Item Search

NameAudit NamePluginCategory
3.070 - The system is configured to permit storage of credentials or .NET Passports.DISA Windows Vista STIG v6r41Windows

IDENTIFICATION AND AUTHENTICATION

3.072 - The system is not configured to use the Classic security model.DISA Windows Vista STIG v6r41Windows

SYSTEM AND COMMUNICATIONS PROTECTION

3.077 - The system is not configured to use FIPS compliant Algorithms for Encryption, Hashing, and Signing.DISA Windows Vista STIG v6r41Windows

SYSTEM AND COMMUNICATIONS PROTECTION

3.078 - The system must be configured to require case insensitivity for non-Windows subsystems.DISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

3.129 - User Account Control - Built In Admin Approval ModeDISA Windows Vista STIG v6r41Windows

IDENTIFICATION AND AUTHENTICATION

3.130 - User Account Control - Behavior of elevation prompt for administratorsDISA Windows Vista STIG v6r41Windows

SYSTEM AND COMMUNICATIONS PROTECTION

3.137 - User Account Control - Run all admins in Admin Approval ModeDISA Windows Vista STIG v6r41Windows

IDENTIFICATION AND AUTHENTICATION

4.008 - Auditing must be configured as required. - 'Account Management -> Security Group Management'DISA Windows Vista STIG v6r41Windows

AUDIT AND ACCOUNTABILITY

4.008 - Auditing must be configured as required. - 'Logon/Logoff -> Logoff' successes.DISA Windows Vista STIG v6r41Windows

AUDIT AND ACCOUNTABILITY

4.008 - Auditing must be configured as required. - 'Policy Change -> Audit Policy Change'DISA Windows Vista STIG v6r41Windows

AUDIT AND ACCOUNTABILITY

4.008 - Auditing must be configured as required. - 'Policy Change -> Authentication Policy Change' successes.DISA Windows Vista STIG v6r41Windows

AUDIT AND ACCOUNTABILITY

4.008 - Auditing must be configured as required. - 'Privilege Use -> Sensitive Privilege Use'DISA Windows Vista STIG v6r41Windows

AUDIT AND ACCOUNTABILITY

4.010 - User rights assignments must meet minimum requirements. - Allow log on through Terminal ServicesDISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

GEN001940 - User start-up files must not execute world-writable programs.DISA AIX 5.3 STIG v1r2Unix

ACCESS CONTROL

GEN002100 - The .rhosts file must not be supported in PAM.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN002210 - All shell files must be group-owned by root, bin, sys, or system.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN002720 - System must be configured to audit failed attempts to access files/programs - '/etc/security/audit/config FILE_Open exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/config ACCT_Enable exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/config BACKUP_Export exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/config DEV_Create exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/config FS_Umount exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/config PROC_Kill exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/config USER_Create exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/config USER_Reboot exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/events FILE_Chpriv exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/events FILE_Fchpriv exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/events FS_Chroot exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/events FS_Umount exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002800 - System must be configured to audit login, logout, and session initiation - '/etc/security/audit/config INIT_End exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002800 - System must be configured to audit login, logout, and session initiation - '/etc/security/audit/config INIT_Start exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002800 - System must be configured to audit login, logout, and session initiation - '/etc/security/audit/events USER_SU exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002825 - System must be configured to audit load/unload dynamic kernel modules - '/etc/security/audit/config DEV_Configure exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002825 - System must be configured to audit load/unload dynamic kernel modules - '/etc/security/audit/events DEV_Configure exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN003660 - The system must log authentication informational data - 'auth.info'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN004420 - Files executed through a mail aliases file must have mode 0755 or less permissive.DISA AIX 5.3 STIG v1r2Unix

ACCESS CONTROL

GEN004900 - The ftpusers file must contain account names not allowed to use FTP.DISA AIX 5.3 STIG v1r2Unix

ACCESS CONTROL

GEN005306 - SNMP service must require a FIPS 140-2 approved hash algorithm as part of its authentication and integrity methodsDISA AIX 5.3 STIG v1r2Unix

SYSTEM AND COMMUNICATIONS PROTECTION

GEN005380 - If the system is a Network Management System (NMS) server, it must only run the NMS and any software required by the NMS.DISA AIX 5.3 STIG v1r2Unix

SYSTEM AND COMMUNICATIONS PROTECTION

GEN005512 - The SSH client must only use MACs employing FIPS 140-2 approved cryptographic hash algorithmsDISA AIX 5.3 STIG v1r2Unix

SYSTEM AND COMMUNICATIONS PROTECTION

GEN005800 - All NFS-exported system files and system directories must be owned by root.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN005810 - All NFS-exported system files and system directories must be group-owned by root, bin, sys, or system.DISA AIX 5.3 STIG v1r2Unix

ACCESS CONTROL

GEN005840 - The NFS server must be configured to restrict file system access to local hosts - 'Exports containing rw should be reviewed'DISA AIX 5.3 STIG v1r2Unix

ACCESS CONTROL

GEN006235 - Samba must be configured to not allow guest access to shares.DISA AIX 5.3 STIG v1r2Unix

ACCESS CONTROL

GEN006400 - The Network Information System (NIS) protocol must not be used.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN006640 - The system must use and update a DoD-approved virus scan program - 'uvscan exists in crontabs'DISA AIX 5.3 STIG v1r2Unix

SYSTEM AND INFORMATION INTEGRITY

GEN007780 - The system must not have 6to4 enabled.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN007850 - The DHCP client must not send dynamic DNS updates - 'updateDNS exists in /etc/dhcpcd.ini'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN008380 - A root kit check tool must be run on the system at least weekly.DISA AIX 5.3 STIG v1r2Unix

SYSTEM AND COMMUNICATIONS PROTECTION

GEN009160 - The system must not have the Calendar Manager Service Daemon (CMSD) service active.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN009240 - The system must not have Internet Message Access Protocol (IMAP) service active.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT