Item Search

NameAudit NamePluginCategory
1.44 WN19-00-000440CIS Microsoft Windows Server 2019 STIG v4.0.0 DC CAT IIIWindows

AUDIT AND ACCOUNTABILITY

ADBP-XI-001310 - The Adobe Acrobat Pro XI Welcome Screen must be disabled.DISA Adobe Acrobat Pro XI STIG v1r2Windows

CONFIGURATION MANAGEMENT

AIOS-02-080008 - Apple iOS must implement the management setting: limit Ad Tracking.AirWatch - DISA Apple iOS 10 v1r3MDM

CONFIGURATION MANAGEMENT

AIOS-02-080016 - Apple iOS must implement the management setting: not allow automatic completion of Safari browser passcodes.AirWatch - DISA Apple iOS 10 v1r3MDM

CONFIGURATION MANAGEMENT

AIOS-11-080203 - Apple iOS must implement the management setting: force Apple Watch wrist detection.AirWatch - DISA Apple iOS 10 v1r3MDM

CONFIGURATION MANAGEMENT

AIOS-14-003300 - The mobile operating system must be configured to display the DoD advisory warning message at start-up or each time the user unlocks the device.MobileIron - DISA Apple iOS/iPadOS 14 v1r3MDM

ACCESS CONTROL

AIOS-14-010200 - Apple iOS/iPadOS must implement the management setting: force Apple Watch wrist detection.MobileIron - DISA Apple iOS/iPadOS 14 v1r3MDM

CONFIGURATION MANAGEMENT

AIOS-14-011800 - Apple iOS must be configured to disable automatic transfer of diagnostic data to an external device other than an MDM service with which the device has enrolled.MobileIron - DISA Apple iOS/iPadOS 14 v1r3MDM

SYSTEM AND COMMUNICATIONS PROTECTION

AIOS-15-010600 - Apple iOS/iPadOS 15 must implement the management setting: not allow automatic completion of Safari browser passcodes.AirWatch - DISA Apple iOS/iPadOS 15 STIG v1r4MDM

CONFIGURATION MANAGEMENT

AIOS-15-010900 - Apple iOS/iPadOS 15 must implement the management setting: require the user to enter a password when connecting to an AirPlay-enabled device for the first time.MobileIron - DISA Apple iOS/iPadOS 15 STIG v1r4MDM

CONFIGURATION MANAGEMENT

AIOS-15-012500 - Apple iOS/iPadOS 15 must implement the management setting: disable AirDrop.MobileIron - DISA Apple iOS/iPadOS 15 STIG v1r4MDM

CONFIGURATION MANAGEMENT

AIOS-15-013100 - Apple iOS/iPadOS 15 must disable Find My Friends in the Find My app.AirWatch - DISA Apple iOS/iPadOS 15 STIG v1r4MDM

CONFIGURATION MANAGEMENT

AIOS-15-013100 - Apple iOS/iPadOS 15 must disable Find My Friends in the Find My app.MobileIron - DISA Apple iOS/iPadOS 15 STIG v1r4MDM

CONFIGURATION MANAGEMENT

AIOS-16-708400 - The Apple iOS/iPadOS 16 device User Agreement must include the DOD advisory warning message.AirWatch - DISA Apple iOS/iPadOS 16 BYOAD v1r2MDM

ACCESS CONTROL

AIOS-16-708400 - The Apple iOS/iPadOS 16 device User Agreement must include the DOD advisory warning message.MobileIron - DISA Apple iOS/iPadOS BYOAD 16 v1r2MDM

ACCESS CONTROL

AIOS-16-713400 - The Apple iOS must be configured to disable automatic transfer of diagnostic data to an external device other than an MDM service with which the device has enrolled.AirWatch - DISA Apple iOS/iPadOS 16 BYOAD v1r2MDM

SYSTEM AND COMMUNICATIONS PROTECTION

AIOS-16-713400 - The Apple iOS must be configured to disable automatic transfer of diagnostic data to an external device other than an MDM service with which the device has enrolled.MobileIron - DISA Apple iOS/iPadOS BYOAD 16 v1r2MDM

SYSTEM AND COMMUNICATIONS PROTECTION

AIOS-17-001000 - Apple iOS/iPadOS 17 must allow the Administrator (MDM) to perform the following management function: enable/disable VPN protection across the device and [selection: other methods] - MDM to perform the following management function: enable/disable VPN protection across the device and [selection: other methods].MobileIron - DISA Apple iOS/iPadOS 17 v2r2MDM

CONFIGURATION MANAGEMENT

AIOS-17-008400 - Apple iOS/iPadOS 17 must be configured to display the DOD advisory warning message at startup or each time the user unlocks the device.AirWatch - DISA Apple iOS/iPadOS 17 v2r2MDM

ACCESS CONTROL

AIOS-17-011800 - Apple iOS/iPadOS 17 must implement the management setting: force Apple Watch wrist detection.AirWatch - DISA Apple iOS/iPadOS 17 v2r2MDM

CONFIGURATION MANAGEMENT

AIOS-17-701000 - Apple iOS/iPadOS 17 must allow the administrator (MDM) to perform the following management function: enable/disable VPN protection across the device - MDM to perform the following management function: enable/disable VPN protection across the device and [selection: other methods].AirWatch - DISA Apple iOS/iPadOS 17 BYOAD v1r2MDM

CONFIGURATION MANAGEMENT

AIOS-17-713400 - The Apple iOS must be configured to disable automatic transfer of diagnostic data to an external device other than an MDM service with which the device has enrolled.MobileIron - DISA Apple iOS/iPadOS BYOAD 17 v1r2MDM

SYSTEM AND COMMUNICATIONS PROTECTION

AOSX-14-002054 - The macOS system must be configured with Bluetooth turned off unless approved by the organization - DisabledPreferencePanesDISA STIG Apple Mac OSX 10.14 v2r6Unix

SYSTEM AND COMMUNICATIONS PROTECTION

APPL-11-002062 - The macOS system must be configured with Bluetooth turned off unless approved by the organization - DisabledPreferencesPanesDISA STIG Apple macOS 11 v1r8Unix

SYSTEM AND COMMUNICATIONS PROTECTION

APPL-11-002062 - The macOS system must be configured with Bluetooth turned off unless approved by the organization - HiddenPreferencePanesDISA STIG Apple macOS 11 v1r5Unix

SYSTEM AND COMMUNICATIONS PROTECTION

APPL-12-002009 - The macOS system must be configured to disable AirDrop.DISA STIG Apple macOS 12 v1r9Unix

CONFIGURATION MANAGEMENT

APPL-13-005053 - The macOS system must restrict the ability of individuals to write to external optical media.DISA STIG Apple macOS 13 v1r5Unix

CONFIGURATION MANAGEMENT

ARST-L2-000230 - The Arista MLS layer 2 switch must not have any switch ports assigned to the native VLAN.DISA STIG Arista MLS EOS 4.2x L2S v2r1Arista

SYSTEM AND COMMUNICATIONS PROTECTION

ARST-RT-000150 - The Arista router must be configured to have all inactive interfaces disabled.DISA Arista MLS EOS 4.X Router STIG v2r2Arista

ACCESS CONTROL

ARST-RT-000710 - The MPLS router must be configured to synchronize IGP and LDP to minimize packet loss when an IGP adjacency is established prior to LDP peers completing label exchange.DISA Arista MLS EOS 4.X Router STIG v2r2Arista

CONFIGURATION MANAGEMENT

FFOX-00-000015 - Firefox development tools must be disabled.DISA Mozilla Firefox STIG v6r8 WindowsWindows

SYSTEM AND INFORMATION INTEGRITY

GEN001460 - All interactive user home directories defined in the /etc/passwd file must exist.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN001560 - All files and directories contained in user's home directories must have mode 0750 or less permissive.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN002715 - System audit tool executables must be owned by root - '/usr/sbin/auditbin'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN002715 - System audit tool executables must be owned by root - '/usr/sbin/auditcat'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN002715 - System audit tool executables must be owned by root - '/usr/sbin/auditmerge'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN002716 - System audit tool executables must be group-owned by bin, sys, or system - '/usr/sbin/auditmerge'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN002716 - System audit tool executables must be group-owned by bin, sys, or system - '/usr/sbin/auditselect'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN002717 - System audit tool executables must have mode 0750 or less permissive - '/usr/sbin/auditpr'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN002717 - System audit tool executables must have mode 0750 or less permissive - '/usr/sbin/auditpr' - suidDISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN002717 - System audit tool executables must have mode 0750 or less permissive - '/usr/sbin/auditselect' - suidDISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN002717 - System audit tool executables must have mode 0750 or less permissive - '/usr/sbin/auditstream' - suidDISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN004660 - The SMTP service must not have the EXPN feature active.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

JUEX-L2-000080 - The Juniper EX switch must be configured to enable Root Protection on STP switch ports connecting to access layer switches.DISA Juniper EX Series Switches Layer 2 Switch STIG v2r5Juniper

SYSTEM AND COMMUNICATIONS PROTECTION

JUEX-L2-000150 - The Juniper EX switch must be configured to enable Storm Control on all host-facing access interfaces.DISA Juniper EX Series Switches Layer 2 Switch STIG v2r5Juniper

CONFIGURATION MANAGEMENT

JUEX-RT-000660 - The Juniper BGP router must be configured to limit the prefix size on any inbound route advertisement to /24 or the least significant prefixes issued to the customer.DISA Juniper EX Series Switches Router STIG v2r1Juniper

SYSTEM AND COMMUNICATIONS PROTECTION

JUEX-RT-000670 - The Juniper PE router must be configured to implement Internet Group Management Protocol (IGMP) or Multicast Listener Discovery (MLD) snooping for each Virtual Private LAN Services (VPLS) bridge domain.DISA Juniper EX Series Switches Router STIG v2r1Juniper

SYSTEM AND COMMUNICATIONS PROTECTION

JUEX-RT-000880 - The Juniper BGP router must be configured to use its loopback address as the source address for iBGP peering sessions.DISA Juniper EX Series Switches Router STIG v2r1Juniper

CONFIGURATION MANAGEMENT

JUEX-RT-000970 - The Juniper PE router must be configured to enforce the split-horizon rule for all pseudowires within a Virtual Private LAN Services (VPLS) bridge domain.DISA Juniper EX Series Switches Router STIG v2r1Juniper

CONFIGURATION MANAGEMENT

WN25-SO-000370 - Windows Server 2025 default permissions of global system objects must be strengthened.DISA Microsoft Windows Server 2025 STIG v1r3Windows

CONFIGURATION MANAGEMENT