Item Search

NameAudit NamePluginCategory
1.001 - Physical security of the Automated Information System (AIS) does not meet DISA requirements.DISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

3.076 - The system is not configured to meet the minimum requirement for session security for NTLM SSP based Clients.DISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

3.112 - Group Policy objects are not reprocessed if they have not changed.DISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

3.121 - The system does not have a backup administrator accountDISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

3.122 - Administrator Passwords are changed when necessary.DISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

3.134 - User Account Control - Elevate UIAccess applications that are in secure locationsDISA Windows Vista STIG v6r41Windows

SYSTEM AND COMMUNICATIONS PROTECTION

4.002 - Number of allowed bad-logon attempts does not meet minimum requirements.DISA Windows Vista STIG v6r41Windows

ACCESS CONTROL

4.008 - Auditing must be configured as required. - 'Logon/Logoff -> Special Logon' successes.DISA Windows Vista STIG v6r41Windows

AUDIT AND ACCOUNTABILITY

GEN000950 - The root account's list of preloaded libraries must be empty.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN001000 - Remote consoles must be disabled or protected from unauthorized access.DISA AIX 5.3 STIG v1r2Unix

ACCESS CONTROL

GEN001374 - The /etc/nsswitch.conf file must not have an extended ACL.DISA AIX 5.3 STIG v1r2Unix

ACCESS CONTROL

GEN001550 - All files and directories in user's home directories must be group-owned by a group the home directory's owner is member.DISA AIX 5.3 STIG v1r2Unix

ACCESS CONTROL

GEN002020 - All .rhosts, .shosts, or host.equiv files must only contain trusted host-user pairs.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN002280 - Device files and directories must only be writable by users with a system account or as configured by the vendor.DISA AIX 5.3 STIG v1r2Unix

ACCESS CONTROL

GEN002460 - The system must be checked weekly for unauthorized setgid files, and unauthorized modification to authorized setgid files.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN002520 - All public directories must be owned by root or an application account.DISA AIX 5.3 STIG v1r2Unix

ACCESS CONTROL

GEN002680 - System audit logs must be owned by root.DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002690 - System audit logs must be group-owned by bin, sys, or system.DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002740 - The audit system must be configured to audit file deletions - '/etc/security/audit/events FILE_Unlink exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/config FILE_Chpriv exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/config FILE_Mknod exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/config PASSWORD_Check exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/config PROC_Privilege exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/config PROC_SetUserIDs exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/config USER_Remove exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/config USER_SetEnv exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/events DEV_Create exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/events FS_Mount exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/events PROC_Adjtime exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/events PROC_Setpgid exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/events USER_Create exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/events USER_SetEnv exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002800 - System must be configured to audit login, logout, and session initiation - '/etc/security/audit/config USER_Login exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002800 - System must be configured to audit login, logout, and session initiation - '/etc/security/audit/events USER_Logout exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002825 - System must be configured to audit load/unload dynamic kernel modules - '/etc/security/audit/config DEV_Create exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002825 - System must be configured to audit load/unload dynamic kernel modules - '/etc/security/audit/events DEV_Create exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002825 - System must be configured to audit load/unload dynamic kernel modules - '/etc/security/audit/events DEV_Remove exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN003020 - Cron must not execute programs in, or subordinate to, world-writable directories.DISA AIX 5.3 STIG v1r2Unix

ACCESS CONTROL

GEN003380 - The 'at' daemon must not execute programs in, or subordinate to, world-writable directories.DISA AIX 5.3 STIG v1r2Unix

ACCESS CONTROL

GEN003700 - Inetd and xinetd must be disabled or removed if no network services utilizing them are enabled - inetd is runningDISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN005260 - X Window System connections not required must be disabled.DISA AIX 5.3 STIG v1r2Unix

ACCESS CONTROL

GEN005305 - The SNMP service must use only SNMPv3 or its successors.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN005340 - Management Information Base (MIB) files must have mode 0640 or less permissive.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN005506 - The SSH daemon must be configured to not use Cipher-Block Chaining (CBC) ciphers.DISA AIX 5.3 STIG v1r2Unix

SYSTEM AND COMMUNICATIONS PROTECTION

GEN005570 - The system must be configured with a default gateway for IPv6 if the system uses IPv6, unless the system is a router.DISA AIX 5.3 STIG v1r2Unix

ACCESS CONTROL

GEN006060 - The system must not run Samba unless needed.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN006420 - NIS maps must be protected through hard-to-guess domain names.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN007700 - The IPv6 protocol handler must not be bound to the network stack unless needed.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN008000 - Certificates used to authenticate to the LDAP server must be provided from DoD-approved external PKI - 'ldapsslkeyf exists'DISA AIX 5.3 STIG v1r2Unix

SYSTEM AND COMMUNICATIONS PROTECTION

GEN008020 - The LDAP TLS connection must require a certificate and this certificate has a valid path to a trusted CA - 'client Key Label'DISA AIX 5.3 STIG v1r2Unix

SYSTEM AND COMMUNICATIONS PROTECTION