Item Search

NameAudit NamePluginCategory
1.5.5 Ensure number of concurrent sessions is limitedCIS Amazon Linux 2 STIG v2.0.1 STIGUnix

ACCESS CONTROL

1.37 ESXI-80-000210CIS VMware vSphere 8.0 ESXi STIG v1.0.0 CAT III UnixUnix

CONFIGURATION MANAGEMENT

AIOS-18-017300 - Apple iOS/iPadOS 18 must disable the Apple Intelligence feature: Image Generation.AirWatch - DISA Apple iOS/iPadOS 18 v2r3MDM

CONFIGURATION MANAGEMENT

AIOS-26-010500 - Apple iOS/iPadOS 26 must implement the management setting: limit Ad Tracking.AirWatch - DISA Apple iOS/iPadOS 26 v1r3MDM

SYSTEM AND COMMUNICATIONS PROTECTION

AIOS-26-010800 - Apple iOS/iPadOS 26 must implement the management setting: not allow use of Handoff.AirWatch - DISA Apple iOS/iPadOS 26 v1r3MDM

CONFIGURATION MANAGEMENT

AIOS-26-012300 - Apple iOS/iPadOS 26 must not allow managed apps to write contacts to unmanaged contacts accounts.AirWatch - DISA Apple iOS/iPadOS 26 v1r3MDM

CONFIGURATION MANAGEMENT

AIOS-26-012400 - Apple iOS/iPadOS 26 must not allow unmanaged apps to read contacts from managed contacts accounts.AirWatch - DISA Apple iOS/iPadOS 26 v1r3MDM

CONFIGURATION MANAGEMENT

AIOS-26-016600 - Apple iOS/iPadOS 26 must disable AirPrint.AirWatch - DISA Apple iOS/iPadOS 26 v1r3MDM

CONFIGURATION MANAGEMENT

AIOS-26-016800 - Apple iOS/iPadOS 26 must disable AirPrint: Allow storage of AirPrint credentials in Keychain.MobileIron - DISA Apple iOS/iPadOS 26 v1r3MDM

CONFIGURATION MANAGEMENT

AIOS-26-016800 - Apple iOS/iPadOS 26 must disable AirPrint: Allow storage of AirPrint credentials in Keychain.AirWatch - DISA Apple iOS/iPadOS 26 v1r3MDM

CONFIGURATION MANAGEMENT

AIOS-26-016900 - Apple iOS/iPadOS 26 must allow AirPrint feature: Disallow AirPrint to destinations with untrusted certificates.AirWatch - DISA Apple iOS/iPadOS 26 v1r3MDM

CONFIGURATION MANAGEMENT

AIOS-26-017200 - Apple iOS/iPadOS 26 must disable Apple Intelligence feature: Image Wand.MobileIron - DISA Apple iOS/iPadOS 26 v1r3MDM

CONFIGURATION MANAGEMENT

AIOS-26-017300 - Apple iOS/iPadOS 26 must disable Apple Intelligence feature: Image Generation.MobileIron - DISA Apple iOS/iPadOS 26 v1r3MDM

CONFIGURATION MANAGEMENT

APPL-26-004050 - The macOS system must configure install.log retention to 365.DISA Apple macOS 26 Tahoe STIG v1r3Unix

AUDIT AND ACCOUNTABILITY

CASA-VN-000020 - The Cisco ASA must be configured to generate log records containing information to establish when the events occurred.DISA STIG Cisco ASA VPN v2r2Cisco

AUDIT AND ACCOUNTABILITY

CASA-VN-000520 - The Cisco ASA remote access VPN server must be configured to generate log records containing information to establish the source of the events.DISA STIG Cisco ASA VPN v2r2Cisco

AUDIT AND ACCOUNTABILITY

ESXI-80-000213 - The ESXi host must disable Inter-Virtual Machine (VM) Transparent Page Sharing.DISA VMware vSphere 8.0 ESXi STIG v2r4 VMwareVMware

CONFIGURATION MANAGEMENT

F5BI-AP-300157 - The F5 BIG-IP appliance must be configured to limit authenticated client sessions to initial session source IP.DISA F5 BIG-IP TMOS ALG STIG v1r3F5

SYSTEM AND COMMUNICATIONS PROTECTION

GOOG-15-011000 - Android 15 devices must be configured to enable Common Criteria Mode (CC Mode) - CC Mode.AirWatch - DISA Google Android 15 COBO STIG v1r5MDM

CONFIGURATION MANAGEMENT

GOOG-15-012400 - Google Android 15 must allow only the administrator (MDM) to perform the following management function: Disable Phone Hub - MDM to perform the following management function: Disable Phone Hub.AirWatch - DISA Google Android 15 COBO STIG v1r5MDM

SYSTEM AND COMMUNICATIONS PROTECTION

GOOG-15-012400 - Google Android 15 must allow only the administrator (MDM) to perform the following management function: Disable Phone Hub - MDM to perform the following management function: Disable Phone Hub.MobileIron - DISA Google Android 15 COBO STIG v1r5MDM

SYSTEM AND COMMUNICATIONS PROTECTION

GOOG-15-013300 - Google Android 15 must disable screen capture.AirWatch - DISA Google Android 15 COPE STIG v1r5MDM

CONFIGURATION MANAGEMENT

OL08-00-010472 - OL 8 must have the packages required to use the hardware random number generator entropy gatherer service.DISA Oracle Linux 8 STIG v2r9Unix

CONFIGURATION MANAGEMENT

OL08-00-010541 - OL 8 must use a separate file system for "/var/log".DISA Oracle Linux 8 STIG v2r9Unix

CONFIGURATION MANAGEMENT

OL08-00-030741 - OL 8 must disable the chrony daemon from acting as a server.DISA Oracle Linux 8 STIG v2r9Unix

CONFIGURATION MANAGEMENT

OL08-00-030742 - OL 8 must disable network management of the chrony daemon.DISA Oracle Linux 8 STIG v2r9Unix

CONFIGURATION MANAGEMENT

OL09-00-002415 - OL 9 must limit the number of concurrent sessions to ten for all accounts and/or account types.DISA Oracle Linux 9 STIG v1r6Unix

ACCESS CONTROL

PHTN-40-000110 - The Photon operating system must allocate audit record storage capacity to store audit records when audit records are not immediately sent to a central audit record storage facility.DISA VMware vSphere 8.0 vCenter Appliance Photon OS 4.0 STIG v2r2Unix

AUDIT AND ACCOUNTABILITY

RHEL-08-010292 - RHEL 8 must ensure the SSH server uses strong entropy.DISA Red Hat Enterprise Linux 8 STIG v2r8Unix

CONFIGURATION MANAGEMENT

RHEL-08-020024 - RHEL 8 must limit the number of concurrent sessions to ten for all accounts and/or account types.DISA Red Hat Enterprise Linux 8 STIG v2r8Unix

ACCESS CONTROL

RHEL-09-231020 - RHEL 9 must use a separate file system for /var.DISA Red Hat Enterprise Linux 9 STIG v2r9Unix

CONFIGURATION MANAGEMENT

RHEL-09-291025 - RHEL 9 must enable Linux audit logging for the USBGuard daemon.DISA Red Hat Enterprise Linux 9 STIG v2r9Unix

AUDIT AND ACCOUNTABILITY

RHEL-10-600475 - RHEL 10 must limit the number of concurrent sessions to 10 for all accounts and/or account types.DISA Red Hat Enterprise Linux 10 STIG v1r2Unix

ACCESS CONTROL

SLES-15-020020 - The SUSE operating system must limit the number of concurrent sessions to 10 for all accounts and/or account types.DISA SUSE Linux Enterprise Server 15 STIG v2r8Unix

ACCESS CONTROL

SLES-15-030810 - The SUSE operating system must use a separate file system for the system audit data path.DISA SUSE Linux Enterprise Server 15 STIG v2r8Unix

CONFIGURATION MANAGEMENT

SLES-15-040200 - A separate file system must be used for SUSE operating system user home directories (such as /home or an equivalent).DISA SUSE Linux Enterprise Server 15 STIG v2r8Unix

CONFIGURATION MANAGEMENT

UBTU-22-213010 - Ubuntu 22.04 LTS must restrict access to the kernel message buffer.DISA Canonical Ubuntu 22.04 LTS STIG v2r9Unix

SYSTEM AND COMMUNICATIONS PROTECTION

UBTU-24-200000 - Ubuntu 24.04 LTS must limit the number of concurrent sessions to 10 for all accounts and/or account types.DISA Canonical Ubuntu 24.04 LTS STIG v1r6Unix

ACCESS CONTROL

UBTU-24-900920 - Ubuntu 24.04 LTS must allocate audit record storage capacity to store at least one week's worth of audit records, when audit records are not immediately sent to a central audit record storage facility.DISA Canonical Ubuntu 24.04 LTS STIG v1r6Unix

AUDIT AND ACCOUNTABILITY

UBTU-24-901220 - Ubuntu 24.04 LTS must record time stamps for audit records that can be mapped to Coordinated Universal Time (UTC) or Greenwich Mean Time (GMT).DISA Canonical Ubuntu 24.04 LTS STIG v1r6Unix

AUDIT AND ACCOUNTABILITY

WN10-CC-000080 - Virtualization-based protection of code integrity must be enabled.DISA Microsoft Windows 10 STIG v3r6Windows

CONFIGURATION MANAGEMENT

WN11-CC-000035 - The system must be configured to ignore NetBIOS name release requests except from WINS servers.DISA Microsoft Windows 11 STIG v2r9Windows

SYSTEM AND COMMUNICATIONS PROTECTION

WN11-CC-000170 - The setting to allow Microsoft accounts to be optional for modern style apps must be enabled.DISA Microsoft Windows 11 STIG v2r9Windows

CONFIGURATION MANAGEMENT

WN11-CC-000175 - The Application Compatibility Program Inventory must be prevented from collecting data and sending the information to Microsoft.DISA Microsoft Windows 11 STIG v2r9Windows

CONFIGURATION MANAGEMENT

WN11-CC-000390 - Windows 11 must be configured to prevent users from receiving suggestions for third-party or additional applications.DISA Microsoft Windows 11 STIG v2r9Windows

CONFIGURATION MANAGEMENT

WN22-CC-000060 - Windows Server 2022 must be configured to ignore NetBIOS name release requests except from WINS servers.DISA Microsoft Windows Server 2022 STIG v2r10Windows

SYSTEM AND COMMUNICATIONS PROTECTION

WN22-CC-000320 - Windows Server 2022 Turning off File Explorer heap termination on corruption must be disabled.DISA Microsoft Windows Server 2022 STIG v2r10Windows

CONFIGURATION MANAGEMENT

WN22-SO-000370 - Windows Server 2022 default permissions of global system objects must be strengthened.DISA Microsoft Windows Server 2022 STIG v2r10Windows

CONFIGURATION MANAGEMENT

ZEBR-14-007700 - Zebra Android 14 must be configured to display the DOD advisory warning message at startup or each time the user unlocks the device.MobileIron - DISA Zebra Android 14 COPE STIG v1r2MDM

ACCESS CONTROL

ZEBR-14-013200 - Zebra Android 14 must disable wireless printing.AirWatch - DISA Zebra Android 14 COPE STIG v1r2MDM

CONFIGURATION MANAGEMENT