Item Search

NameAudit NamePluginCategory
DG0079-ORACLE11 - DBMS login accounts require passwords to meet complexity requirements.DISA STIG Oracle 11 Instance v9r1 DatabaseOracleDB

IDENTIFICATION AND AUTHENTICATION

DG0126-ORACLE11 - Password reuse should be prevented where supported by the DBMS - 'No unlimited REUSE_MAX or REUSE_TIME for non DEFAULT profiles'DISA STIG Oracle 11 Instance v9r1 DatabaseOracleDB

IDENTIFICATION AND AUTHENTICATION

DTBI600 - Internet Explorer Processes for MK protocol must be enforced (Explorer).DISA STIG Microsoft Internet Explorer 9 v1r15Windows

CONFIGURATION MANAGEMENT

DTBI645 - Internet Explorer Processes for restricting pop-up windows must be enforced (Reserved).DISA STIG Microsoft Internet Explorer 9 v1r15Windows

CONFIGURATION MANAGEMENT

DTBI649 - Internet Explorer Processes for restricting pop-up windows must be enforced (IExplore).DISA STIG Microsoft Internet Explorer 9 v1r15Windows

CONFIGURATION MANAGEMENT

DTBI675 - The URL to be displayed for checking updates to Internet Explorer and Internet Tools must be about:blank.DISA STIG Microsoft Internet Explorer 9 v1r15Windows

CONFIGURATION MANAGEMENT

DTBI695 - External branding feature of Internet Explorer must be disallowed .DISA STIG Microsoft Internet Explorer 9 v1r15Windows

ACCESS CONTROL

DTBI725 - AutoComplete feature for user names and passwords on forms must be disallowed.DISA STIG Microsoft Internet Explorer 9 v1r15Windows

CONFIGURATION MANAGEMENT

DTOO137 - Access - Prompts to convert older databases must be enforced.DISA STIG Office 2010 Access v1r11Windows

CONFIGURATION MANAGEMENT

DTOO139 - The Save commands default file format must be configured.DISA STIG Microsoft Word 2016 v1r1Windows

CONFIGURATION MANAGEMENT

DTOO139 - Word - Save files default format must be configured.DISA STIG Office 2010 Word v1r12Windows

CONFIGURATION MANAGEMENT

DTOO182 - Office System - The Help Improve Proofing Tools feature for Office must be configured.DISA STIG Office System 2010 v1r13Windows

CONFIGURATION MANAGEMENT

DTOO188 - Office System - Document metadata for password protected files must be protected.DISA STIG Office System 2010 v1r13Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO195 - Office System - Passwords for secured documents must be enforced.DISA STIG Office System 2010 v1r13Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO219 - Outlook - Access restriction settings for published calendars must be configured.DISA STIG Office 2010 Outlook v1r14Windows

CONFIGURATION MANAGEMENT

DTOO227 - Outlook - Digital signatures must be allowed.DISA STIG Office 2010 Outlook v1r14Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO239 - Outlook - Outlook Security Mode must be configured to use Group Policy settings.DISA STIG Office 2010 Outlook v1r14Windows

CONFIGURATION MANAGEMENT

DTOO272 - Outlook - Permit download of content from safe zones must be configured.DISA STIG Office 2010 Outlook v1r14Windows

CONFIGURATION MANAGEMENT

DTOO278 - Outlook - Automatically configure user profile based on Active Directory primary SMTP address must be enforced.DISA STIG Office 2010 Outlook v1r14Windows

CONFIGURATION MANAGEMENT

DTOO283 - Outlook - Disabling download full text of articles as HTML must be configured.DISA STIG Office 2010 Outlook v1r14Windows

CONFIGURATION MANAGEMENT

DTOO285 - Outlook - Do not include Internet Calendar Integration in Outlook must be enforced.DISA STIG Office 2010 Outlook v1r14Windows

CONFIGURATION MANAGEMENT

DTOO286 - Outlook - User Entries to Server List must be disallowed.DISA STIG Office 2010 Outlook v1r14Windows

CONFIGURATION MANAGEMENT

DTOO304 - Publisher - Warning Bar settings for VBA macros must be configured.DISA STIG Office 2010 Publisher v1r12Windows

CONFIGURATION MANAGEMENT

DTOO304 - Warning Bar settings for VBA macros must be configured.DISA STIG Microsoft Visio 2016 v1r1Windows

CONFIGURATION MANAGEMENT

DTOO307 - Office System - Office Live Workspace Integration must be off.DISA STIG Office System 2010 v1r13Windows

CONFIGURATION MANAGEMENT

DTOO309 - InfoPath - The InfoPath APTCA Assembly Allowable List must be enforced.DISA STIG Office 2010 InfoPath v1r12Windows

CONFIGURATION MANAGEMENT

DTOO315 - Outlook - Outlook must be configured not to prompt users to choose security settings if default settings fail.DISA STIG Office 2010 Outlook v1r14Windows

CONFIGURATION MANAGEMENT

DTOO345 - Office System - Online content options must be configured for offline content availability.DISA STIG Office System 2010 v1r13Windows

CONFIGURATION MANAGEMENT

GEN000140 - A file integrity baseline must be created and maintained.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN000251 - The time synchronization configuration file (such as /etc/ntp.conf) must be group-owned by bin, sys, or system.DISA STIG AIX 5.3 v1r2Unix

ACCESS CONTROL

GEN000252 - The time synchronization configuration file (such as /etc/ntp.conf) must have mode 0640 or less permissive.DISA STIG AIX 5.3 v1r2Unix

ACCESS CONTROL

GEN000290 - The system must not have unnecessary accounts - 'guest does not exsit'DISA STIG AIX 5.3 v1r2Unix

ACCESS CONTROL

GEN000360 - Group Identifiers (GIDs) reserved for system accounts must not be assigned to non-system groups.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN000402 - The DoD login banner must be displayed as part of graphical desktop environment login prompts - 'Xlogin*greeting'DISA STIG AIX 5.3 v1r2Unix

ACCESS CONTROL

GEN000880 - The root account must be the only account having an UID of 0.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN001140 - System files and directories must not have uneven access permissions - '/bin'DISA STIG AIX 5.3 v1r2Unix

ACCESS CONTROL

GEN001160 - All files and directories must have a valid owner.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN001190 - All network services daemon files must not have extended ACLs - /usr/sbin/*DISA STIG AIX 5.3 v1r2Unix

ACCESS CONTROL

GEN001260 - System log files must have mode 0640 or less permissive - '/var/log/syslog/*'DISA STIG AIX 5.3 v1r2Unix

SYSTEM AND INFORMATION INTEGRITY

GEN001320 - NIS/NIS+/yp files must be owned by root, sys, or bin - '/var/nis/*'DISA STIG AIX 5.3 v1r2Unix

ACCESS CONTROL

GEN001340 - NIS/NIS+/yp files must be group-owned by sys, bin, other, or system - '/usr/lib/netsvc/yp/*'DISA STIG AIX 5.3 v1r2Unix

ACCESS CONTROL

GEN001340 - NIS/NIS+/yp files must be group-owned by sys, bin, other, or system - '/var/nis/*'DISA STIG AIX 5.3 v1r2Unix

ACCESS CONTROL

GEN001360 - The NIS/NIS+/yp files must have mode 0755 or less permissive - '/usr/lib/netsvc/yp/*'DISA STIG AIX 5.3 v1r2Unix

ACCESS CONTROL

GEN001360 - The NIS/NIS+/yp files must have mode 0755 or less permissive - '/var/yp/*'DISA STIG AIX 5.3 v1r2Unix

ACCESS CONTROL

GEN001366 - The /etc/hosts file must be owned by root.DISA STIG AIX 5.3 v1r2Unix

ACCESS CONTROL

GEN001373 - The /etc/nsswitch.conf file must have mode 0644 or less permissive - Not ApplicableDISA STIG AIX 5.3 v1r2Unix

ACCESS CONTROL

GEN001391 - The /etc/group file must be owned by root.DISA STIG AIX 5.3 v1r2Unix

ACCESS CONTROL

GEN001400 - The /etc/security/passwd file must be owned by root.DISA STIG AIX 5.3 v1r2Unix

ACCESS CONTROL

GEN001590 - All run control scripts must have no extended ACLs - '/etc/init.d'DISA STIG AIX 5.3 v1r2Unix

ACCESS CONTROL

GEN001610 - Run control scripts' lists of preloaded libraries must contain only absolute paths.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT