Item Search

NameAudit NamePluginCategory
1.66 O19C-00-013800CIS Oracle Database 19c STIG v1.1.0 CAT II OracleDBOracleDB

IDENTIFICATION AND AUTHENTICATION

1.114 ALMA-09-015640CIS Cloud Linux AlmaLinux OS 9 STIG v1.0.0 CAT IIUnix

CONFIGURATION MANAGEMENT

2.2 Ensure that MongoDB does not bypass authentication via the localhost exceptionCIS MongoDB 3.4 L1 Windows Audit v1.0.0Windows

CONFIGURATION MANAGEMENT

7.2 Ensure appropriate database file permissions are set.CIS MongoDB 7 v1.2.0 L1 WindowsWindows

ACCESS CONTROL, MEDIA PROTECTION

7.2 Ensure appropriate database file permissions are set.CIS MongoDB 8 v1.0.0 L1 WindowsWindows

ACCESS CONTROL, MEDIA PROTECTION

7.2 Ensure that database file permissions are set correctlyCIS MongoDB 3.4 L1 Windows Audit v1.0.0Windows

CONFIGURATION MANAGEMENT

7.2 Ensure that database file permissions are set correctlyCIS MongoDB 3.6 L1 Windows Audit v1.1.0Windows

ACCESS CONTROL, MEDIA PROTECTION

7.2 Ensure that database file permissions are set correctlyCIS MongoDB 3.2 L1 Windows Audit v1.0.0Windows

CONFIGURATION MANAGEMENT

7.10 Repairing permissions is no longer neededCIS Apple macOS 10.12 L1 v1.2.0Unix

SYSTEM AND COMMUNICATIONS PROTECTION

7.10 Repairing permissions is no longer neededCIS Apple macOS 10.13 L1 v1.1.0Unix

SYSTEM AND COMMUNICATIONS PROTECTION

ARST-L2-000070 - The Arista MLS switch must have STP Loop Guard enabled on all nondesignated STP switch ports.DISA Arista MLS EOS 4.X L2S STIG v2r3Arista

SYSTEM AND COMMUNICATIONS PROTECTION

ARST-L2-000180 - The Arista MLS layer 2 switch must not have the default VLAN assigned to any host-facing switch ports.DISA Arista MLS EOS 4.X L2S STIG v2r3Arista

SYSTEM AND COMMUNICATIONS PROTECTION

ARST-ND-000120 - The Arista network device must be configured to enforce the limit of three consecutive invalid logon attempts, after which time it must block any login attempt for 15 minutes.DISA Arista MLS EOS 4.X NDM STIG v2r2Arista

ACCESS CONTROL

ARST-ND-000470 - The Arista network device must use FIPS 140-2 approved algorithms for authentication to a cryptographic module.DISA Arista MLS EOS 4.X NDM STIG v2r2Arista

IDENTIFICATION AND AUTHENTICATION

ARST-ND-000660 - The Arista network device must be configured to authenticate SNMP messages using a FIPS-validated Keyed-Hash Message Authentication Code (HMAC).DISA Arista MLS EOS 4.X NDM STIG v2r2Arista

IDENTIFICATION AND AUTHENTICATION

ARST-ND-000690 - The Arista network devices must use FIPS-validated Keyed-Hash Message Authentication Code (HMAC) to protect the integrity of remote maintenance sessions.DISA Arista MLS EOS 4.X NDM STIG v2r2Arista

IDENTIFICATION AND AUTHENTICATION, MAINTENANCE

ARST-ND-000790 - The Arista network device must be configured to capture all DOD auditable events.DISA Arista MLS EOS 4.X NDM STIG v2r2Arista

AUDIT AND ACCOUNTABILITY

ARST-ND-000810 - The network device must be configured to use an authentication server to authenticate users prior to granting administrative access.DISA Arista MLS EOS 4.X NDM STIG v2r2Arista

CONFIGURATION MANAGEMENT

ARST-RT-000050 - The Arista BGP router must be configured to reject outbound route advertisements for any prefixes that do not belong to any customers or the local autonomous system (AS).DISA Arista MLS EOS 4.X Router STIG v2r2Arista

ACCESS CONTROL

ARST-RT-000120 - The Arista multicast router must be configured to disable Protocol Independent Multicast (PIM) on all interfaces that are not required to support multicast routing.DISA Arista MLS EOS 4.X Router STIG v2r2Arista

ACCESS CONTROL

ARST-RT-000150 - The Arista router must be configured to have all inactive interfaces disabled.DISA Arista MLS EOS 4.X Router STIG v2r2Arista

ACCESS CONTROL

ARST-RT-000190 - The out-of-band management (OOBM) Arista gateway router must be configured to have separate IGP instances for the managed network and management network.DISA Arista MLS EOS 4.X Router STIG v2r2Arista

ACCESS CONTROL

DISA_STIG_Amazon_Linux_2023_v1r4.audit from DISA Amazon Linux 2023 STIG v1r4DISA Amazon Linux 2023 STIG v1r4Unix
DISA_STIG_Cisco_ASA_FW_v2r1.audit from DISA Cisco ASA Firewall v2r1 STIGDISA STIG Cisco ASA FW v2r1Cisco
DISA_STIG_Cisco_ASA_VPN_v2r2.audit from DISA Cisco ASA VPN v2r2 STIGDISA STIG Cisco ASA VPN v2r2Cisco
DISA_STIG_Crunchy_Data_Postgres_16_v1r3_PostgreSQLDB.audit from DISA Crunchy Data Postgres 16 STIG v1r3DISA Crunchy Data Postgres 16 STIG v1r3 PostgreSQLDBPostgreSQLDB
DISA_STIG_Crunchy_Data_Postgres_16_v1r3_Unix.audit from DISA Crunchy Data Postgres 16 STIG v1r3DISA Crunchy Data Postgres 16 STIG v1r3 UnixUnix
DISA_STIG_Microsoft_Access_2010_v1r11.audit from DISA Microsoft Access 2010 v1r11 STIGDISA STIG Office 2010 Access v1r11Windows
DISA_STIG_Microsoft_Defender_Antivirus_v2r9.audit from DISA Microsoft Defender Antivirus STIG v2r9DISA Microsoft Defender Antivirus STIG v2r9Windows
DISA_STIG_Microsoft_OneNote_2016_v2r1.audit from DISA Microsoft OneNote 2016 v2r1 STIGDISA STIG Microsoft OneNote 2016 v2r1Windows
DISA_STIG_Microsoft_Publisher_2016_v2r1.audit from DISA Microsoft Publisher 2016 v2r1 STIGDISA STIG Microsoft Publisher 2016 v2r1Windows
DISA_STIG_Microsoft_Visio_2013_v1r5.audit from DISA Microsoft Visio 2013 v1r5 STIGDISA STIG Microsoft Visio 2013 v1r5Windows
DISA_STIG_Microsoft_Windows_11_v2r8.audit from DISA Microsoft Windows 11 STIG v2r8DISA Microsoft Windows 11 STIG v2r8Windows
DISA_STIG_MS_Windows_Privileged_Access_Workstation_v3r2.audit from DISA Microsoft Windows PAW v3r2 STIGDISA Microsoft Windows PAW STIG v3r2Windows
DISA_STIG_Oracle_Linux_5_v2r1.audit from DISA Oracle Linux 5 v2r1 STIGDISA STIG for Oracle Linux 5 v2r1Unix
DISA_STIG_Oracle_Linux_6_v2r7.audit from DISA Oracle Linux 6 v2r7 STIGDISA STIG Oracle Linux 6 v2r7Unix
DISA_STIG_Oracle_Linux_8_v2r9.audit from DISA Oracle Linux 8 STIG v2r9DISA Oracle Linux 8 STIG v2r9Unix
DISA_STIG_Oracle_WebLogic_Server_12c_Linux_v2r2_Middleware.audit from DISA Oracle WebLogic Server 12c v2r2 STIGOracle WebLogic Server 12c Linux v2r2 MiddlewareUnix
DISA_STIG_Solaris_11_X86_v3r6.audit from DISA Solaris 11 X86 STIG v3r6DISA Solaris 11 X86 STIG v3r6Unix
DISA_STIG_VMware_vSphere_8.0_vCenter_v2r4_Unix.audit from DISA VMware vSphere 8.0 vCenter STIG v2r4DISA VMware vSphere 8.0 vCenter STIG v2r4 UnixUnix
O19C-00-013800 - Oracle Database must uniquely identify and authenticate organizational users (or processes acting on behalf of organizational users).DISA Oracle Database 19c STIG v1r5 OracleDBOracleDB

IDENTIFICATION AND AUTHENTICATION

O19C-00-013800 - Oracle Database must uniquely identify and authenticate organizational users (or processes acting on behalf of organizational users).DISA Oracle Database 19c STIG v1r3 OracleDBOracleDB

IDENTIFICATION AND AUTHENTICATION

O121-C2-019600 - The system must verify there have not been unauthorized changes to the DBMS software and information.DISA Oracle Database 12c STIG v3r5 OracleDBOracleDB

SYSTEM AND INFORMATION INTEGRITY

O121-P2-012800 - The DBMS must uniquely identify and authenticate organizational users (or processes acting on behalf of organizational users).DISA Oracle Database 12c STIG v3r5 OracleDBOracleDB

IDENTIFICATION AND AUTHENTICATION

OH12-1X-000255 - OHS must have the SSLEngine, SSLProtocol, and SSLWallet directives enabled to meet the requirements of applicable federal laws, Executive Orders, directives, policies, regulations, standards, and guidance when encrypting stored data - SSLEngineDISA STIG Oracle HTTP Server 12.1.3 v2r3Unix

IDENTIFICATION AND AUTHENTICATION

OH12-1X-000259 - OHS must have the SSLEngine, SSLProtocol, and SSLWallet directives enabled and configured to meet the requirements of applicable federal laws, Executive Orders, directives, policies, regulations, standards, and guidance for such authentication - SSLEngineDISA STIG Oracle HTTP Server 12.1.3 v2r3Unix

IDENTIFICATION AND AUTHENTICATION

WBLC-08-000236 - Oracle WebLogic must protect against or limit the effects of HTTP types of Denial of Service (DoS) attacks.Oracle WebLogic Server 12c Linux v2r2 MiddlewareUnix

SYSTEM AND COMMUNICATIONS PROTECTION

WBLC-08-000236 - Oracle WebLogic must protect against or limit the effects of HTTP types of Denial of Service (DoS) attacks.Oracle WebLogic Server 12c Windows v2r2Windows

SYSTEM AND COMMUNICATIONS PROTECTION

WN10-UR-000085 - The Deny log on locally user right on workstations must be configured to prevent access from highly privileged domain accounts on domain systems and unauthenticated access on all systems.DISA Microsoft Windows 10 STIG v3r6Windows

ACCESS CONTROL

WN11-UR-000085 - The 'Deny log on locally' user right on workstations must be configured to prevent access from highly privileged domain accounts on domain systems and unauthenticated access on all systems.DISA Microsoft Windows 11 STIG v2r8Windows

ACCESS CONTROL