Item Search

NameAudit NamePluginCategory
1.9 RHEL-09-211050CIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT IUnix

ACCESS CONTROL

1.21 CISC-ND-001210CIS Cisco IOS XR Router NDM STIG v1.0.0 CAT ICisco

MAINTENANCE

1.22 CISC-RT-000310CIS Cisco IOS XE Switch RTR STIG v1.1.0 CAT ICisco

SYSTEM AND COMMUNICATIONS PROTECTION

1.23 CISC-ND-001370CIS Cisco IOS XR Router NDM STIG v1.0.0 CAT ICisco

CONFIGURATION MANAGEMENT

1.39 CISC-ND-001370CIS Cisco IOS Switch NDM STIG v1.1.0 CAT ICisco

CONFIGURATION MANAGEMENT

1.41 PHTN-40-000105CIS VMware vSphere 8.0 vCenter Appliance Photon OS 4.0 STIG v1.0.0 CAT IUnix

ACCESS CONTROL

1.50 RHEL-10-200631CIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT IUnix

AUDIT AND ACCOUNTABILITY

1.70 O19C-00-014800CIS Oracle Database 19c STIG v1.1.0 CAT I OracleDBOracleDB

IDENTIFICATION AND AUTHENTICATION

1.72 O19C-00-015200CIS Oracle Database 19c STIG v1.1.0 CAT I UnixUnix

IDENTIFICATION AND AUTHENTICATION

1.84 RHEL-10-300070CIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT IUnix

ACCESS CONTROL

1.116 WN22-CC-000230CIS Microsoft Windows Server 2022 STIG v3.0.0 DC CAT IWindows

CONFIGURATION MANAGEMENT

1.155 WN22-DC-000090CIS Microsoft Windows Server 2022 STIG v3.0.0 DC CAT IWindows

ACCESS CONTROL

1.156 WN22-DC-000100CIS Microsoft Windows Server 2022 STIG v3.0.0 DC CAT IWindows

ACCESS CONTROL

1.173 WN16-DC-000290CIS Microsoft Windows Server 2016 STIG v4.0.0 DC CAT IWindows

IDENTIFICATION AND AUTHENTICATION

1.255 WN22-UR-000020CIS Microsoft Windows Server 2022 STIG v3.0.0 DC CAT IWindows

ACCESS CONTROL

APPL-13-002063 - The macOS system must disable the guest account.DISA STIG Apple macOS 13 v1r5Unix

CONFIGURATION MANAGEMENT

APPL-26-002060 - The macOS system must apply gatekeeper settings to block applications from unidentified developers.DISA Apple macOS 26 Tahoe STIG v1r2Unix

CONFIGURATION MANAGEMENT

ARBA-ND-000336 - AOS must be configured to use at least two authentication servers for the purpose of authenticating users prior to granting administrative access.DISA HPE Aruba Networking AOS NDM STIG v1r1ArubaOS

CONFIGURATION MANAGEMENT

ARST-ND-000700 - The Arista network device must be configured to implement cryptographic mechanisms using a FIPS 140-2 approved algorithm to protect the confidentiality of remote maintenance sessions.DISA Arista MLS EOS 4.X NDM STIG v2r2Arista

MAINTENANCE

ARST-RT-000330 - The Arista perimeter router must be configured to deny network traffic by default and allow network traffic by exception.DISA STIG Arista MLS EOS 4.2x Router v2r1Arista

SYSTEM AND COMMUNICATIONS PROTECTION

CD12-00-000500 - PostgreSQL must integrate with an organization-level authentication/access mechanism providing account management and automation for all users, groups, roles, and any other principals.DISA STIG Crunchy Data PostgreSQL OS v3r1Unix

ACCESS CONTROL

CD12-00-003200 - The PostgreSQL software installation account must be restricted to authorized users.DISA STIG Crunchy Data PostgreSQL DB v3r1PostgreSQLDB

CONFIGURATION MANAGEMENT

CNTR-K8-000220 - The Kubernetes Controller Manager must create unique service accounts for each work payload.DISA Kubernetes STIG v2r6Unix

ACCESS CONTROL

CNTR-K8-002630 - Kubernetes API Server must disable token authentication to protect information in transit.DISA Kubernetes STIG v2r6Unix

SYSTEM AND COMMUNICATIONS PROTECTION

CNTR-K8-002640 - Kubernetes endpoints must use approved organizational certificate and key pair to protect information in transit.DISA Kubernetes STIG v2r6Unix

SYSTEM AND COMMUNICATIONS PROTECTION

EX19-MB-000134 - Exchange servers must have an approved DOD email-aware virus protection software installed.DISA Microsoft Exchange 2019 Mailbox Server STIG v2r3Windows

SYSTEM AND INFORMATION INTEGRITY

GEN006380 - The system must not use UDP for NIS/NIS+.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GOOG-15-012500 - Google Android 15 must be configured to disable 'Private Space' use - Private Space use.AirWatch - DISA Google Android 15 COBO STIG v1r5MDM

CONFIGURATION MANAGEMENT

GOOG-15-012500 - Google Android 15 must be configured to disable 'Private Space' use - Private Space use.AirWatch - DISA Google Android 15 COPE STIG v1r5MDM

CONFIGURATION MANAGEMENT

MADB-10-002700 - The MariaDB software installation account must be restricted to authorized users.DISA MariaDB Enterprise 10.x STIG v2r5 UnixUnix

CONFIGURATION MANAGEMENT

MD4X-00-001600 - MongoDB must integrate with an organization-level authentication/access mechanism providing account management and automation for all users, groups, roles, and any other principals.DISA STIG MongoDB Enterprise Advanced 4.x v1r4 OSUnix

ACCESS CONTROL

MD7X-00-000200 MongoDB must integrate with an organization-level authentication/access mechanism providing account management and automation for all users, groups, roles, and any other principals.DISA MongoDB Enterprise Advanced 7.x STIG v1r1Unix

ACCESS CONTROL

O19C-00-017700 - Oracle Database must employ cryptographic mechanisms preventing the unauthorized disclosure of information during transmission unless the transmitted data is otherwise protected by alternative physical measures.DISA Oracle Database 19c STIG v1r5 WindowsWindows

SYSTEM AND COMMUNICATIONS PROTECTION

OL08-00-010184 - The OL 8 SSH client must be configured to use only DOD-approved encryption ciphers employing FIPS 140-3-validated cryptographic hash algorithms to protect the confidentiality of SSH client connections.DISA Oracle Linux 8 STIG v2r9Unix

ACCESS CONTROL

OL09-00-000497 - OL 9 must check the GPG signature of software packages originating from external software repositories before installation.DISA Oracle Linux 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

OL09-00-000498 - OL 9 must have GPG signature verification enabled for all software repositories.DISA Oracle Linux 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

OL09-00-002343 - OL 9 SSHD must not allow blank passwords.DISA Oracle Linux 9 STIG v1r6Unix

IDENTIFICATION AND AUTHENTICATION

OS10-NDM-000930 - The Dell OS10 Switch must be configured to use at least two authentication servers for the purpose of authenticating users prior to granting administrative access.DISA Dell OS10 Switch NDM STIG v1r1Dell_OS10

CONFIGURATION MANAGEMENT

PHTN-40-000239 - The Photon operating system must implement only approved Message Authentication Codes (MACs) to protect the integrity of remote access sessions.DISA VMware vSphere 8.0 vCenter Appliance Photon OS 4.0 STIG v2r2Unix

ACCESS CONTROL

RHEL-10-001030 - RHEL 10 must check the GNU Privacy Guard (GPG) signature of software packages originating from external software repositories before installation.DISA Red Hat Enterprise Linux 10 STIG v1r2Unix

CONFIGURATION MANAGEMENT

SHPT-00-000683 - SharePoint-specific malware (i.e., anti-virus) software must be integrated and configured.DISA STIG SharePoint 2010 v1r9Windows

SYSTEM AND COMMUNICATIONS PROTECTION

SYMP-AG-000030 - Symantec ProxySG providing forward proxy intermediary services for TLS must be configured to comply with the required TLS settings in NIST SP 800-52 - server.connection.negotiated_ssl_versionDISA Symantec ProxySG Benchmark ALG v1r3BlueCoat

ACCESS CONTROL

SYMP-NM-000300 - The Symantec ProxySG must use FIPS-validated Keyed-Hash Message Authentication Code (HMAC) to protect the integrity of nonlocal maintenance and diagnostic communications.DISA Symantec ProxySG Benchmark NDM v1r2BlueCoat

MAINTENANCE

WN11-UR-000065 - The 'Debug programs' user right must only be assigned to the Administrators group.DISA Microsoft Windows 11 STIG v2r8Windows

ACCESS CONTROL

WN22-CC-000210 - Windows Server 2022 Autoplay must be turned off for nonvolume devices.DISA Microsoft Windows Server 2022 STIG v2r8Windows

CONFIGURATION MANAGEMENT

WN25-CC-000210 - Windows Server 2025 AutoPlay must be turned off for nonvolume devices.DISA Microsoft Windows Server 2025 STIG v1r1Windows

CONFIGURATION MANAGEMENT

WN25-CC-000220 - Windows Server 2025 default AutoRun behavior must be configured to prevent AutoRun commands.DISA Microsoft Windows Server 2025 STIG v1r1Windows

CONFIGURATION MANAGEMENT

WN25-CC-000230 - Windows Server 2025 AutoPlay must be disabled for all drives.DISA Microsoft Windows Server 2025 STIG v1r1Windows

CONFIGURATION MANAGEMENT

WN25-DC-000100 - Windows Server 2025 Active Directory Domain Controllers Organizational Unit (OU) object must have the proper access control permissions.DISA Microsoft Windows Server 2025 STIG v1r1Windows

ACCESS CONTROL

WN25-UR-000060 - The Windows Server 2025 'Create a token object' user right must not be assigned to any groups or accounts.DISA Microsoft Windows Server 2025 STIG v1r1Windows

ACCESS CONTROL