Item Search

NameAudit NamePluginCategory
1.4.1 Ensure permissions on bootloader config are not overridden - if lineCIS Ubuntu Linux 16.04 LTS Server L1 v2.0.0Unix

ACCESS CONTROL

1.4.1 Ensure permissions on bootloader config are not overridden - if lineCIS Ubuntu Linux 16.04 LTS Workstation L1 v2.0.0Unix

ACCESS CONTROL

1.4.5 Ensure version 7.2 or newer booted with a BIOS have a unique name for the grub superusers accountCIS Amazon Linux 2 STIG v2.0.1 STIGUnix

ACCESS CONTROL

2.3.10.10 (L1) Ensure 'Network access: Restrict clients allowed to make remote calls to SAM' is set to 'Administrators: Remote Access: Allow'CIS Microsoft Windows 10 Stand-alone v4.0.0 L1Windows

ACCESS CONTROL

2.3.10.10 (L1) Ensure 'Network access: Restrict clients allowed to make remote calls to SAM' is set to 'Administrators: Remote Access: Allow'CIS Microsoft Windows 10 Stand-alone v4.0.0 L1 BL NGWindows

ACCESS CONTROL

2.3.10.10 Ensure 'Network access: Restrict clients allowed to make remote calls to SAM' is set to 'Administrators: Remote Access: Allow'CIS Microsoft Windows 10 Enterprise v5.0.0 L1 BLWindows

ACCESS CONTROL

8.2.1 Set 'Java permissions' to 'Enabled:High safety'CIS IE 11 v1.0.0Windows

CONFIGURATION MANAGEMENT

107.4 Ensure 'Password Length' is set to 'Configured: 15 or more'CIS Microsoft Intune for Windows 11 v5.0.0 L1Windows

IDENTIFICATION AND AUTHENTICATION

107.4 Ensure 'Password Length' is set to 'Configured: 15 or more'CIS Microsoft Intune for Windows 10 v5.0.0 L1Windows

IDENTIFICATION AND AUTHENTICATION

DISA_IIS_6.0_Web_Site_v6r16.audit from DISA Microsoft IIS 6.0 Site v6r16 STIGDISA STIG IIS 6.0 Site Checklist v6r16Windows
DISA_STIG_Apache_Server-2.2_Unix_v1r11.audit from DISA Apache 2.2 Unix STIG v1r11DISA STIG Apache Server 2.2 Unix v1r11Unix
DISA_STIG_Apple_macOS_12_v1r9.audit from DISA Apple macOS 12 (Monterey) v1r9 STIGDISA STIG Apple macOS 12 v1r9Unix
DISA_STIG_Apple_macOS_14_Sonoma_v2r4.audit from DISA Apple macOS 14 Sonoma STIG v2r4DISA Apple macOS 14 Sonoma STIG v2r4Unix
DISA_STIG_Apple_OS_X_10.13_v2r5.audit from DISA Apple OS X 10.13 v2r5 STIGDISA STIG Apple Mac OSX 10.13 v2r5Unix
DISA_STIG_BIND_9.x_v3r3.audit from DISA BIND 9.x STIG v3r3DISA BIND 9.x STIG v3r3Unix
DISA_STIG_Canonical_Ubuntu_24.04_LTS_v1r6.audit from DISA Canonical Ubuntu 24.04 LTS STIG v1r6DISA Canonical Ubuntu 24.04 LTS STIG v1r6Unix
DISA_STIG_EnterpriseDB_Postgres_Advanced_Server_v2r1_OS_Linux.audit from DISA EnterpriseDB Postgres Advanced Server (EPAS) v2r1 STIGEnterpriseDB PostgreSQL Advanced Server OS Linux v2r1Unix
DISA_STIG_IBM_WebSphere_Liberty_Server_v2r4.audit from DISA IBM WebSphere Liberty Server STIG v2r4DISA IBM WebSphere Liberty Server STIG v2r4Unix
DISA_STIG_IBM_WebSphere_Traditional_9_v2r1_Middleware.audit from DISA IBM WebSphere Traditional V9.x v2r1 STIGDISA IBM WebSphere Traditional 9 STIG v2r1 MiddlewareUnix
DISA_STIG_IIS_10.0_Web_Server_v2r10.audit from DISA Microsoft IIS 10.0 Server v2r10 STIGDISA IIS 10.0 Server v2r10Windows
DISA_STIG_Microsoft_DotNet_Framework_4.0_v2r9.audit from DISA Microsoft DotNet Framework 4.0 STIG v2r9DISA Microsoft DotNet Framework 4.0 STIG v2r9Windows
DISA_STIG_Microsoft_IIS_10.0_Server_v3r7.audit from DISA Microsoft IIS 10.0 Server STIG v3r7DISA Microsoft IIS 10.0 Server STIG v3r7Windows
DISA_STIG_Microsoft_IIS_10.0_Site_v2r16.audit from DISA Microsoft IIS 10.0 Site STIG v2r16DISA Microsoft IIS 10.0 Site STIG v2r16Windows
DISA_STIG_Microsoft_Internet_Explorer_9_v1r15.audit from DISA Microsoft Internet Explorer 9 v1r15 STIGDISA STIG Microsoft Internet Explorer 9 v1r15Windows
DISA_STIG_Microsoft_Office_System_2013_v2r2.audit from DISA Microsoft Office System 2013 v2r2 STIGDISA STIG Microsoft Office System 2013 v2r2Windows
DISA_STIG_Microsoft_Sharepoint_Designer_2013_v1r3.audit from DISA STIG Microsoft Sharepoint Designer 2013 v1r3DISA STIG Microsoft Sharepoint Designer 2013 v1r3Windows
DISA_STIG_Oracle_HTTP_Server_12.1.3_v2r3.audit from DISA Oracle HTTP Server 12.1.3 v2r3 STIGDISA STIG Oracle HTTP Server 12.1.3 v2r3Unix
DISA_STIG_Oracle_WebLogic_Server_12c_Linux_v2r2.audit from DISA Oracle WebLogic Server 12c v2r2 STIGOracle WebLogic Server 12c Linux v2r2Unix
DISA_STIG_Rancher_Government_Solutions_RKE2_v2r7.audit from DISA Rancher Government Solutions RKE2 STIG v2r7DISA Rancher Government Solutions RKE2 STIG v2r7Unix
DISA_STIG_Ubuntu_16.04_LTS_v2r3.audit from DISA Canonical Ubuntu 16.04 LTS v2r3 STIGDISA STIG Ubuntu 16.04 LTS v2r3Unix
DISA_STIG_Ubuntu_18.04_LTS_v2r15.audit from DISA Canonical Ubuntu 18.04 LTS v2r15 STIGDISA STIG Ubuntu 18.04 LTS v2r15Unix
DISA_STIG_VMware_vSphere_6.7_ESXi_Bare_Metal_Host_v1r3.audit from DISA VMware vSphere 6.7 ESXi v1r3 STIGDISA STIG VMware vSphere 6.7 ESXi OS v1r3Unix
DISA_STIG_VMware_vSphere_6.7_PostgreSQL_v1r2.audit from DISA VMware vSphere 6.7 PostgreSQL v1r2 STIGDISA STIG VMware vSphere 6.7 PostgreSQL v1r2Unix
DISA_STIG_VMware_vSphere_6.7_RhttpProxy_v1r3.audit from DISA VMware vSphere 6.7 RhttpProxy v1r3 STIGDISA STIG VMware vSphere 6.7 RhttpProxy v1r3Unix
DISA_STIG_VMware_vSphere_ESXi_6.5_Bare_Metal_Host_v2r4.audit from DISA VMware vSphere 6.5 ESXi v2r4 STIGDISA STIG VMware vSphere ESXi OS 6.5 v2r4Unix
EX19-ED-000238 - Exchange must render hyperlinks from email sources from non-.mil domains as unclickable.DISA Microsoft Exchange 2019 Edge Server STIG v2r2Windows

SYSTEM AND COMMUNICATIONS PROTECTION

GEN002760-7 - The audit system must be configured to audit all administrative, privileged, and security actions - 'sethostname'DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

CONFIGURATION MANAGEMENT

GEN002820-7 - The audit system must be configured to audit all discretionary access control permission modifications - 'lchown32'DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

AUDIT AND ACCOUNTABILITY

KNOX-07-012900 - The Samsung Android 7 with Knox must implement the management setting: Disable Admin Remove.MobileIron - DISA Samsung Android 7 with Knox 2.x v1r1MDM

CONFIGURATION MANAGEMENT

KNOX-07-017600 - The Samsung must be configured to disable authentication mechanisms providing user access. Disable Iris Scanner.AirWatch - DISA Samsung Android 7 with Knox 2.x v1r1MDM

CONFIGURATION MANAGEMENT

KNOX-07-017600 - The Samsung must be configured to disable authentication mechanisms providing user access. Disable Iris Scanner.MobileIron - DISA Samsung Android 7 with Knox 2.x v1r1MDM

CONFIGURATION MANAGEMENT

SPLK-CL-000020 - Splunk Enterprise must use organization level authentication to uniquely identify and authenticate users.DISA STIG Splunk Enterprise 7.x for Windows v3r2 REST APISplunk

IDENTIFICATION AND AUTHENTICATION

SPLK-CL-000035 - Splunk Enterprise must display the Standard Mandatory DOD Notice and Consent Banner and accept user acknowledgement before granting access to the application.DISA STIG Splunk Enterprise 7.x for Windows v3r2 REST APISplunk

ACCESS CONTROL

SPLK-CL-000045 - Splunk Enterprise must use an SSO proxy service, F5 device, or SAML implementation to accept the DOD common access card (CAC) or other smart card credential for identity management, personal authentication, and multifactor authentication.DISA STIG Splunk Enterprise 7.x for Windows v3r2 REST APISplunk

IDENTIFICATION AND AUTHENTICATION

SPLK-CL-000190 - Splunk Enterprise idle session timeout must be set to not exceed 15 minutes.DISA STIG Splunk Enterprise 7.x for Windows v3r2 REST APISplunk

ACCESS CONTROL

SPLK-CL-000200 - Splunk Enterprise must notify the system administrator (SA) and information system security officer (ISSO) when account events are received (creation, deletion, modification, disabling) - creation, deletion, modification, disabling.DISA STIG Splunk Enterprise 7.x for Windows v3r2 REST APISplunk

ACCESS CONTROL

SPLK-CL-000260 - The System Administrator (SA) and Information System Security Officer (ISSO) must configure the retention of the log records based on the defined security plan.DISA STIG Splunk Enterprise 7.x for Windows v3r2 REST APISplunk

AUDIT AND ACCOUNTABILITY

SPLK-CL-000270 - Splunk Enterprise must allow only the information system security manager (ISSM) (or individuals or roles appointed by the ISSM) to be assigned to the Power User role - or individuals or roles appointed by the ISSM to be assigned to the Power User role.DISA STIG Splunk Enterprise 7.x for Windows v3r2 REST APISplunk

AUDIT AND ACCOUNTABILITY

SPLK-CL-000380 - Splunk Enterprise must enforce a 60-day maximum password lifetime restriction for the account of last resort.DISA STIG Splunk Enterprise 7.x for Windows v3r2 REST APISplunk

IDENTIFICATION AND AUTHENTICATION

Turn on SmartScreen Filter scan - Restricted Sites ZoneMSCT Windows Server 2019 MS v1.0.0Windows

SYSTEM AND INFORMATION INTEGRITY