Item Search

NameAudit NamePluginCategory
1.5.6 Ensure the Ctrl-Alt-Delete key sequence is disabled.CIS Amazon Linux 2 STIG v2.0.0 STIGUnix

CONFIGURATION MANAGEMENT

1.61 UBTU-22-255040CIS Ubuntu Linux 22.04 LTS STIG v1.0.0 CAT IUnix

CONFIGURATION MANAGEMENT

1.65 UBTU-24-300022CIS Ubuntu Linux 24.04 LTS STIG v1.0.0 CAT IUnix

CONFIGURATION MANAGEMENT

1.68 UBTU-24-300025CIS Ubuntu Linux 24.04 LTS STIG v1.0.0 CAT IUnix

CONFIGURATION MANAGEMENT

1.69 UBTU-24-300026CIS Ubuntu Linux 24.04 LTS STIG v1.0.0 CAT IUnix

CONFIGURATION MANAGEMENT

1.99 UBTU-22-611060CIS Ubuntu Linux 22.04 LTS STIG v1.0.0 CAT IUnix

CONFIGURATION MANAGEMENT

1.105 UBTU-24-600130CIS Ubuntu Linux 24.04 LTS STIG v1.0.0 CAT IUnix

SYSTEM AND COMMUNICATIONS PROTECTION

1.179 UBTU-22-671010CIS Ubuntu Linux 22.04 LTS STIG v1.0.0 CAT IUnix

SYSTEM AND COMMUNICATIONS PROTECTION

2.1.25 Ensure the rsh-server package is not installedCIS Red Hat Enterprise Linux 8 STIG v2.0.0 STIGUnix

CONFIGURATION MANAGEMENT

2.1.31 Ensure a TFTP server has not been installed on the systemCIS Red Hat Enterprise Linux 8 STIG v2.0.0 STIGUnix

CONFIGURATION MANAGEMENT

2.2.23 Ensure default SNMP community strings don't existCIS Amazon Linux 2 STIG v2.0.0 STIGUnix

CONFIGURATION MANAGEMENT

6.2.9 Ensure root is the only UID 0 accountCIS Amazon Linux 2 STIG v2.0.0 L1 WorkstationUnix

CONFIGURATION MANAGEMENT

6.2.9 Ensure root is the only UID 0 accountCIS Amazon Linux 2 STIG v2.0.0 STIGUnix

CONFIGURATION MANAGEMENT

6.2.9 Ensure root is the only UID 0 accountCIS Amazon Linux 2 STIG v2.0.0 L1 ServerUnix

CONFIGURATION MANAGEMENT

AIOS-17-706950 - Apple iOS/iPadOS 17 must be configured to enforce a passcode reuse prohibition of at least two generations.AirWatch - DISA Apple iOS/iPadOS 17 BYOAD v1r2MDM

IDENTIFICATION AND AUTHENTICATION

AIOS-17-706950 - Apple iOS/iPadOS 17 must be configured to enforce a passcode reuse prohibition of at least two generations.MobileIron - DISA Apple iOS/iPadOS BYOAD 17 v1r2MDM

IDENTIFICATION AND AUTHENTICATION

AIOS-18-006950 - Apple iOS/iPadOS 18 must be configured to enforce a passcode reuse prohibition of at least two generations.AirWatch - DISA Apple iOS/iPadOS 18 v2r2MDM

IDENTIFICATION AND AUTHENTICATION

AIOS-26-006950 - Apple iOS/iPadOS 26 must be configured to enforce a passcode reuse prohibition of at least two generations.AirWatch - DISA Apple iOS/iPadOS 26 v1r2MDM

IDENTIFICATION AND AUTHENTICATION

ALMA-09-037530 - AlmaLinux OS 9 must be configured so that the Pluggable Authentication Module is configured to store only encrypted representations of passwords.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-037640 - AlmaLinux OS 9 must be configured so that interactive user account passwords are using strong password hashes.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-037750 - AlmaLinux OS 9 must not have any File Transfer Protocol (FTP) packages installed.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

IDENTIFICATION AND AUTHENTICATION

APPL-11-002031 - The macOS system must be configured to disable the system preference pane for Apple ID.DISA STIG Apple macOS 11 v1r5Unix

CONFIGURATION MANAGEMENT

APPL-11-002038 - Apple macOS must be configured to disable the tftp service.DISA STIG Apple macOS 11 v1r8Unix

IDENTIFICATION AND AUTHENTICATION

APPL-11-002038 - Apple macOS must be configured to disable the tftp service.DISA STIG Apple macOS 11 v1r5Unix

IDENTIFICATION AND AUTHENTICATION

APPL-12-002038 - The macOS system must be configured to disable the tftp service.DISA STIG Apple macOS 12 v1r9Unix

IDENTIFICATION AND AUTHENTICATION

CNTR-K8-001161 - Sensitive information must be stored using Kubernetes Secrets or an external Secret store provider.DISA STIG Kubernetes v2r5Unix

IDENTIFICATION AND AUTHENTICATION

EPAS-00-004300 - If passwords are used for authentication, the EDB Postgres Advanced Server must store only hashed, salted representations of passwords.EnterpriseDB PostgreSQL Advanced Server DB v2r1PostgreSQLDB

IDENTIFICATION AND AUTHENTICATION

GEN000000-AIX00080 - The SYSTEM attribute must not be set to NONE for any account.DISA AIX 5.3 STIG v1r2Unix

IDENTIFICATION AND AUTHENTICATION

GEN000560 - The system must not have accounts configured with blank or null passwords.DISA STIG AIX 6.1 v1r14Unix

CONFIGURATION MANAGEMENT

GEN002220 - All shell files must have mode 0755 or less permissive.DISA STIG AIX 6.1 v1r14Unix

ACCESS CONTROL

GEN004640 - The SMTP service must not have a uudecode alias active - '/etc/aliases decode alias does not exist'DISA STIG AIX 6.1 v1r14Unix

SYSTEM AND INFORMATION INTEGRITY

GEN004640 - The SMTP service must not have a uudecode alias active - '/usr/lib/aliases decode alias does not exist'DISA STIG AIX 6.1 v1r14Unix

SYSTEM AND INFORMATION INTEGRITY

GEN005080 - The TFTP daemon must operate in 'secure mode' which provides access only to a single directory on the host file system.DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

CONFIGURATION MANAGEMENT

GEN005100 - The TFTP daemon must have mode 0755 or less permissive.DISA STIG AIX 6.1 v1r14Unix

ACCESS CONTROL

GEN005200 - X displays must not be exported to the world.DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL

GEN008640 - The system must not use removable media as the boot loader - 'prevboot'DISA STIG AIX 6.1 v1r14Unix

CONFIGURATION MANAGEMENT

GEN008640 - The system must not use removable media as the boot loader - 'service'DISA STIG AIX 6.1 v1r14Unix

CONFIGURATION MANAGEMENT

IBMW-LS-000450 - The WebSphere Liberty Server must use TLS-enabled LDAP.DISA IBM WebSphere Liberty Server STIG v2r4Unix

IDENTIFICATION AND AUTHENTICATION

PHTN-40-000039 - The operating system must store only encrypted representations of passwords.DISA VMware vSphere 8.0 vCenter Appliance Photon OS 4.0 STIG v2r1Unix

IDENTIFICATION AND AUTHENTICATION

RHEL-10-200070 - RHEL 10 must not have the "tftp" package installed.DISA Red Hat Enterprise Linux 10 STIG v1r1Unix

IDENTIFICATION AND AUTHENTICATION

RHEL-10-600740 - RHEL 10 must be configured to use the shadow file to store only encrypted representations of passwords.DISA Red Hat Enterprise Linux 10 STIG v1r1Unix

IDENTIFICATION AND AUTHENTICATION

SQLI-22-008000 - Contained databases must use Windows principals.DISA Microsoft SQL Server 2022 Instance STIG v1r4 MS_SQLDBMS_SQLDB

IDENTIFICATION AND AUTHENTICATION

SYMP-NM-000260 - Symantec ProxySG must transmit only encrypted representations of passwords.DISA Symantec ProxySG Benchmark NDM v1r2BlueCoat

IDENTIFICATION AND AUTHENTICATION

UBTU-22-215035 - Ubuntu 22.04 LTS must not have the "telnet" package installed.DISA Canonical Ubuntu 22.04 LTS STIG v2r8Unix

IDENTIFICATION AND AUTHENTICATION

UBTU-24-100030 - Ubuntu 24.04 LTS must not have the telnet package installed.DISA Canonical Ubuntu 24.04 LTS STIG v1r5Unix

IDENTIFICATION AND AUTHENTICATION

WBSP-AS-001200 - The WebSphere Application Server secure LDAP (LDAPS) must be used for authentication.DISA IBM WebSphere Traditional 9 Windows STIG v1r1Windows

IDENTIFICATION AND AUTHENTICATION

WBSP-AS-001200 - The WebSphere Application Server secure LDAP (LDAPS) must be used for authentication.DISA IBM WebSphere Traditional 9 STIG v1r1Unix

IDENTIFICATION AND AUTHENTICATION

WBSP-AS-001200 - The WebSphere Application Server secure LDAP (LDAPS) must be used for authentication.DISA IBM WebSphere Traditional 9 STIG v1r1 MiddlewareUnix

IDENTIFICATION AND AUTHENTICATION

WBSP-AS-001230 - The WebSphere Application Server default keystore passwords must be changed.DISA IBM WebSphere Traditional 9 STIG v1r1Unix

IDENTIFICATION AND AUTHENTICATION

WN22-DC-000300 - Windows Server 2022 PKI certificates associated with user accounts must be issued by a DoD PKI or an approved External Certificate Authority (ECA).DISA Microsoft Windows Server 2022 STIG v2r8Windows

IDENTIFICATION AND AUTHENTICATION