Item Search

NameAudit NamePluginCategory
4.1.9 Ensure session initiation information is collected - '/var/log/btmp'CIS Ubuntu Linux 14.04 LTS Server L2 v2.1.0Unix

AUDIT AND ACCOUNTABILITY

4.1.9 Ensure session initiation information is collected - '/var/log/btmp'CIS Ubuntu Linux 14.04 LTS Workstation L2 v2.1.0Unix

AUDIT AND ACCOUNTABILITY

4.1.9 Ensure session initiation information is collected - '/var/log/wtmp'CIS Ubuntu Linux 14.04 LTS Workstation L2 v2.1.0Unix

AUDIT AND ACCOUNTABILITY

4.1.9 Ensure session initiation information is collected - '/var/run/utmp'CIS Ubuntu Linux 14.04 LTS Server L2 v2.1.0Unix

AUDIT AND ACCOUNTABILITY

4.1.9 Ensure session initiation information is collected - auditctl btmpCIS SUSE Linux Enterprise Server 11 L2 v2.1.1Unix

AUDIT AND ACCOUNTABILITY

4.1.9 Ensure session initiation information is collected - auditctl wtmpCIS SUSE Linux Enterprise Workstation 11 L2 v2.1.1Unix

AUDIT AND ACCOUNTABILITY

4.1.9 Ensure session initiation information is collected - btmpCIS SUSE Linux Enterprise Workstation 11 L2 v2.1.1Unix

AUDIT AND ACCOUNTABILITY

4.1.9 Ensure session initiation information is collected - utmpCIS SUSE Linux Enterprise Server 11 L2 v2.1.1Unix

AUDIT AND ACCOUNTABILITY

6.1 Restrict Access to SYSCAT.AUDITPOLICIESCIS IBM DB2 9 Benchmark v3.0.1 Level 2 DBIBM_DB2DB

ACCESS CONTROL

8.1.9 Collect Session Initiation Information- '/var/log/btmp'CIS Ubuntu 12.04 LTS Benchmark L2 v1.1.0Unix

AUDIT AND ACCOUNTABILITY

12.50 Intrusion detection system on host - 'Utilize'CIS v1.1.0 Oracle 11g OS L2Unix
12.50 Intrusion detection system on host - 'Utilize'CIS v1.1.0 Oracle 11g OS Windows Level 2Windows
AIX7-00-002145 - The AIX /etc/syslog.conf file must be group-owned by system.DISA STIG AIX 7.x v3r1Unix

CONFIGURATION MANAGEMENT

ALMA-09-045340 - AlmaLinux OS 9 must have the Advanced Intrusion Detection Environment (AIDE) package installed.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT, SYSTEM AND INFORMATION INTEGRITY

APPL-15-003080 - The macOS system must disable accounts after 35 days of inactivity.DISA Apple macOS 15 Sequoia STIG v1r7Unix

ACCESS CONTROL

APPL-26-003080 - The macOS system must disable accounts after 35 days of inactivity.DISA Apple macOS 26 Tahoe STIG v1r2Unix

ACCESS CONTROL

AZLX-23-001060 - Amazon Linux 2023 must have the Advanced Intrusion Detection Environment (AIDE) package installed.DISA Amazon Linux 2023 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT, SYSTEM AND INFORMATION INTEGRITY

BIND-9X-001890 - The BIND 9.x server implementation must maintain at least three file versions of the local log file.DISA BIND 9.x STIG v3r1Unix

AUDIT AND ACCOUNTABILITY

BIND-9X-001900 - The BIND 9.x server implementation must be configured with a channel to send audit records to a local file.DISA BIND 9.x STIG v3r1Unix

AUDIT AND ACCOUNTABILITY

CIS_Fedora_28_Family_Linux_Workstation_L1_v1.0.0.audit from CIS Fedora 19 Family Linux Benchmark v1.0.0CIS Fedora 19 Family Linux Workstation L2 v1.0.0Unix
CIS_Mozilla_Firefox_ESR_GPO_v1.0.0_L2.audit from CIS Mozilla Firefox ESR GPO Benchmark v1.0.0CIS Mozilla Firefox ESR GPO v1.0.0 L2Windows
CIS_Palo_Alto_Firewall_8_Benchmark_L1_v1.0.0.audit from CIS Palo Alto Firewall 8 Benchmark v1.0.0CIS Palo Alto Firewall 8 Benchmark L1 v1.0.0Palo_Alto
CIS_Palo_Alto_Firewall_8_Benchmark_L2_v1.0.0.audit from CIS Palo Alto Firewall 8 Benchmark v1.0.0CIS Palo Alto Firewall 8 Benchmark L2 v1.0.0Palo_Alto
CIS_Ubuntu_Linux_24.04_LTS_STIG_v1.0.0_CAT_I.audit from CIS Ubuntu Linux 24.04 LTS STIG Benchmark v1.0.0CIS Ubuntu Linux 24.04 LTS STIG v1.0.0 CAT IUnix
Ensure session initiation information is collected - auditctl btmpTenable Cisco Firepower Management Center OS Best Practices AuditUnix

AUDIT AND ACCOUNTABILITY

F5BI-AP-300041 - The F5 BIG-IP appliance that provides intermediary services for SMTP must inspect inbound and outbound SMTP and Extended SMTP communications traffic for protocol compliance and protocol anomalies.DISA F5 BIG-IP TMOS ALG STIG v1r2F5

CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION

GOOG-13-006800 - Google Android 13 must be configured to not display the following (work profile) notifications when the device is locked: [selection:AirWatch - DISA Google Android 13 COPE STIG v2r3MDM

ACCESS CONTROL

GOOG-14-013400 - Google Android 14 devices must have a Mobile Threat Detection (MTD) app installed.AirWatch - DISA Google Android 14 COBO STIG v2r3MDM

CONFIGURATION MANAGEMENT

GOOG-14-013400 - Google Android 14 devices must have a Mobile Threat Detection (MTD) app installed.MobileIron - DISA Google Android 14 COBO STIG v2r3MDM

CONFIGURATION MANAGEMENT

GOOG-14-013400 - Google Android 14 devices must have a Mobile Threat Detection (MTD) app installed.AirWatch - DISA Google Android 14 COPE STIG v2r3MDM

CONFIGURATION MANAGEMENT

GOOG-14-013400 - Google Android 14 devices must have a Mobile Threat Detection (MTD) app installed.MobileIron - DISA Google Android 14 COPE STIG v2r3MDM

CONFIGURATION MANAGEMENT

GOOG-14-713400 - Google Android 14 BYOAD devices must have a Mobile Threat Detection (MTD) app installed.MobileIron - DISA Google Android 14 BYOAD v1r2MDM

CONFIGURATION MANAGEMENT

GOOG-15-013400 - Google Android 15 devices must have a Mobile Threat Detection (MTD) app installed.AirWatch - DISA Google Android 15 COBO STIG v1r3MDM

CONFIGURATION MANAGEMENT

GOOG-15-013400 - Google Android 15 devices must have a Mobile Threat Detection (MTD) app installed.MobileIron - DISA Google Android 15 COBO STIG v1r3MDM

CONFIGURATION MANAGEMENT

GOOG-15-013400 - Google Android 15 devices must have a Mobile Threat Detection (MTD) app installed.AirWatch - DISA Google Android 15 COPE STIG v1r3MDM

CONFIGURATION MANAGEMENT

GOOG-15-013400 - Google Android 15 devices must have a Mobile Threat Detection (MTD) app installed.MobileIron - DISA Google Android 15 COPE STIG v1r3MDM

CONFIGURATION MANAGEMENT

GOOG-16-013400 - Google Android 16 devices must have a Mobile Threat Detection (MTD) app installed.MobileIron - DISA Google Android 16 COBO STIG v1r1MDM

CONFIGURATION MANAGEMENT

GOOG-16-013400 - Google Android 16 devices must have a Mobile Threat Detection (MTD) app installed.MobileIron - DISA Google Android 16 COPE STIG v1r1MDM

CONFIGURATION MANAGEMENT

GOOG-16-013400 - Google Android 16 devices must have a Mobile Threat Detection (MTD) app installed.AirWatch - DISA Google Android 16 COPE STIG v1r1MDM

CONFIGURATION MANAGEMENT

JUSX-VN-000008 - The Juniper SRX Services Gateway VPN must be configured to use IPsec with SHA256 or greater to negotiate hashing to protect the integrity of remote access sessions.DISA Juniper SRX Services Gateway VPN v3r2Juniper

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

OL6-00-000197 - The audit system must be configured to audit failed attempts to access files and programs - b32 EACCES auid=0DISA STIG Oracle Linux 6 v2r7Unix

AUDIT AND ACCOUNTABILITY

OL6-00-000197 - The audit system must be configured to audit failed attempts to access files and programs - b32 EPERM auid=0DISA STIG Oracle Linux 6 v2r7Unix

AUDIT AND ACCOUNTABILITY

OL6-00-000197 - The audit system must be configured to audit failed attempts to access files and programs - b32 EPERM auid>=500DISA STIG Oracle Linux 6 v2r7Unix

AUDIT AND ACCOUNTABILITY

OL6-00-000197 - The audit system must be configured to audit failed attempts to access files and programs - b64 EACCES auid>=500DISA STIG Oracle Linux 6 v2r7Unix

AUDIT AND ACCOUNTABILITY

OL6-00-000197 - The audit system must be configured to audit failed attempts to access files and programs - b64 EPERM auid=0DISA STIG Oracle Linux 6 v2r7Unix

AUDIT AND ACCOUNTABILITY

OL6-00-000197 - The audit system must be configured to audit failed attempts to access files and programs - b64 EPERM auid>=500DISA STIG Oracle Linux 6 v2r7Unix

AUDIT AND ACCOUNTABILITY

PANW-IP-000043 - The Palo Alto Networks security platform must use a Vulnerability Protection Profile that blocks any critical, high, or medium threats.DISA Palo Alto Networks IDPS STIG v3r2Palo_Alto

SYSTEM AND COMMUNICATIONS PROTECTION

SLEM-05-651035 - SLEM 5 must notify the system administrator (SA) when Advanced Intrusion Detection Environment (AIDE) discovers anomalies in the operation of any security functions.DISA SUSE Linux Enterprise Micro SLEM 5 STIG v1r4Unix

SYSTEM AND INFORMATION INTEGRITY

WN12-CC-000065 - The detection of compatibility issues for applications and drivers must be turned off.DISA Windows Server 2012 and 2012 R2 MS STIG v3r7Windows

CONFIGURATION MANAGEMENT

WN12-CC-000065 - The detection of compatibility issues for applications and drivers must be turned off.DISA Windows Server 2012 and 2012 R2 DC STIG v3r7Windows

CONFIGURATION MANAGEMENT