Item Search

NameAudit NamePluginCategory
DTAVSEL-003 - The McAfee VirusScan Enterprise for Linux 1.9.x/2.0.x must be configured to enable On-Access scanning.McAfee Virus Scan Enterprise for Linux 1.9x/2.0x Managed Client v1r5Unix

SYSTEM AND INFORMATION INTEGRITY

ESXI-67-000074 - The ESXi host must exclusively enable TLS 1.2 for all endpoints.DISA STIG VMware vSphere 6.7 ESXi v1r3VMware

CONFIGURATION MANAGEMENT

ESXI-80-000221 - The ESXi host must have all security patches and updates installed.DISA VMware vSphere 8.0 ESXi STIG v2r3 VMwareVMware

CONFIGURATION MANAGEMENT

HONW-09-008400 - On all Honeywell Mobility Edge Android Pie devices, cryptography must be configured to be in FIPS 140-2 validated mode.MobileIron - DISA Honeywell Android 9.x COBO v1r2MDM

CONFIGURATION MANAGEMENT

HONW-09-010900 - Honeywell Mobility Edge Android Pie devices must have a NIAP validated Honeywell Mobility Edge Android Pie devices operating system installed.MobileIron - DISA Honeywell Android 9.x COBO v1r2MDM

CONFIGURATION MANAGEMENT

HONW-09-010900 - Honeywell Mobility Edge Android Pie devices must have a NIAP validated Honeywell Mobility Edge Android Pie devices operating system installed.MobileIron - DISA Honeywell Android 9.x COPE v1r2MDM

CONFIGURATION MANAGEMENT

KNOX-07-018900 - The Samsung Android 7 with Knox must use a NIAP certified container for work data and applications.AirWatch - DISA Samsung Android 7 with Knox 2.x v1r1MDM

CONFIGURATION MANAGEMENT

MD4X-00-001700 - MongoDB must enforce approved authorizations for logical access to information and system resources in accordance with applicable access control policies.DISA STIG MongoDB Enterprise Advanced 4.x v1r4 DBMongoDB

ACCESS CONTROL

MOTO-09-010800 - Motorola Android Pie devices must have the latest available Motorola Android Pie operating system installed.MobileIron - DISA Motorola Android Pie.x COBO v1r2MDM

CONFIGURATION MANAGEMENT

MOTO-09-010900 - Motorola Android Pie devices must have a NIAP-validated Motorola Android Pie operating system installed.AirWatch - DISA Motorola Android Pie.x COBO v1r2MDM

CONFIGURATION MANAGEMENT

MOTO-09-010900 - Motorola Android Pie devices must have a NIAP-validated Motorola Android Pie operating system installed.AirWatch - DISA Motorola Android Pie.x COPE v1r2MDM

CONFIGURATION MANAGEMENT

MOTO-09-999999 - All Motorola Android 9 installations must be removed.MobileIron - DISA Motorola Android Pie.x COPE v1r2MDM

CONFIGURATION MANAGEMENT

MOTS-11-010800 - Motorola Solutions Android 11 devices must have the latest available Motorola Solutions Android 11 operating system installed.MobileIron - DISA Motorola Solutions Android 11 COBO v1r3MDM

CONFIGURATION MANAGEMENT

MSFT-11-010800 - Microsoft Android 11 devices must have the latest available Microsoft Android 11 operating system installed.MobileIron - DISA Microsoft Android 11 COPE v1r2MDM

CONFIGURATION MANAGEMENT

O19C-00-007400 - Oracle Database products must be a version supported by the vendor.DISA Oracle Database 19c STIG v1r3 OracleDBOracleDB

SYSTEM AND SERVICES ACQUISITION

O19C-00-015500 - Oracle Database must use NIST-validated FIPS 140-2/140-3 compliant cryptography for authentication mechanisms.DISA Oracle Database 19c STIG v1r3 WindowsWindows

IDENTIFICATION AND AUTHENTICATION

O19C-00-016000 - Oracle Database must implement NIST FIPS 140-2/140-3 validated cryptographic modules to protect unclassified information requiring confidentiality and cryptographic protection, in accordance with the data owner's requirements.DISA Oracle Database 19c STIG v1r3 OracleDBOracleDB

SYSTEM AND COMMUNICATIONS PROTECTION

OL07-00-020231 - The Oracle Linux operating system must be configured so the x86 Ctrl-Alt-Delete key sequence is disabled in the Graphical User Interface.DISA Oracle Linux 7 STIG v3r5Unix

CONFIGURATION MANAGEMENT

OL08-00-010820 - Unattended or automatic logon via the OL 8 graphical user interface must not be allowed.DISA Oracle Linux 8 STIG v2r9Unix

CONFIGURATION MANAGEMENT

OL08-00-020330 - OL 8 must not allow accounts configured with blank or null passwords.DISA Oracle Linux 8 STIG v2r9Unix

CONFIGURATION MANAGEMENT

OL08-00-040000 - OL 8 must not have the telnet-server package installed.DISA Oracle Linux 8 STIG v2r9Unix

CONFIGURATION MANAGEMENT

OL08-00-040200 - The root account must be the only account having unrestricted access to the OL 8 system.DISA Oracle Linux 8 STIG v2r9Unix

CONFIGURATION MANAGEMENT

OL09-00-002344 - OL 9 must enable the Pluggable Authentication Module (PAM) interface for SSHD.DISA Oracle Linux 9 STIG v1r6Unix

MAINTENANCE

OL09-00-003000 - OL 9 must be configured so that the root account is the only account having unrestricted access to the system.DISA Oracle Linux 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

PGS9-00-012900 - PostgreSQL products must be a version supported by the vendor.DISA STIG PostgreSQL 9.x on RHEL OS v2r5Unix

SYSTEM AND SERVICES ACQUISITION

PHTN-30-000031 - The Photon operating system must require authentication upon booting into single-user and maintenance modes.DISA STIG VMware vSphere 7.0 Photon OS v1r4Unix

ACCESS CONTROL

RHEL-08-010015 - RHEL 8 must have the crypto-policies package installed.DISA Red Hat Enterprise Linux 8 STIG v2r8Unix

SYSTEM AND COMMUNICATIONS PROTECTION

RHEL-08-010150 - RHEL 8 operating systems booted with a BIOS must require authentication upon booting into single-user and maintenance modes.DISA Red Hat Enterprise Linux 8 STIG v2r8Unix

ACCESS CONTROL

RHEL-08-010270 - RHEL 8 cryptographic policy must not be overridden.DISA Red Hat Enterprise Linux 8 STIG v2r8Unix

SYSTEM AND COMMUNICATIONS PROTECTION

RHEL-10-600640 - RHEL 10 must enable the Pluggable Authentication Module (PAM) interface for SSHD.DISA Red Hat Enterprise Linux 10 STIG v1r2Unix

MAINTENANCE

SLES-15-020181 - The SUSE operating system must not have accounts configured with blank or null passwords.DISA SUSE Linux Enterprise Server 15 STIG v2r6Unix

CONFIGURATION MANAGEMENT

SPLK-CL-000320 - Splunk Enterprise must use organization-level authentication to uniquely identify and authenticate users.DISA STIG Splunk Enterprise 8.x for Linux v2r3 STIG REST APISplunk

IDENTIFICATION AND AUTHENTICATION

SPLK-CL-000460 - Splunk Enterprise must be configured to protect the confidentiality and integrity of transmitted information.DISA STIG Splunk Enterprise 8.x for Linux v2r3 STIG REST APISplunk

SYSTEM AND COMMUNICATIONS PROTECTION

SPLK-CL-000500 - Splunk Enterprise must use a version supported by the vendor.DISA STIG Splunk Enterprise 7.x for Windows v3r2 OSWindows

SYSTEM AND INFORMATION INTEGRITY

SQL2-00-019600 - SQL Server databases in the classified environment, containing classified or sensitive information, must be encrypted using approved cryptography.DISA STIG SQL Server 2012 DB Instance Security v1r20MS_SQLDB

SYSTEM AND COMMUNICATIONS PROTECTION

SQL4-00-038300 - Microsoft SQL Server products must be a version supported by the vendor.DISA STIG SQL Server 2014 Database Audit v1r7MS_SQLDB

SYSTEM AND SERVICES ACQUISITION

SQL4-00-039200 - Microsoft SQL Server products must be a version supported by the vendor.DISA STIG SQL Server 2014 Instance DB Audit v2r4MS_SQLDB

SYSTEM AND SERVICES ACQUISITION

SYMP-AG-000070 - Symantec ProxySG must restrict or block harmful or suspicious communications traffic by controlling the flow of information between interconnected networks based on attribute- and content-based inspection of the source, destination, headers, and/or content of the communications traffic - Web AccessDISA Symantec ProxySG Benchmark ALG v1r3BlueCoat

ACCESS CONTROL

SYMP-AG-000320 - Symantec ProxySG must uniquely identify and authenticate organizational users (or processes acting on behalf of organizational users) - Domain JoinedDISA Symantec ProxySG Benchmark ALG v1r3BlueCoat

IDENTIFICATION AND AUTHENTICATION

SYMP-AG-000330 - Symantec ProxySG must be configured with a pre-established trust relationship and mechanisms with appropriate authorities that validate user account access authorizations and privileges - Domain ExistsDISA Symantec ProxySG Benchmark ALG v1r3BlueCoat

IDENTIFICATION AND AUTHENTICATION

SYMP-NM-000280 - Symantec ProxySG must be configured to use only FIPS 140-2 approved algorithms for authentication to a cryptographic module with any application or protocol.DISA Symantec ProxySG Benchmark NDM v1r2BlueCoat

IDENTIFICATION AND AUTHENTICATION

SYMP-NM-000310 - Symantec ProxySG must terminate all network connections associated with a device management session at the end of the session, or the session must be terminated after 10 minutes of inactivity except to fulfill documented and validated mission requirements - web timeoutDISA Symantec ProxySG Benchmark NDM v1r2BlueCoat

SYSTEM AND COMMUNICATIONS PROTECTION

VCLD-67-000034 - VAMI must implement TLS1.2 exclusively - tlsv12DISA STIG VMware vSphere 6.7 VAMI-lighttpd v1r3Unix

SYSTEM AND COMMUNICATIONS PROTECTION

VCLD-67-000999 - The version of VAMI-lighttpd running on the system must be a supported version.DISA STIG VMware vSphere 6.7 VAMI-lighttpd v1r3Unix

SYSTEM AND INFORMATION INTEGRITY

VCLD-70-000056 - VAMI must enable FIPS mode.DISA STIG VMware vSphere 7.0 VAMI v1r2Unix

IDENTIFICATION AND AUTHENTICATION

VCRP-67-000999 - The version of RhttpProxy running on the system must be a supported version.DISA STIG VMware vSphere 6.7 RhttpProxy v1r3Unix

SYSTEM AND INFORMATION INTEGRITY

VCWN-65-000999 - The version of vCenter Server for Windows running on the system must be a supported version.DISA VMware vSphere 6.5 vCenter Server for Windows STIG v2r3VMware

SYSTEM AND INFORMATION INTEGRITY

WBLC-10-000999 - The version of Oracle WebLogic running on the system must be a supported version.Oracle WebLogic Server 12c Windows v2r2Windows

SYSTEM AND INFORMATION INTEGRITY

ZEBR-10-010800 - Zebra Android 10 devices must have the latest available Zebra Android 10 operating system installed.AirWatch - DISA Zebra Android 10 COBO v1r2MDM

CONFIGURATION MANAGEMENT

ZEBR-10-999999 - All Zebra Android 10 installations must be removed.MobileIron - DISA Zebra Android 10 COPE v1r2MDM

CONFIGURATION MANAGEMENT