Item Search

NameAudit NamePluginCategory
1.78 UBTU-24-400020CIS Ubuntu Linux 24.04 LTS STIG v1.0.0 CAT IIUnix

IDENTIFICATION AND AUTHENTICATION

1.100 UBTU-24-600010CIS Ubuntu Linux 24.04 LTS STIG v1.0.0 CAT IIUnix

SYSTEM AND COMMUNICATIONS PROTECTION

CIS_Ubuntu_18.04_LXD_Host_v1.0.0_L2_Workstation.audit from CIS Ubuntu Linux 18.04 LXD Host BenchmarkCIS Ubuntu Linux 18.04 LXD Host L2 Workstation v1.0.0Unix
CIS_Ubuntu_Linux_22.04_LTS_STIG_v1.0.0_CAT_I.audit from CIS Ubuntu Linux 22.04 LTS STIG Benchmark v1.0.0CIS Ubuntu Linux 22.04 LTS STIG v1.0.0 CAT IUnix
CIS_Ubuntu_Linux_22.04_LTS_STIG_v1.0.0_CAT_II.audit from CIS Ubuntu Linux 22.04 LTS STIG Benchmark v1.0.0CIS Ubuntu Linux 22.04 LTS STIG v1.0.0 CAT IIUnix
CIS_Ubuntu_Linux_22.04_LTS_STIG_v1.0.0_CAT_III.audit from CIS Ubuntu Linux 22.04 LTS STIG Benchmark v1.0.0CIS Ubuntu Linux 22.04 LTS STIG v1.0.0 CAT IIIUnix
CIS_Ubuntu_Linux_24.04_LTS_STIG_v1.0.0_CAT_I.audit from CIS Ubuntu Linux 24.04 LTS STIG Benchmark v1.0.0CIS Ubuntu Linux 24.04 LTS STIG v1.0.0 CAT IUnix
CIS_Ubuntu_Linux_24.04_LTS_STIG_v1.0.0_CAT_II.audit from CIS Ubuntu Linux 24.04 LTS STIG Benchmark v1.0.0CIS Ubuntu Linux 24.04 LTS STIG v1.0.0 CAT IIUnix
CIS_Ubuntu_Linux_24.04_LTS_STIG_v1.0.0_CAT_III.audit from CIS Ubuntu Linux 24.04 LTS STIG Benchmark v1.0.0CIS Ubuntu Linux 24.04 LTS STIG v1.0.0 CAT IIIUnix
UBTU-22-232030 - Ubuntu 22.04 LTS must configure "/var/log/syslog" file with mode "640" or less permissive.DISA Canonical Ubuntu 22.04 LTS STIG v2r8Unix

SYSTEM AND INFORMATION INTEGRITY

UBTU-22-232065 - Ubuntu 22.04 LTS library directories must be group-owned by "root".DISA Canonical Ubuntu 22.04 LTS STIG v2r8Unix

CONFIGURATION MANAGEMENT

UBTU-22-232120 - Ubuntu 22.04 LTS must configure the "/var/log" directory to be owned by "root".DISA Canonical Ubuntu 22.04 LTS STIG v2r8Unix

SYSTEM AND INFORMATION INTEGRITY

UBTU-22-232125 - Ubuntu 22.04 LTS must configure the "/var/log" directory to be group-owned by "syslog".DISA Canonical Ubuntu 22.04 LTS STIG v2r8Unix

SYSTEM AND INFORMATION INTEGRITY

UBTU-22-232130 - Ubuntu 22.04 LTS must configure "/var/log/syslog" file to be owned by "syslog".DISA Canonical Ubuntu 22.04 LTS STIG v2r8Unix

SYSTEM AND INFORMATION INTEGRITY

UBTU-22-232135 - Ubuntu 22.04 LTS must configure the "/var/log/syslog" file to be group-owned by "adm".DISA Canonical Ubuntu 22.04 LTS STIG v2r8Unix

SYSTEM AND INFORMATION INTEGRITY

UBTU-22-411010 - Ubuntu 22.04 LTS must prevent direct login into the root account.DISA Canonical Ubuntu 22.04 LTS STIG v2r8Unix

IDENTIFICATION AND AUTHENTICATION

UBTU-22-411025 - Ubuntu 22.04 LTS must enforce 24 hours/one day as the minimum password lifetime. Passwords for new users must have a 24 hours/one day minimum password lifetime restriction.DISA Canonical Ubuntu 22.04 LTS STIG v2r8Unix

IDENTIFICATION AND AUTHENTICATION

UBTU-22-411030 - Ubuntu 22.04 LTS must enforce a 60-day maximum password lifetime restriction. Passwords for new users must have a 60-day maximum password lifetime restriction.DISA Canonical Ubuntu 22.04 LTS STIG v2r8Unix

IDENTIFICATION AND AUTHENTICATION

UBTU-22-411040 - Ubuntu 22.04 LTS must automatically expire temporary accounts within 72 hours.DISA Canonical Ubuntu 22.04 LTS STIG v2r8Unix

ACCESS CONTROL

UBTU-22-611020 - Ubuntu 22.04 LTS must enforce password complexity by requiring that at least one numeric character be used.DISA Canonical Ubuntu 22.04 LTS STIG v2r8Unix

IDENTIFICATION AND AUTHENTICATION

UBTU-22-611025 - Ubuntu 22.04 LTS must enforce password complexity by requiring that at least one special character be used.DISA Canonical Ubuntu 22.04 LTS STIG v2r8Unix

IDENTIFICATION AND AUTHENTICATION

UBTU-22-611035 - Ubuntu 22.04 LTS must enforce a minimum 15-character password length.DISA Canonical Ubuntu 22.04 LTS STIG v2r8Unix

IDENTIFICATION AND AUTHENTICATION

UBTU-22-611040 - Ubuntu 22.04 LTS must require the change of at least eight characters when passwords are changed.DISA Canonical Ubuntu 22.04 LTS STIG v2r8Unix

IDENTIFICATION AND AUTHENTICATION

UBTU-22-611070 - Ubuntu 22.04 LTS must encrypt all stored passwords with a FIPS 140-3-approved cryptographic hashing algorithm.DISA Canonical Ubuntu 22.04 LTS STIG v2r8Unix

IDENTIFICATION AND AUTHENTICATION

UBTU-22-612025 - Ubuntu 22.04 LTS must electronically verify personal identity verification (PIV) credentials.DISA Canonical Ubuntu 22.04 LTS STIG v2r8Unix

IDENTIFICATION AND AUTHENTICATION

UBTU-22-653030 - Ubuntu 22.04 LTS must shut down by default upon audit failure.DISA Canonical Ubuntu 22.04 LTS STIG v2r8Unix

AUDIT AND ACCOUNTABILITY

UBTU-24-100010 - Ubuntu 24.04 LTS must not have the "systemd-timesyncd" package installed.DISA Canonical Ubuntu 24.04 LTS STIG v1r5Unix

CONFIGURATION MANAGEMENT

UBTU-24-100040 - Ubuntu 24.04 LTS must not have the rsh-server package installed.DISA Canonical Ubuntu 24.04 LTS STIG v1r5Unix

CONFIGURATION MANAGEMENT

UBTU-24-100400 - Ubuntu 24.04 LTS must have the "auditd" package installed.DISA Canonical Ubuntu 24.04 LTS STIG v1r5Unix

AUDIT AND ACCOUNTABILITY

UBTU-24-100410 - Ubuntu 24.04 LTS must produce audit records and reports containing information to establish when, where, what type, the source, and the outcome for all DOD-defined auditable events and actions in near real time.DISA Canonical Ubuntu 24.04 LTS STIG v1r5Unix

AUDIT AND ACCOUNTABILITY

UBTU-24-100900 - Ubuntu 24.04 LTS must accept Personal Identity Verification (PIV) credentials.DISA Canonical Ubuntu 24.04 LTS STIG v1r5Unix

IDENTIFICATION AND AUTHENTICATION

UBTU-24-100910 - Ubuntu 24.04 LTS must accept Personal Identity Verification (PIV) credentials managed through the Privileged Access Management (PAM) framework.DISA Canonical Ubuntu 24.04 LTS STIG v1r5Unix

IDENTIFICATION AND AUTHENTICATION

UBTU-24-200250 - Ubuntu 24.04 LTS must automatically remove or disable emergency accounts after 72 hours.DISA Canonical Ubuntu 24.04 LTS STIG v1r5Unix

ACCESS CONTROL

UBTU-24-200650 - Ubuntu 24.04 LTS must enable the graphical user logon banner to display the Standard Mandatory DOD Notice and Consent Banner before granting local access to the system via a graphical user logon.DISA Canonical Ubuntu 24.04 LTS STIG v1r5Unix

ACCESS CONTROL

UBTU-24-400030 - Ubuntu 24.04 LTS must implement smart card logins for multifactor authentication for local and network access to privileged and nonprivileged accounts over SSH.DISA Canonical Ubuntu 24.04 LTS STIG v1r5Unix

IDENTIFICATION AND AUTHENTICATION

UBTU-24-400060 - Ubuntu 24.04 LTS must electronically verify Personal Identity Verification (PIV) credentials.DISA Canonical Ubuntu 24.04 LTS STIG v1r5Unix

IDENTIFICATION AND AUTHENTICATION

UBTU-24-400280 - Ubuntu 24.04 LTS must enforce password complexity by requiring that at least one numeric character be used.DISA Canonical Ubuntu 24.04 LTS STIG v1r5Unix

IDENTIFICATION AND AUTHENTICATION

UBTU-24-400300 - Ubuntu 24.04 LTS must enforce 24 hours/1 day as the minimum password lifetime. Passwords for new users must have a 24 hours/1 day minimum password lifetime restriction.DISA Canonical Ubuntu 24.04 LTS STIG v1r5Unix

IDENTIFICATION AND AUTHENTICATION

UBTU-24-400320 - Ubuntu 24.04 LTS must enforce a minimum 15-character password length.DISA Canonical Ubuntu 24.04 LTS STIG v1r5Unix

IDENTIFICATION AND AUTHENTICATION

UBTU-24-400400 - Ubuntu 24.04 LTS must encrypt all stored passwords with a FIPS 140-3 approved cryptographic hashing algorithm.DISA Canonical Ubuntu 24.04 LTS STIG v1r5Unix

IDENTIFICATION AND AUTHENTICATION

UBTU-24-500050 - Ubuntu 24.04 LTS must use strong authenticators in establishing nonlocal maintenance and diagnostic sessions.DISA Canonical Ubuntu 24.04 LTS STIG v1r5Unix

MAINTENANCE

UBTU-24-700100 - Ubuntu 24.04 LTS must configure the /var/log directory to be group-owned by syslog.DISA Canonical Ubuntu 24.04 LTS STIG v1r5Unix

SYSTEM AND INFORMATION INTEGRITY

UBTU-24-700110 - Ubuntu 24.04 LTS must configure the /var/log directory to be owned by root.DISA Canonical Ubuntu 24.04 LTS STIG v1r5Unix

SYSTEM AND INFORMATION INTEGRITY

UBTU-24-700130 - Ubuntu 24.04 LTS must configure the /var/log/syslog file to be group-owned by adm.DISA Canonical Ubuntu 24.04 LTS STIG v1r5Unix

SYSTEM AND INFORMATION INTEGRITY

UBTU-24-700140 - Ubuntu 24.04 LTS must configure /var/log/syslog file to be owned by syslog.DISA Canonical Ubuntu 24.04 LTS STIG v1r5Unix

SYSTEM AND INFORMATION INTEGRITY

UBTU-24-700150 - Ubuntu 24.04 LTS must configure /var/log/syslog file with mode "0640" or less permissive.DISA Canonical Ubuntu 24.04 LTS STIG v1r5Unix

SYSTEM AND INFORMATION INTEGRITY

UBTU-24-700300 - Ubuntu 24.04 LTS must implement nonexecutable data to protect its memory from unauthorized code execution.DISA Canonical Ubuntu 24.04 LTS STIG v1r5Unix

SYSTEM AND INFORMATION INTEGRITY

UBTU-24-900920 - Ubuntu 24.04 LTS must allocate audit record storage capacity to store at least one week's worth of audit records, when audit records are not immediately sent to a central audit record storage facility.DISA Canonical Ubuntu 24.04 LTS STIG v1r5Unix

AUDIT AND ACCOUNTABILITY

UBTU-24-901380 - Ubuntu 24.04 LTS must be configured so that the audit log directory is not write-accessible by unauthorized users.DISA Canonical Ubuntu 24.04 LTS STIG v1r5Unix

AUDIT AND ACCOUNTABILITY

UBTU-24-909000 - Ubuntu 24.04 LTS audit system must protect auditing rules from unauthorized change.DISA Canonical Ubuntu 24.04 LTS STIG v1r5Unix

AUDIT AND ACCOUNTABILITY