Item Search

NameAudit NamePluginCategory
GEN000000-LNX00520 - The /etc/sysctl.conf file must have mode 0600 or less permissive.DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL

GEN000251 - The time synchronization configuration file (such as /etc/ntp.conf) must be group-owned by bin, sys, or system.DISA STIG AIX 6.1 v1r14Unix

ACCESS CONTROL

GEN000253 - The time synchronization configuration file (such as /etc/ntp.conf) must not have an extended ACL.DISA STIG AIX 6.1 v1r14Unix

ACCESS CONTROL

GEN000920 - The root account's home directory (other than /) must have mode 0700.DISA STIG AIX 6.1 v1r14Unix

ACCESS CONTROL

GEN001140 - System files and directories must not have uneven access permissions - '/usr/bin'DISA STIG AIX 6.1 v1r14Unix

ACCESS CONTROL

GEN001140 - System files and directories must not have uneven access permissions - '/usr/sbin'DISA STIG AIX 6.1 v1r14Unix

ACCESS CONTROL

GEN001180 - All network services daemon files must have mode 0755 or less permissive - '/usr/bin/*'DISA STIG AIX 6.1 v1r14Unix

ACCESS CONTROL

GEN001280 - Manual page files must have mode 0644 or less permissive - '/usr/share/info/*'DISA STIG AIX 6.1 v1r14Unix

ACCESS CONTROL

GEN001280 - Manual page files must have mode 0644 or less permissive - '/usr/share/infopage/*'DISA STIG AIX 6.1 v1r14Unix

ACCESS CONTROL

GEN001290 - All manual page files must not have extended ACLs - '/usr/share/info/*'DISA STIG AIX 6.1 v1r14Unix

ACCESS CONTROL

GEN001320 - NIS/NIS+/yp files must be owned by root, sys, or bin - '/var/nis/*'DISA STIG AIX 6.1 v1r14Unix

ACCESS CONTROL

GEN001361 - NIS/NIS+/yp command files must not have extended ACLs - '/var/nis'DISA STIG AIX 6.1 v1r14Unix

ACCESS CONTROL

GEN001363 - The /etc/resolv.conf file must be group-owned by bin, sys, or system.DISA STIG AIX 6.1 v1r14Unix

ACCESS CONTROL

GEN001365 - The /etc/resolv.conf file must not have an extended ACL.DISA STIG AIX 6.1 v1r14Unix

ACCESS CONTROL

GEN001372 - The /etc/nsswitch.conf file must be group-owned by root, bin, sys, or system - Not ApplicableDISA STIG AIX 6.1 v1r14Unix

ACCESS CONTROL

GEN001374 - The /etc/nsswitch.conf file must not have an extended ACL.DISA STIG AIX 6.1 v1r14Unix

ACCESS CONTROL

GEN001378 - The /etc/passwd file must be owned by root.DISA STIG AIX 6.1 v1r14Unix

ACCESS CONTROL

GEN001390 - The /etc/passwd file must not have an extended ACL.DISA STIG AIX 6.1 v1r14Unix

ACCESS CONTROL

GEN001391 - The /etc/group file must be owned by root.DISA STIG AIX 6.1 v1r14Unix

ACCESS CONTROL

GEN001394 - The /etc/group file must not have an extended ACL.DISA STIG AIX 6.1 v1r14Unix

ACCESS CONTROL

GEN001440 - All interactive users must be assigned a home directory in the /etc/passwd file.DISA STIG AIX 6.1 v1r14Unix

ACCESS CONTROL

GEN003080-2 - Files in cron script directories must have mode 0700 or less permissive - '/etc/cron.monthly/*'DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL

GEN003420 - The 'at' directory must be owned by root, bin, or sys.DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL

GEN003430 - The 'at' directory must be group-owned by root, bin, sys, or cron.DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL

GEN003460 - The at.allow file must be owned by root, bin, or sys.DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL

GEN003522 - The kernel core dump data directory must have mode 0700 or less permissive.DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL

GEN003745 - The xinetd.conf files must not have extended ACLs.DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL

GEN003770 - The services file must be group-owned by root, bin, sys, or system.DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL

GEN003920 - The hosts.lpd (or equivalent) file must be owned by root, bin, sys, or lp.DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL

GEN004360 - The alias file must be owned by root - '/etc/postfix/aliases'DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL

GEN004380 - The sendmail alias files must have mode 0644 or less permissive - '/etc/aliases'DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL

GEN004390 - The alias file must not have an extended ACL - '/etc/aliases.db'DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL

GEN004390 - The alias file must not have an extended ACL - '/etc/aliases'DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL

GEN005180 - All .Xauthority files must have mode 0600 or less permissive.DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL

GEN005200 - X displays must not be exported to the world.DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL

GEN005375 - The snmpd.conf file must not have an extended ACL.DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL

GEN005420 - The /etc/syslog.conf file must be group-owned by root, bin, sys, or system.DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL

GEN005523 - The SSH private host key files must have mode 0600 or less permissive.DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL

GEN006100 - The /etc/samba/smb.conf file must be owned by root.DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL

GEN006120 - The /etc/samba/smb.conf file must be group-owned by root, bin, sys, or system.DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL

GEN006160 - The /etc/samba/passdb.tdb and /etc/samba.secrets.tdb files must be owned by root - '/etc/samba.secrets.tdb'DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL

GEN006160 - The /etc/samba/passdb.tdb and /etc/samba.secrets.tdb files must be owned by root - '/etc/samba/passdb.tdb'DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL

GEN006180 - The smbpasswd file must be group-owned by root - '/etc/samba/secrets.tdb'DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL

GEN006260 - The /etc/news/incoming.conf (or equivalent) must have mode 0600 or less permissiveDISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL

GEN006310 - The /etc/news/nnrp.access file must not have an extended ACL.DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL

GEN008100 - If using LDAP for auth or account information, the /etc/ldap.conf file must be group-owned by root, bin, sys, or system.DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL

GEN008120 - If using LDAP for auth or acct information, the /etc/ldap.conf (or equivalent) file must not have an extended ACL.DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL

GEN008260 - If using LDAP for auth or acct info, the TLS cert must have mode 0644 or less permissive - '/etc/openldap/cacerts/cert.pem'DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL

GEN008280 - If using LDAP for auth or acct info, the TLS cert must not have an extended ACL - '/etc/openldap/cacerts/cert.pem'DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL

GEN008360 - If using LDAP for auth or acct info, the LDAP TLS key file must not have an extended ACL - '/etc/openldap/cacerts/key.pem'DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL