements.DISA STIG Cisco ASA NDM v2r2Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

CNTR-R2-000120 - The Kubernetes API server must have the insecure port flag disabled.DISA Rancher Government Solutions RKE2 STIG v2r3Unix

ACCESS CONTROL

CNTR-R2-000160 - The Kubernetes API server must have anonymous authentication disabled.DISA Rancher Government Solutions RKE2 STIG v2r3Unix

ACCESS CONTROL

ESXI-80-000217 - The ESXi host must configure virtual switch security policies to reject Media Access Control (MAC) address changes.DISA VMware vSphere 8.0 ESXi STIG v2r3 VMwareVMware

CONFIGURATION MANAGEMENT

ESXI-80-000221 - The ESXi host must have all security patches and updates installed.DISA VMware vSphere 8.0 ESXi STIG v2r3 VMwareVMware

CONFIGURATION MANAGEMENT

F5BI-DM-999999 - The version of F5 BIG-IP must be a supported version.DISA F5 BIG-IP Device Management STIG v2r4F5

SYSTEM AND INFORMATION INTEGRITY

F5BI-LT-999999 - The version of F5 BIG-IP must be a supported version.DISA F5 BIG-IP Local Traffic Manager STIG v2r4F5

SYSTEM AND INFORMATION INTEGRITY

FFOX-00-000001 - The installed version of Firefox must be supported.DISA STIG Mozilla Firefox MacOS v6r6Unix

SYSTEM AND INFORMATION INTEGRITY

GOOG-13-010800 - Android 13 devices must have the latest available Google Android 13 operating system installed.AirWatch - DISA Google Android 13 COBO v2r2MDM

CONFIGURATION MANAGEMENT

GOOG-13-010800 - Android 13 devices must have the latest available Google Android 13 operating system installed.MobileIron - DISA Google Android 13 COBO v2r2MDM

CONFIGURATION MANAGEMENT

GOOG-14-010800 - Android 14 devices must have the latest available Google Android 14 operating system installed.MobileIron - DISA Google Android 14 COPE v2r2MDM

CONFIGURATION MANAGEMENT

GOOG-15-010800 - Android 15 devices must have the latest available Google Android 15 operating system installed.MobileIron - DISA Google Android 15 COBO v1r2MDM

CONFIGURATION MANAGEMENT

GOOG-15-010800 - Android 15 devices must have the latest available Google Android 15 operating system installed.AirWatch - DISA Google Android 15 COPE v1r2MDM

CONFIGURATION MANAGEMENT

HONW-13-009600 - All mobile Honeywell cryptography must be configured to be in FIPS 140-3 validated mode.MobileIron - DISA Honeywell Android 13 COBO v1r1MDM

SYSTEM AND COMMUNICATIONS PROTECTION

IISW-SV-009999 - The version of IIS running on the system must be a supported version.DISA IIS 8.5 Server v2r7Windows

SYSTEM AND INFORMATION INTEGRITY

JUEX-L2-000010 - The Juniper EX switch must be configured to disable non-essential capabilities.DISA Juniper EX Series Layer 2 Switch v2r3Juniper

CONFIGURATION MANAGEMENT

JUEX-NM-000680 - The Juniper EX switch must be configured with an operating system release that is currently supported by the vendor.DISA Juniper EX Series Network Device Management v2r3Juniper

CONFIGURATION MANAGEMENT

JUEX-RT-000950 - The Juniper PE router providing MPLS Virtual Private Wire Service (VPWS) must be configured to have the appropriate virtual circuit identification (VC ID) for each attachment circuit.DISA Juniper EX Series Router v2r1Juniper

CONFIGURATION MANAGEMENT

MADB-10-000300 - MariaDB must enforce approved authorizations for logical access to information and system resources in accordance with applicable access control policies.DISA MariaDB Enterprise 10.x v2r3 DBMySQLDB

ACCESS CONTROL

MADB-10-004400 - MariaDB must use NIST FIPS 140-2 validated cryptographic modules for cryptographic operations.DISA MariaDB Enterprise 10.x v2r3 DBMySQLDB

IDENTIFICATION AND AUTHENTICATION

MADB-10-008400 - MariaDB must use NSA-approved cryptography to protect classified information in accordance with the data owner's requirements.DISA MariaDB Enterprise 10.x v2r3 DBMySQLDB

SYSTEM AND COMMUNICATIONS PROTECTION

MADB-10-012600 - MariaDB products must be a version supported by the vendor.DISA MariaDB Enterprise 10.x v2r3 DBMySQLDB

SYSTEM AND SERVICES ACQUISITION

MD7X-00-000300 MongoDB must enforce approved authorizations for logical access to information and system resources in accordance with applicable access control policies.DISA MongoDB Enterprise Advanced 7.x STIG v1r1MongoDB

ACCESS CONTROL

MD7X-00-005200 MongoDB must protect the confidentiality and integrity of all information at rest.DISA MongoDB Enterprise Advanced 7.x STIG v1r1Unix

SYSTEM AND COMMUNICATIONS PROTECTION

O19C-00-009900 - The Oracle Listener must be configured to require administration authentication.DISA Oracle Database 19c STIG v1r1 WindowsWindows

CONFIGURATION MANAGEMENT

OL08-00-040000 - OL 8 must not have the telnet-server package installed.DISA Oracle Linux 8 STIG v2r5Unix

CONFIGURATION MANAGEMENT

OL08-00-040010 - OL 8 must not have the rsh-server package installed.DISA Oracle Linux 8 STIG v2r5Unix

CONFIGURATION MANAGEMENT

Overview of the HTTP profileTenable F5 BIG-IP Best Practice AuditF5

SYSTEM AND COMMUNICATIONS PROTECTION

PHTN-40-000207 The Photon operating system must configure Secure Shell (SSH) to disallow authentication with an empty password.DISA VMware vSphere 8.0 vCenter Appliance Photon OS 4.0 STIG v2r1Unix

CONFIGURATION MANAGEMENT

UBTU-20-010460 - The Ubuntu operating system must disable the x86 Ctrl-Alt-Delete key sequence.DISA Canonical Ubuntu 20.04 LTS STIG v2r3Unix

CONFIGURATION MANAGEMENT

UBTU-20-010462 - The Ubuntu operating system must not have accounts configured with blank or null passwords.DISA Canonical Ubuntu 20.04 LTS STIG v2r3Unix

CONFIGURATION MANAGEMENT

UBTU-20-010463 - The Ubuntu operating system must not allow accounts configured with blank or null passwords.DISA Canonical Ubuntu 20.04 LTS STIG v2r3Unix

CONFIGURATION MANAGEMENT

UBTU-24-300028 - Ubuntu 24.04 LTS must not allow accounts configured in Pluggable Authentication Modules (PAM) with blank or null passwords.DISA Canonical Ubuntu 24.04 LTS STIG v1r2Unix

CONFIGURATION MANAGEMENT

UBTU-24-600030 - Ubuntu 24.04 LTS must implement NIST FIPS-validated cryptography to protect classified information and for the following: To provision digital signatures, to generate cryptographic hashes, and to protect unclassified information requiring confidentiality and cryptographic protection in accordance with applicable federal laws, Executive Orders, directives, policies, regulations, and standards.DISA Canonical Ubuntu 24.04 LTS STIG v1r2Unix

SYSTEM AND COMMUNICATIONS PROTECTION

WBLC-10-000999 - The version of Oracle WebLogic running on the system must be a supported version.Oracle WebLogic Server 12c Linux v2r2Unix

SYSTEM AND INFORMATION INTEGRITY

WBLC-10-000999 - The version of Oracle WebLogic running on the system must be a supported version.Oracle WebLogic Server 12c Windows v2r2Windows

SYSTEM AND INFORMATION INTEGRITY

WN22-SO-000020 - Windows Server 2022 must prevent local accounts with blank passwords from being used from the network.DISA Microsoft Windows Server 2022 STIG v2r5Windows

CONFIGURATION MANAGEMENT

WN22-SO-000210 - Windows Server 2022 must not allow anonymous SID/Name translation.DISA Microsoft Windows Server 2022 STIG v2r5Windows

CONFIGURATION MANAGEMENT