Item Search

NameAudit NamePluginCategory
1.27 OL09-00-000105CIS Oracle Linux 9 STIG v1.0.0 CAT IIUnix

CONFIGURATION MANAGEMENT

1.38 MADB-10-004400CIS MariaDB Enterprise 10.x STIG v1.1.0 CAT I UnixUnix

IDENTIFICATION AND AUTHENTICATION

1.52 CISC-RT-000720CIS Cisco NX OS Switch RTR STIG v1.1.0 CAT IICisco

SECURITY ASSESSMENT AND AUTHORIZATION, SYSTEM AND COMMUNICATIONS PROTECTION

1.59 APPL-14-001150CIS Apple macOS 14 Sonoma STIG v1.0.0 CAT IUnix

IDENTIFICATION AND AUTHENTICATION, MAINTENANCE

1.61 CISC-RT-000680CIS Cisco IOS XE Switch RTR STIG v1.1.0 CAT ICisco

CONFIGURATION MANAGEMENT

1.70 CISC-RT-000680CIS Cisco IOS XE Router RTR STIG v1.1.0 CAT ICisco

CONFIGURATION MANAGEMENT

1.338 RHEL-10-700660CIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT IIUnix

ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION

2.2.17 Ensure '_trace_files_public' Is Set to 'FALSE'CIS Oracle Server 12c DB Unified Auditing v3.0.0OracleDB

ACCESS CONTROL

2.5 Do not use the aufs storage driverCIS Docker 1.13.0 v1.0.0 L1 DockerUnix

CONFIGURATION MANAGEMENT

2.5 Ensure aufs storage driver is not usedCIS Docker Community Edition v1.1.0 L1 DockerUnix

CONFIGURATION MANAGEMENT

3.2.4 Secure permissions for the primary archive log locationCIS IBM DB2 9 Benchmark v3.0.1 Level 1 DBIBM_DB2DB
3.2.4 Secure permissions for the primary archive log locationCIS IBM DB2 9 Benchmark v3.0.1 Level 1 OS LinuxUnix

AUDIT AND ACCOUNTABILITY

3.2.5 Secure permissions for the secondary archive log locationCIS IBM DB2 9 Benchmark v3.0.1 Level 1 DBIBM_DB2DB
3.2.5 Secure permissions for the secondary archive log location - FILE_PERMISSIONSCIS IBM DB2 9 Benchmark v3.0.1 Level 1 OS WindowsWindows

AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT

4.1.11 Set Maximum Number of Applications (MAXAPPLS)CIS IBM DB2 12.1 v1.0.0 Windows OS Level 1Windows

SYSTEM AND COMMUNICATIONS PROTECTION

4.1.11 Set Maximum Number of Applications (MAXAPPLS)CIS IBM DB2 12.1 v1.0.0 Linux OS Level 1Unix

ACCESS CONTROL

4.1.12 Set Maximum Number of Applications (MAXAPPLS)CIS IBM DB2 11 v1.2.0 Linux OS Level 1Unix

ACCESS CONTROL

4.1.12 Set Maximum Number of Applications (MAXAPPLS)CIS IBM DB2 11 v1.2.0 Windows OS Level 1Windows

SYSTEM AND COMMUNICATIONS PROTECTION

5.10 (L1) Ensure 'LxssManager (LxssManager)' is set to 'Disabled' or 'Not Installed'CIS Microsoft Windows 10 EMS Gateway v3.0.0 L1Windows

CONFIGURATION MANAGEMENT

82.10 Ensure 'LxssManager (LxssManager)' is set to 'Disabled' or 'Not Installed'CIS Microsoft Intune for Windows 11 v5.0.0 L1Windows

CONFIGURATION MANAGEMENT

82.11 Ensure 'LxssManager (LxssManager)' is set to 'Disabled' or 'Not Installed'CIS Microsoft Intune for Windows 10 v5.0.0 L1Windows

CONFIGURATION MANAGEMENT

100. OpenStack Identity - Policy.json - 'identity:list_policies'TNS OpenStack Keystone/Identity Security GuideUnix

ACCESS CONTROL

100. OpenStack Networking - Policy.json - 'get_subnet'TNS OpenStack Neutron/Networking Security GuideUnix

ACCESS CONTROL

CD16-00-004400 - PostgreSQL must use NIST FIPS 140-2/140-3 validated cryptographic modules for cryptographic operations.DISA Crunchy Data Postgres 16 STIG v1r3 UnixUnix

IDENTIFICATION AND AUTHENTICATION

CISC-RT-000720 - The Cisco PE switch must be configured to limit the number of MAC addresses it can learn for each Virtual Private LAN Services (VPLS) bridge domain.DISA Cisco NX OS Switch RTR STIG v3r4Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

CNTR-K8-003290 - The Kubernetes API Server must be set to audit log max size.DISA Kubernetes STIG v2r6Unix

CONFIGURATION MANAGEMENT

FFOX-00-000005 - Firefox must be configured to not automatically update installed add-ons and plugins.DISA STIG Mozilla Firefox Linux v6r7Unix

CONFIGURATION MANAGEMENT

FFOX-00-000005 - Firefox must be configured to not automatically update installed add-ons and plugins.DISA STIG Mozilla Firefox MacOS v6r7Unix

CONFIGURATION MANAGEMENT

FFOX-00-000007 - Firefox must be configured to disable form fill assistance.DISA STIG Mozilla Firefox Linux v6r7Unix

CONFIGURATION MANAGEMENT

FFOX-00-000008 - Firefox must be configured to not use a password store with or without a master password.DISA STIG Mozilla Firefox Linux v6r7Unix

CONFIGURATION MANAGEMENT

FFOX-00-000008 - Firefox must be configured to not use a password store with or without a master password.DISA STIG Mozilla Firefox MacOS v6r7Unix

CONFIGURATION MANAGEMENT

FFOX-00-000014 - Background submission of information to Mozilla must be disabled.DISA STIG Mozilla Firefox Linux v6r7Unix

CONFIGURATION MANAGEMENT

FFOX-00-000014 - Background submission of information to Mozilla must be disabled.DISA STIG Mozilla Firefox MacOS v6r7Unix

CONFIGURATION MANAGEMENT

FFOX-00-000015 - Firefox development tools must be disabled.DISA STIG Mozilla Firefox Linux v6r7Unix

SYSTEM AND INFORMATION INTEGRITY

FFOX-00-000019 - Firefox private browsing must be disabled.DISA STIG Mozilla Firefox MacOS v6r7Unix

CONFIGURATION MANAGEMENT

FFOX-00-000020 - Firefox search suggestions must be disabled.DISA STIG Mozilla Firefox Linux v6r7Unix

CONFIGURATION MANAGEMENT

FFOX-00-000020 - Firefox search suggestions must be disabled.DISA STIG Mozilla Firefox MacOS v6r7Unix

CONFIGURATION MANAGEMENT

FFOX-00-000022 - Firefox network prediction must be disabled.DISA STIG Mozilla Firefox Linux v6r7Unix

CONFIGURATION MANAGEMENT

FFOX-00-000022 - Firefox network prediction must be disabled.DISA STIG Mozilla Firefox MacOS v6r7Unix

CONFIGURATION MANAGEMENT

FFOX-00-000034 - Firefox accounts must be disabled.DISA STIG Mozilla Firefox Windows v6r7Windows

CONFIGURATION MANAGEMENT

FFOX-00-000036 - Firefox feedback reporting must be disabled.DISA STIG Mozilla Firefox Windows v6r7Windows

CONFIGURATION MANAGEMENT

FFOX-00-000038 - Pocket must be disabled.DISA STIG Mozilla Firefox Windows v6r7Windows

CONFIGURATION MANAGEMENT

MADB-10-004400 - MariaDB must use NIST FIPS 140-2/140-3 validated cryptographic modules for cryptographic operations.DISA MariaDB Enterprise 10.x STIG v2r5 UnixUnix

IDENTIFICATION AND AUTHENTICATION

OL6-00-000275 - The operating system must employ cryptographic mechanisms to protect information in storage.DISA STIG Oracle Linux 6 v2r7Unix

CONFIGURATION MANAGEMENT

OL6-00-000276 - The operating system must protect the confidentiality and integrity of data at rest.DISA STIG Oracle Linux 6 v2r7Unix

SYSTEM AND COMMUNICATIONS PROTECTION

OL07-00-010483 - Oracle Linux operating systems version 7.2 or newer booted with a BIOS must have a unique name for the grub superusers account when booting into single-user and maintenance modes.DISA Oracle Linux 7 STIG v3r5Unix

ACCESS CONTROL

PANW-NM-000144 - The Palo Alto Networks security platform must generate an audit log record when the Data Plane CPU utilization is 100%.DISA Palo Alto Networks NDM STIG v3r4Palo_Alto

CONFIGURATION MANAGEMENT

RHEL-07-010492 - Red Hat Enterprise Linux operating systems version 7.2 or newer booted with United Extensible Firmware Interface (UEFI) must have a unique name for the grub superusers account when booting into single-user mode and maintenance.DISA Red Hat Enterprise Linux 7 STIG v3r15Unix

ACCESS CONTROL

RHEL-07-030350 - The Red Hat Enterprise Linux operating system must immediately notify the System Administrator (SA) and Information System Security Officer (ISSO) (at a minimum) when the threshold for the repository maximum audit record storage capacity is reached.DISA Red Hat Enterprise Linux 7 STIG v3r15Unix

AUDIT AND ACCOUNTABILITY

RHEL-10-700660 - RHEL 10 must be configured so that all network connections associated with Secure Shell (SSH) traffic terminate after becoming unresponsive.DISA Red Hat Enterprise Linux 10 STIG v1r2Unix

ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION