Item Search

NameAudit NamePluginCategory
1.2.4 Ensure HTTP and Telnet options are disabled for all management profiles - HTTPCIS Palo Alto Firewall 8 Benchmark L1 v1.0.0Palo_Alto

CONFIGURATION MANAGEMENT, IDENTIFICATION AND AUTHENTICATION

1.2.4 Ensure HTTP and Telnet options are disabled for all management profiles - TelnetCIS Palo Alto Firewall 8 Benchmark L1 v1.0.0Palo_Alto

CONFIGURATION MANAGEMENT, IDENTIFICATION AND AUTHENTICATION

1.8.8 Ensure users must authenticate users using MFA via a graphical user logonCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

IDENTIFICATION AND AUTHENTICATION

1.11 ESXI-80-000052CIS VMware vSphere 8.0 ESXi STIG v1.0.0 CAT II UnixUnix

IDENTIFICATION AND AUTHENTICATION

1.54 AZLX-23-001230CIS Amazon Linux 2023 STIG v1.0.0 CAT IIUnix

IDENTIFICATION AND AUTHENTICATION

1.78 UBTU-24-400020CIS Ubuntu Linux 24.04 LTS STIG v1.0.0 CAT IIUnix

IDENTIFICATION AND AUTHENTICATION

1.147 WN16-DC-000020CIS Microsoft Windows Server 2016 STIG v4.0.0 DC CAT IIWindows

IDENTIFICATION AND AUTHENTICATION

1.148 WN16-DC-000030CIS Microsoft Windows Server 2016 STIG v4.0.0 DC CAT IIWindows

IDENTIFICATION AND AUTHENTICATION

1.149 WN16-DC-000040CIS Microsoft Windows Server 2016 STIG v4.0.0 DC CAT IIWindows

IDENTIFICATION AND AUTHENTICATION

1.149 WN22-DC-000030CIS Microsoft Windows Server 2022 STIG v3.0.0 DC CAT IIWindows

IDENTIFICATION AND AUTHENTICATION

1.150 WN16-DC-000050CIS Microsoft Windows Server 2016 STIG v4.0.0 DC CAT IIWindows

IDENTIFICATION AND AUTHENTICATION

1.151 WN16-DC-000060CIS Microsoft Windows Server 2016 STIG v4.0.0 DC CAT IIWindows

IDENTIFICATION AND AUTHENTICATION

1.151 WN22-DC-000050CIS Microsoft Windows Server 2022 STIG v3.0.0 DC CAT IIWindows

IDENTIFICATION AND AUTHENTICATION

1.152 WN22-DC-000060CIS Microsoft Windows Server 2022 STIG v3.0.0 DC CAT IIWindows

IDENTIFICATION AND AUTHENTICATION

2.3.2 Ensure rsh client is not installed - rsh-clientCIS Debian 9 Server L1 v1.0.1Unix

CONFIGURATION MANAGEMENT, IDENTIFICATION AND AUTHENTICATION

2.3.2 Ensure rsh client is not installed - rsh-redone-clientCIS Debian 9 Server L1 v1.0.1Unix

CONFIGURATION MANAGEMENT, IDENTIFICATION AND AUTHENTICATION

2.3.2 Ensure rsh client is not installed - rsh-redone-clientCIS Debian 9 Workstation L1 v1.0.1Unix

CONFIGURATION MANAGEMENT, IDENTIFICATION AND AUTHENTICATION

2.3.4 Ensure telnet client is not installedCIS Debian 9 Server L1 v1.0.1Unix

CONFIGURATION MANAGEMENT, IDENTIFICATION AND AUTHENTICATION

2.3.7.5 (L1) Configure 'Interactive logon: Message text for users attempting to log on'CIS Microsoft Windows 8.1 v2.4.1 L1 BitlockerWindows

CONFIGURATION MANAGEMENT, IDENTIFICATION AND AUTHENTICATION

2.6.3 - NIS - remove NIS markers from password and group files - '/etc/group does not include NIS + entries'CIS AIX 5.3/6.1 L2 v1.1.0Unix

IDENTIFICATION AND AUTHENTICATION

2.6.3 - NIS - remove NIS markers from password and group files - '/etc/passwd does not include NIS + entries'CIS AIX 5.3/6.1 L2 v1.1.0Unix

IDENTIFICATION AND AUTHENTICATION

2.08 Listener password - 'Use OS Authentication'CIS v1.1.0 Oracle 11g OS Windows Level 1Windows

IDENTIFICATION AND AUTHENTICATION

2.08 Listener password - 'Use OS Authentication'CIS v1.1.0 Oracle 11g OS L1Unix

IDENTIFICATION AND AUTHENTICATION

3.1.16 Enable server-based authentication - 'srvcon_auth = server'CIS IBM DB2 OS L2 v1.2.0Unix

IDENTIFICATION AND AUTHENTICATION

5.4.9 Ensure multifactor authentication for access to privileged accounts - PAM.CIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

IDENTIFICATION AND AUTHENTICATION

5.4.10 Ensure certificate status checking for PKI authenticationCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

IDENTIFICATION AND AUTHENTICATION

5.5.7 Ensure multi-factor authentication is enable for usersCIS Amazon Linux 2 STIG v2.0.1 STIGUnix

IDENTIFICATION AND AUTHENTICATION

6.8.1 Ensure External AAA Server is setCIS Juniper OS Benchmark v2.1.0 L1Juniper

IDENTIFICATION AND AUTHENTICATION

6.10.6 Ensure Telnet is Not SetCIS Juniper OS Benchmark v2.1.0 L1Juniper

CONFIGURATION MANAGEMENT, IDENTIFICATION AND AUTHENTICATION

7.2.4 Ensure no duplicate UIDs existCIS Rocky Linux 10 v1.0.0 L1 WorkstationUnix

IDENTIFICATION AND AUTHENTICATION

8.4 Verify No Legacy '+' Entries Exist In passwdCIS Solaris 9 v1.3Unix

IDENTIFICATION AND AUTHENTICATION

9.2.3 Verify No Legacy '+' Entries Exist in /etc/shadow File - + Entries Exist in /etc/shadow FileCIS Red Hat Enterprise Linux 5 L1 v2.2.1Unix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

9.2.4 Verify No Legacy '+' Entries Exist in /etc/group File - + Entries Exist in /etc/group FileCIS Red Hat Enterprise Linux 5 L1 v2.2.1Unix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

18.2.1 Ensure LAPS AdmPwd GPO Extension / CSE is installedCIS Microsoft Windows 8.1 v2.4.1 L1Windows

IDENTIFICATION AND AUTHENTICATION

18.2.3 Ensure 'Enable Local Admin Password Management' is set to 'Enabled'CIS Microsoft Windows 8.1 v2.4.1 L1Windows

IDENTIFICATION AND AUTHENTICATION

AZLX-23-001230 - Amazon Linux 2023 SSHD must accept public key authentication.DISA Amazon Linux 2023 STIG v1r4Unix

IDENTIFICATION AND AUTHENTICATION

EDGE-00-000062 - The built-in DNS client must be disabled.DISA STIG Edge v2r3Windows

IDENTIFICATION AND AUTHENTICATION

ESXi : enable-ad-authVMWare vSphere 5.X Hardening GuideVMware

IDENTIFICATION AND AUTHENTICATION

Fortigate - AAA - LDAP server is trustedTNS Fortigate FortiOS Best Practices v2.0.0FortiGate

IDENTIFICATION AND AUTHENTICATION

Fortigate - AAA - RADIUS server is trustedTNS Fortigate FortiOS Best Practices v2.0.0FortiGate

IDENTIFICATION AND AUTHENTICATION

Fortigate - AAA - TACACS+ server is trustedTNS Fortigate FortiOS Best Practices v2.0.0FortiGate

IDENTIFICATION AND AUTHENTICATION

GOOG-13-007200 - Google Android 13 must be configured to disable trust agents - NOTE: This requirement is not applicable (NA) for specific biometric authentication factors included in the product's Common Criteria evaluation.AirWatch - DISA Google Android 13 COBO STIG v2r3MDM

IDENTIFICATION AND AUTHENTICATION

GOOG-13-007200 - Google Android 13 must be configured to disable trust agents - NOTE: This requirement is not applicable (NA) for specific biometric authentication factors included in the product's Common Criteria evaluation.MobileIron - DISA Google Android 13 COBO STIG v2r3MDM

IDENTIFICATION AND AUTHENTICATION

GOOG-13-007200 - Google Android 13 must be configured to disable trust agents - NOTE: This requirement is not applicable (NA) for specific biometric authentication factors included in the product's Common Criteria evaluation.MobileIron - DISA Google Android 13 COPE STIG v2r3MDM

IDENTIFICATION AND AUTHENTICATION

Monterey - Disable Root Login for SSHNIST macOS Monterey v1.0.0 - All ProfilesUnix

IDENTIFICATION AND AUTHENTICATION

UBTU-24-400030 - Ubuntu 24.04 LTS must implement smart card logins for multifactor authentication for local and network access to privileged and nonprivileged accounts over SSH.DISA Canonical Ubuntu 24.04 LTS STIG v1r6Unix

IDENTIFICATION AND AUTHENTICATION

WN22-DC-000030 - Windows Server 2022 Kerberos service ticket maximum lifetime must be limited to 600 minutes or less.DISA Microsoft Windows Server 2022 STIG v2r8Windows

IDENTIFICATION AND AUTHENTICATION

WN22-DC-000040 - Windows Server 2022 Kerberos user ticket lifetime must be limited to 10 hours or less.DISA Microsoft Windows Server 2022 STIG v2r8Windows

IDENTIFICATION AND AUTHENTICATION

WN22-DC-000050 - Windows Server 2022 Kerberos policy user ticket renewal maximum lifetime must be limited to seven days or less.DISA Microsoft Windows Server 2022 STIG v2r8Windows

IDENTIFICATION AND AUTHENTICATION

WN22-DC-000060 - Windows Server 2022 computer clock synchronization tolerance must be limited to five minutes or less.DISA Microsoft Windows Server 2022 STIG v2r8Windows

IDENTIFICATION AND AUTHENTICATION