Item Search

NameAudit NamePluginCategory
2.0 Install & Config - 'Disable FTP'TNS NetApp Data ONTAP 7GNetApp

CONFIGURATION MANAGEMENT

2.0 Install & Config - 'Disable FTPS'TNS NetApp Data ONTAP 7GNetApp

CONFIGURATION MANAGEMENT

2.0 Install & Config - 'Disable NDMP'TNS NetApp Data ONTAP 7GNetApp

CONFIGURATION MANAGEMENT

2.0 Install & Config - 'Disable RSH'TNS NetApp Data ONTAP 7GNetApp

CONFIGURATION MANAGEMENT

2.0 Install & Config - 'Disable SFTP'TNS NetApp Data ONTAP 7GNetApp

CONFIGURATION MANAGEMENT

2.0 Install & Config - 'Disable SNMPv1'TNS NetApp Data ONTAP 7GNetApp

CONFIGURATION MANAGEMENT

2.0 Install & Config - 'Disable TFTP'TNS NetApp Data ONTAP 7GNetApp

CONFIGURATION MANAGEMENT

2.0 Install & Config - 'Disable WebDav'TNS NetApp Data ONTAP 7GNetApp

CONFIGURATION MANAGEMENT

2.0 Install & Config - 'Enable FilerView HTTPS'TNS NetApp Data ONTAP 7GNetApp

SYSTEM AND COMMUNICATIONS PROTECTION

2.0 Install & Config - 'Enable SSH'TNS NetApp Data ONTAP 7GNetApp

ACCESS CONTROL

2.0 Install & Config - 'Enable TLSv1'TNS NetApp Data ONTAP 7GNetApp

SYSTEM AND COMMUNICATIONS PROTECTION

2.1 Enable Secure Admin Access - 'autologout.telnet.enable = on'TNS NetApp Data ONTAP 7GNetApp

ACCESS CONTROL

2.1 Enable Secure Admin Access - 'ssh.idle.timeout <= 60'TNS NetApp Data ONTAP 7GNetApp

ACCESS CONTROL

2.1 Enable Secure Admin Access - 'ssh.port = 22'TNS NetApp Data ONTAP 7GNetApp

CONFIGURATION MANAGEMENT

2.2 Disable/Modify Default Accts - 'alternate admin account has been created (root)'TNS NetApp Data ONTAP 7GNetApp
2.2 Disable/Modify Default Accts - 'ndmp/ndmpcopy service account'TNS NetApp Data ONTAP 7GNetApp
2.2 Disable/Modify Default Accts - 'security.passwd.rootaccess.enable = off'TNS NetApp Data ONTAP 7GNetApp

ACCESS CONTROL

2.2 Disable/Modify Default Accts - 'SNMP default community strings have been removed'TNS NetApp Data ONTAP 7GNetApp
2.3 Disable Unnecessary Services - 'rsh.access != legacy'TNS NetApp Data ONTAP 7GNetApp

CONFIGURATION MANAGEMENT

2.3 Disable Unnecessary Services - 'telnet.access != legacy'TNS NetApp Data ONTAP 7GNetApp

CONFIGURATION MANAGEMENT

2.4 Password Security - 'maximum password age <= 90'TNS NetApp Data ONTAP 7GNetApp

IDENTIFICATION AND AUTHENTICATION

2.4 Password Security - 'minimum password age >= 1'TNS NetApp Data ONTAP 7GNetApp

IDENTIFICATION AND AUTHENTICATION

2.4 Password Security - 'security.passwd.firstlogin.enable = on'TNS NetApp Data ONTAP 7GNetApp

IDENTIFICATION AND AUTHENTICATION

2.4 Password Security - 'security.passwd.rules.everyone = on'TNS NetApp Data ONTAP 7GNetApp

IDENTIFICATION AND AUTHENTICATION

2.4 Password Security - 'security.passwd.rules.maximum >= 14'TNS NetApp Data ONTAP 7GNetApp

IDENTIFICATION AND AUTHENTICATION

2.6 Logging - 'auditlog.enable = on'TNS NetApp Data ONTAP 7GNetApp

AUDIT AND ACCOUNTABILITY

2.7 Network & IP Options - 'ip.fastpath.enable = off'TNS NetApp Data ONTAP 7GNetApp

CONFIGURATION MANAGEMENT

2.7 Network & IP Options - 'ip.icmp_ignore_redirect.enable = on'TNS NetApp Data ONTAP 7GNetApp

CONFIGURATION MANAGEMENT

2.8 Protocol Access Controls - 'httpd.access has been configured'TNS NetApp Data ONTAP 7GNetApp

SYSTEM AND COMMUNICATIONS PROTECTION

2.8 Protocol Access Controls - 'interface.blocked.cifs has been configured'TNS NetApp Data ONTAP 7GNetApp

SYSTEM AND COMMUNICATIONS PROTECTION

2.8 Protocol Access Controls - 'interface.blocked.ftpd is not blank'TNS NetApp Data ONTAP 7GNetApp

SYSTEM AND COMMUNICATIONS PROTECTION

2.8 Protocol Access Controls - 'interface.blocked.iscsi is not blank'TNS NetApp Data ONTAP 7GNetApp

SYSTEM AND COMMUNICATIONS PROTECTION

2.8 Protocol Access Controls - 'interface.blocked.ndmp is not blank'TNS NetApp Data ONTAP 7GNetApp

SYSTEM AND COMMUNICATIONS PROTECTION

2.8 Protocol Access Controls - 'interface.blocked.nfs has been configured'TNS NetApp Data ONTAP 7GNetApp

SYSTEM AND COMMUNICATIONS PROTECTION

2.8 Protocol Access Controls - 'interface.blocked.snapmirror has been configured'TNS NetApp Data ONTAP 7GNetApp

SYSTEM AND COMMUNICATIONS PROTECTION

2.8 Protocol Access Controls - 'rsh.access has been configured'TNS NetApp Data ONTAP 7GNetApp

SYSTEM AND COMMUNICATIONS PROTECTION

2.8 Protocol Access Controls - 'snmp.access has been configured'TNS NetApp Data ONTAP 7GNetApp

SYSTEM AND COMMUNICATIONS PROTECTION

5.4 CIFS - 'cifs.smb2.signing.required = on'TNS NetApp Data ONTAP 7GNetApp

SYSTEM AND COMMUNICATIONS PROTECTION

5.4 CIFS - 'dns.update.enable = on or secure'TNS NetApp Data ONTAP 7GNetApp

SYSTEM AND COMMUNICATIONS PROTECTION

5.4 CIFS - 'ldap.security.level = 1 or 2'TNS NetApp Data ONTAP 7GNetApp

SYSTEM AND COMMUNICATIONS PROTECTION

5.4 CIFS - 'ldap.ssl.enable = on'TNS NetApp Data ONTAP 7GNetApp

SYSTEM AND COMMUNICATIONS PROTECTION

5.4 CIFS - 'timed.servers has been configured'TNS NetApp Data ONTAP 7GNetApp

AUDIT AND ACCOUNTABILITY

5.5 NFS - 'nfs.kerberos.file_keytab.enable = on'TNS NetApp Data ONTAP 7GNetApp

SYSTEM AND COMMUNICATIONS PROTECTION

5.5 NFS - 'nfs.v4.write_delegation = on'TNS NetApp Data ONTAP 7GNetApp

CONFIGURATION MANAGEMENT

7.1.1.10 Ensure that Intune logs are captured and sent to Log AnalyticsCIS Microsoft Azure Foundations v4.0.0 L2microsoft_azure

AUDIT AND ACCOUNTABILITY

AIX7-00-002142 - The AIX /etc/hosts file must have a mode of 0640 or less permissive.DISA STIG AIX 7.x v3r1Unix

CONFIGURATION MANAGEMENT

F5BI-AS-000165 - To protect against data mining, The BIG-IP ASM module must be configured to detect SQL injection attacks launched against data storage objects, including, at a minimum, databases, database records, and database fields when providing content filtering to virtual servers.DISA F5 BIG-IP Application Security Manager STIG v2r2F5

ACCESS CONTROL

OL07-00-040180 - The Oracle Linux operating system must implement cryptography to protect the integrity of Lightweight Directory Access Protocol (LDAP) authentication communications - LDAP authentication communications.DISA Oracle Linux 7 STIG v3r2Unix

ACCESS CONTROL

PANW-IP-000056 - The Palo Alto Networks security platform must generate an alert to, at a minimum, the ISSO and ISSM when new active propagation of malware infecting DoD systems or malicious code adversely affecting the operations and/or security of DoD systems is detected.DISA STIG Palo Alto IDPS v3r1Palo_Alto

SYSTEM AND INFORMATION INTEGRITY

RHEL-07-010020 - The Red Hat Enterprise Linux operating system must be configured so that the cryptographic hash of system files and commands matches vendor values.DISA Red Hat Enterprise Linux 7 STIG v3r15Unix

CONFIGURATION MANAGEMENT