Item Search

NameAudit NamePluginCategory
1.1.1.9 Ensure usb-storage kernel module is not availableCIS Red Hat Enterprise Linux 8 STIG v2.0.0 L2 WorkstationUnix

MEDIA PROTECTION, SYSTEM AND INFORMATION INTEGRITY

1.1.2.1.4 Ensure noexec option set on /tmp partitionCIS Red Hat Enterprise Linux 8 STIG v2.0.0 L1 WorkstationUnix

CONFIGURATION MANAGEMENT

1.62 UBTU-24-300016CIS Ubuntu Linux 24.04 LTS STIG v1.0.0 CAT IIUnix

CONFIGURATION MANAGEMENT

1.124 UBTU-24-700120CIS Ubuntu Linux 24.04 LTS STIG v1.0.0 CAT IIUnix

SYSTEM AND INFORMATION INTEGRITY

2.5.4 Ensure the usbguard service is enabled and activeCIS Red Hat Enterprise Linux 8 STIG v2.0.0 STIGUnix

IDENTIFICATION AND AUTHENTICATION, MEDIA PROTECTION

DG0126-ORACLE11 - Password reuse should be prevented where supported by the DBMS - 'No unlimited REUSE_MAX or REUSE_TIME for DEFAULT profile'DISA STIG Oracle 11 Instance v9r1 DatabaseOracleDB

IDENTIFICATION AND AUTHENTICATION

DG0126-ORACLE11 - Password reuse should be prevented where supported by the DBMS - 'No unlimited REUSE_MAX or REUSE_TIME for non DEFAULT profiles'DISA STIG Oracle 11 Instance v9r1 DatabaseOracleDB

IDENTIFICATION AND AUTHENTICATION

DG0127-ORACLE11 - DBMS account passwords should not be set to easily guessed words or values - 'name'DISA STIG Oracle 11 Instance v9r1 DatabaseOracleDB

IDENTIFICATION AND AUTHENTICATION

DG0130-ORACLE11 - DBMS passwords should not be stored in compiled, encoded or encrypted batch jobs or compiled, encoded or encrypted application source code.DISA STIG Oracle 11 Instance v9r1 DatabaseOracleDB

IDENTIFICATION AND AUTHENTICATION

DO0120-ORACLE11 - The Oracle software installation account should not be granted excessive host system privileges - 'Oracle service account is denied logon on locally right'DISA STIG Oracle 11 Installation v9r1 WindowsWindows

ACCESS CONTROL

DTOO290 - PowerPoint - Hidden markup options must be visible.DISA STIG Office 2010 PowerPoint v1r11Windows

CONFIGURATION MANAGEMENT

DTOO304 - Warning Bar settings for VBA macros must be configured.DISA STIG Microsoft Project 2016 v1r1Windows

CONFIGURATION MANAGEMENT

DTOO314 - Outlook - Default message format must be set to use Plain Text.DISA Microsoft Outlook 2010 STIG v1r14Windows

CONFIGURATION MANAGEMENT

DTOO320 - Outlook - Check e-mail addresses against addresses of certificates being used must be disallowed.DISA Microsoft Outlook 2010 STIG v1r14Windows

CONFIGURATION MANAGEMENT

GEN000290 - The system must not have unnecessary accounts - 'uucp does not exsit'DISA AIX 5.3 STIG v1r2Unix

ACCESS CONTROL

GEN000300 - All accounts on the system must have unique user or account names.DISA AIX 5.3 STIG v1r2Unix

IDENTIFICATION AND AUTHENTICATION

GEN000320 - All accounts must be assigned unique User Identification Numbers (UIDs).DISA AIX 5.3 STIG v1r2Unix

IDENTIFICATION AND AUTHENTICATION

GEN000595 - Password hashes must have been generated using a FIPS 140-2 hashing algorithm - 'no password hashes in /etc/security/passwd'DISA AIX 5.3 STIG v1r2Unix

IDENTIFICATION AND AUTHENTICATION

GEN000960 - The root account must not have world-writable directories in its executable search path.DISA AIX 5.3 STIG v1r2Unix

ACCESS CONTROL

GEN001371 - The /etc/nsswitch.conf file must be owned by root - Not ApplicableDISA AIX 5.3 STIG v1r2Unix

ACCESS CONTROL

GEN001570 - All files and directories contained in user home directories must not have extended ACLs.DISA AIX 5.3 STIG v1r2Unix

ACCESS CONTROL

GEN001980 - /etc/security/passwd file must not contain a plus (+) without defining entries for NIS+ netgroups - '/etc/security/passwd'DISA AIX 5.3 STIG v1r2Unix

IDENTIFICATION AND AUTHENTICATION

GEN002120 - The /etc/shells (or equivalent) file must exist - '/etc/security/login.cfg contains shells='DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN002480 - Public directories must be the only world-writable directories and world-writable files must be located only in public dirsDISA AIX 5.3 STIG v1r2Unix

ACCESS CONTROL

GEN002710 - All system audit files must not have extended ACLs.DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002740 - The audit system must be configured to audit file deletions - 'User audit class assignments should be reviewed'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/config AUD_it exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/config DEV_Configure exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/config FS_Chroot exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/config USER_Change exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/events ACCT_Disable exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/events ACCT_Enable exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/events BACKUP_Export exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/events DEV_Configure exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/events FILE_Owner exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/events PROC_Kill exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/events PROC_Privilege exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/events USER_Change exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002800 - System must be configured to audit login, logout, and session initiation - '/etc/security/audit/config USER_Logout exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002800 - System must be configured to audit login, logout, and session initiation - '/etc/security/audit/events INIT_End exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002825 - System must be configured to audit load/unload dynamic kernel modules - '/etc/security/audit/config FILE_Mknod exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002825 - System must be configured to audit load/unload dynamic kernel modules - '/etc/security/audit/events DEV_Stop exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002825 - System must be configured to audit load/unload dynamic kernel modules - '/etc/security/audit/events FILE_Mknod exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002825 - System must be configured to audit load/unload dynamic kernel modules - 'User audit class assignments should be reviewed'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN003000 - Cron must not execute group-writable or world-writable programs.DISA AIX 5.3 STIG v1r2Unix

ACCESS CONTROL

GEN003360 - The at daemon must not execute group-writable or world-writable programs.DISA AIX 5.3 STIG v1r2Unix

ACCESS CONTROL

GEN003540 - The system must implement non-executable program stacks.DISA AIX 5.3 STIG v1r2Unix

SYSTEM AND INFORMATION INTEGRITY

GEN003660 - The system must log authentication informational data - 'auth.notice'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN003700 - Inetd and xinetd must be disabled or removed if no network services utilizing them are enabledDISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN004410 - Files executed through a mail aliases file must be group-owned by root, bin, sys, or other.DISA AIX 5.3 STIG v1r2Unix

ACCESS CONTROL