Item Search

NameAudit NamePluginCategory
ALMA-09-006620 - The systemd Ctrl-Alt-Delete burst key sequence in AlmaLinux OS 9 must be disabled.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

ACCESS CONTROL

ALMA-09-006730 - The Ctrl-Alt-Delete key sequence must be disabled on AlmaLinux OS 9.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

ACCESS CONTROL

ALMA-09-006840 - AlmaLinux OS 9 must have the sudo package installed.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

ACCESS CONTROL

ALMA-09-006950 - The AlmaLinux OS 9 debug-shell systemd service must be disabled.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

ACCESS CONTROL

ALMA-09-007170 - AlmaLinux OS 9 must enable kernel parameters to enforce discretionary access control (DAC) on symlinks.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

ACCESS CONTROL

APPL-12-002069 - The macOS system must prevent nonprivileged users from executing privileged functions to include disabling, circumventing, or altering implemented security safeguards/countermeasures.DISA STIG Apple macOS 12 v1r9Unix

ACCESS CONTROL

APPL-14-002069 The macOS system must require administrator privileges to modify systemwide settings.DISA Apple macOS 14 (Sonoma) STIG v2r3Unix

ACCESS CONTROL

EX19-ED-000174 - Role-Based Access Control must be defined for privileged and nonprivileged users.DISA Microsoft Exchange 2019 Edge Server STIG v2r2Windows

ACCESS CONTROL

EX19-MB-000173 - Role-Based Access Control must be defined for privileged and nonprivileged users.DISA Microsoft Exchange 2019 Mailbox Server STIG v2r2Windows

ACCESS CONTROL

GOOG-12-012200 - Google Android 12 must be configured to disable all data signaling over [assignment: list of externally accessible hardware ports (for example, USB)].MobileIron - DISA Google Android 12 COBO v1r2MDM

ACCESS CONTROL

GOOG-12-012200 - Google Android 12 must be configured to disable all data signaling over [assignment: list of externally accessible hardware ports (for example, USB)].AirWatch - DISA Google Android 12 COBO v1r2MDM

ACCESS CONTROL

GOOG-13-012200 - Google Android 13 must be configured to disable all data signaling over [assignment: list of externally accessible hardware ports (for example, USB)] - for example, USB].MobileIron - DISA Google Android 13 COBO v2r2MDM

ACCESS CONTROL

GOOG-14-012200 - Google Android 14 must be configured to disable all data signaling over [assignment: list of externally accessible hardware ports (for example, USB)] - for example, USB].AirWatch - DISA Google Android 14 COPE v2r2MDM

ACCESS CONTROL

GOOG-15-012200 - Google Android 15 must be configured to disable all data signaling over [assignment: list of externally accessible hardware ports (for example, USB)] - for example, USB].AirWatch - DISA Google Android 15 COBO v1r2MDM

ACCESS CONTROL

JUEX-NM-000930 - The Juniper EX switch must prevent nonprivileged users from executing privileged functions to include disabling, circumventing, or altering implemented security safeguards/countermeasures.DISA Juniper EX Series Network Device Management v2r2Juniper

ACCESS CONTROL

MD7X-00-006800 MongoDB must prevent nonprivileged users from executing privileged functions, to include disabling, circumventing, or altering implemented security safeguards/countermeasures.DISA MongoDB Enterprise Advanced 7.x STIG v1r1MongoDB

ACCESS CONTROL

MSFT-11-005200 - The mobile operating system must allow only the Administrator (MDM) to perform the following management function: Enable/disable location services.AirWatch - DISA Microsoft Android 11 COBO v1r2MDM

ACCESS CONTROL

MSFT-11-005200 - The mobile operating system must allow only the Administrator (MDM) to perform the following management function: Enable/disable location services.AirWatch - DISA Microsoft Android 11 COPE v1r2MDM

ACCESS CONTROL

MYS8-00-010700 - The MySQL Database Server 8.0 must prevent non-privileged users from executing privileged functions, to include disabling, circumventing, or altering implemented security safeguards/countermeasures.DISA Oracle MySQL 8.0 v2r2 DBMySQLDB

ACCESS CONTROL

PHTN-40-000105 The Photon operating system must enable symlink access control protection in the kernel.DISA VMware vSphere 8.0 vCenter Appliance Photon OS 4.0 STIG v2r1Unix

ACCESS CONTROL

RHEL-09-211055 - RHEL 9 debug-shell systemd service must be disabled.DISA Red Hat Enterprise Linux 9 STIG v2r4Unix

ACCESS CONTROL

WBSP-AS-000240 - The WebSphere Application Server users in a LDAP user registry group must be authorized for that group.DISA IBM WebSphere Traditional 9 Windows STIG v1r1Windows

ACCESS CONTROL

WN11-RG-000005 - Default permissions for the HKEY_LOCAL_MACHINE registry hive must be maintained.DISA Microsoft Windows 11 STIG v2r3Windows

ACCESS CONTROL

WN11-UR-000005 - The 'Access Credential Manager as a trusted caller' user right must not be assigned to any groups or accounts.DISA Microsoft Windows 11 STIG v2r3Windows

ACCESS CONTROL

WN11-UR-000015 - The 'Act as part of the operating system' user right must not be assigned to any groups or accounts.DISA Microsoft Windows 11 STIG v2r3Windows

ACCESS CONTROL

WN11-UR-000035 - The 'Change the system time' user right must only be assigned to Administrators and Local Service.DISA Microsoft Windows 11 STIG v2r3Windows

ACCESS CONTROL

WN11-UR-000040 - The 'Create a pagefile' user right must only be assigned to the Administrators group.DISA Microsoft Windows 11 STIG v2r3Windows

ACCESS CONTROL

WN11-UR-000045 - The 'Create a token object' user right must not be assigned to any groups or accounts.DISA Microsoft Windows 11 STIG v2r3Windows

ACCESS CONTROL

WN11-UR-000050 - The 'Create global objects' user right must only be assigned to Administrators, Service, Local Service, and Network Service.DISA Microsoft Windows 11 STIG v2r3Windows

ACCESS CONTROL

WN11-UR-000055 - The 'Create permanent shared objects' user right must not be assigned to any groups or accounts.DISA Microsoft Windows 11 STIG v2r3Windows

ACCESS CONTROL

WN11-UR-000060 - The 'Create symbolic links' user right must only be assigned to the Administrators group.DISA Microsoft Windows 11 STIG v2r3Windows

ACCESS CONTROL

WN11-UR-000095 - The 'Enable computer and user accounts to be trusted for delegation' user right must not be assigned to any groups or accounts.DISA Microsoft Windows 11 STIG v2r3Windows

ACCESS CONTROL

WN11-UR-000100 - The 'Force shutdown from a remote system' user right must only be assigned to the Administrators group.DISA Microsoft Windows 11 STIG v2r3Windows

ACCESS CONTROL

WN11-UR-000110 - The 'Impersonate a client after authentication' user right must only be assigned to Administrators, Service, Local Service, and Network Service.DISA Microsoft Windows 11 STIG v2r3Windows

ACCESS CONTROL

WN11-UR-000125 - The 'Lock pages in memory' user right must not be assigned to any groups or accounts.DISA Microsoft Windows 11 STIG v2r3Windows

ACCESS CONTROL

WN11-UR-000140 - The 'Modify firmware environment values' user right must only be assigned to the Administrators group.DISA Microsoft Windows 11 STIG v2r3Windows

ACCESS CONTROL

WN11-UR-000145 - The 'Perform volume maintenance tasks' user right must only be assigned to the Administrators group.DISA Microsoft Windows 11 STIG v2r3Windows

ACCESS CONTROL

WN11-UR-000165 - The 'Take ownership of files or other objects' user right must only be assigned to the Administrators group.DISA Microsoft Windows 11 STIG v2r3Windows

ACCESS CONTROL

WN22-DC-000080 - Windows Server 2022 Active Directory SYSVOL directory must have the proper access control permissions.DISA Microsoft Windows Server 2022 STIG v2r4Windows

ACCESS CONTROL

WN22-DC-000110 - Windows Server 2022 organization created Active Directory Organizational Unit (OU) objects must have proper access control permissions.DISA Microsoft Windows Server 2022 STIG v2r4Windows

ACCESS CONTROL

WN22-MS-000060 - Windows Server 2022 must restrict remote calls to the Security Account Manager (SAM) to Administrators on domain-joined member servers and standalone or nondomain-joined systems.DISA Microsoft Windows Server 2022 STIG v2r4Windows

ACCESS CONTROL

WN22-UR-000010 - Windows Server 2022 Access Credential Manager as a trusted caller user right must not be assigned to any groups or accounts.DISA Microsoft Windows Server 2022 STIG v2r4Windows

ACCESS CONTROL

WN22-UR-000020 - Windows Server 2022 Act as part of the operating system user right must not be assigned to any groups or accounts.DISA Microsoft Windows Server 2022 STIG v2r4Windows

ACCESS CONTROL

WN22-UR-000100 - Windows Server 2022 debug programs user right must only be assigned to the Administrators group.DISA Microsoft Windows Server 2022 STIG v2r4Windows

ACCESS CONTROL

WN22-UR-000110 - Windows Server 2022 force shutdown from a remote system user right must only be assigned to the Administrators group.DISA Microsoft Windows Server 2022 STIG v2r4Windows

ACCESS CONTROL

WN22-UR-000150 - Windows Server 2022 load and unload device drivers user right must only be assigned to the Administrators group.DISA Microsoft Windows Server 2022 STIG v2r4Windows

ACCESS CONTROL

WN22-UR-000190 - Windows Server 2022 perform volume maintenance tasks user right must only be assigned to the Administrators group.DISA Microsoft Windows Server 2022 STIG v2r4Windows

ACCESS CONTROL

WN22-UR-000200 - Windows Server 2022 profile single process user right must only be assigned to the Administrators group.DISA Microsoft Windows Server 2022 STIG v2r4Windows

ACCESS CONTROL

WN22-UR-000210 - Windows Server 2022 restore files and directories user right must only be assigned to the Administrators group.DISA Microsoft Windows Server 2022 STIG v2r4Windows

ACCESS CONTROL

WN22-UR-000220 - Windows Server 2022 take ownership of files or other objects user right must only be assigned to the Administrators group.DISA Microsoft Windows Server 2022 STIG v2r4Windows

ACCESS CONTROL