Item Search

NameAudit NamePluginCategory
1.1 CISC-L2-000020CIS Cisco IOS XE Switch L2S STIG v1.0.0 CAT ICisco

IDENTIFICATION AND AUTHENTICATION

1.2.3 Ensure gpgcheck is globally activatedCIS Amazon Linux 2 STIG v2.0.1 STIGUnix

CONFIGURATION MANAGEMENT

1.2.3 Ensure gpgcheck is globally activatedCIS Amazon Linux 2 STIG v2.0.1 L1 ServerUnix

CONFIGURATION MANAGEMENT

1.4 UBTU-24-100030CIS Ubuntu Linux 24.04 LTS STIG v1.0.0 CAT IUnix

IDENTIFICATION AND AUTHENTICATION

1.15 UBTU-22-215035CIS Ubuntu Linux 22.04 LTS STIG v1.0.0 CAT IUnix

IDENTIFICATION AND AUTHENTICATION

1.16 RHEL-10-200020CIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT IUnix

CONFIGURATION MANAGEMENT

1.55 SLES-15-010450CIS SUSE Linux Enterprise Server 15 STIG v1.0.0 CAT IUnix

IDENTIFICATION AND AUTHENTICATION

1.58 OL08-00-010370CIS Oracle Linux 8 STIG v1.0.0 CAT IUnix

CONFIGURATION MANAGEMENT

1.93 UBTU-24-400370CIS Ubuntu Linux 24.04 LTS STIG v1.0.0 CAT IUnix

IDENTIFICATION AND AUTHENTICATION

1.108 UBTU-22-612040CIS Ubuntu Linux 22.04 LTS STIG v1.0.0 CAT IUnix

IDENTIFICATION AND AUTHENTICATION

1.136 WN22-CC-000430CIS Microsoft Windows Server 2022 STIG v3.0.0 MS CAT IWindows

CONFIGURATION MANAGEMENT

1.136 WN22-CC-000430CIS Microsoft Windows Server 2022 STIG v3.0.0 DC CAT IWindows

CONFIGURATION MANAGEMENT

1.160 WN16-DC-000150CIS Microsoft Windows Server 2016 STIG v4.0.0 DC CAT IWindows

CONFIGURATION MANAGEMENT

1.287 OL08-00-040000CIS Oracle Linux 8 STIG v1.0.0 CAT IUnix

CONFIGURATION MANAGEMENT

1.290 RHEL-10-600730CIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT IUnix

IDENTIFICATION AND AUTHENTICATION

1.291 OL08-00-040010CIS Oracle Linux 8 STIG v1.0.0 CAT IUnix

CONFIGURATION MANAGEMENT

2.2.14 Ensure NIS server is not installedCIS Amazon Linux 2 STIG v2.0.1 L1 ServerUnix

CONFIGURATION MANAGEMENT

6.1.1 Audit system file permissionsCIS Amazon Linux 2 STIG v2.0.1 L2 ServerUnix

CONFIGURATION MANAGEMENT

6.1.1 Audit system file permissionsCIS Amazon Linux 2 STIG v2.0.1 STIGUnix

CONFIGURATION MANAGEMENT

ARST-L2-000020 - The Arista MLS layer 2 switch must uniquely identify all network-connected endpoint devices before establishing any connection.DISA Arista MLS EOS 4.X L2S STIG v2r3Arista

IDENTIFICATION AND AUTHENTICATION

ARST-L2-000020 - The Arista MLS layer 2 switch must uniquely identify all network-connected endpoint devices before establishing any connection.DISA STIG Arista MLS EOS 4.2x L2S v2r1Arista

IDENTIFICATION AND AUTHENTICATION

CD16-00-003900 - If passwords are used for authentication, PostgreSQL must transmit only encrypted representations of passwords.DISA Crunchy Data Postgres 16 STIG v1r3 UnixUnix

IDENTIFICATION AND AUTHENTICATION

F5BI-AP-300013 - The F5 BIG-IP appliance providing user access control intermediary services must implement attribute- and content-based inspection of the source, destination, headers, and/or content of the communications traffic.DISA F5 BIG-IP TMOS ALG STIG v1r2F5

ACCESS CONTROL

GEN000000-LNX00580 - The x86 CTRL-ALT-DELETE key sequence must be disabled.DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

CONFIGURATION MANAGEMENT

GEN001100 - Root passwords must never be passed over a network in clear text form - 'root has logged in over a network'DISA AIX 5.3 STIG v1r2Unix

IDENTIFICATION AND AUTHENTICATION

GEN001100 - Root passwords must never be passed over a network in clear text form.DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

IDENTIFICATION AND AUTHENTICATION

GEN003820 - The rsh daemon must not be running.DISA STIG AIX 6.1 v1r14Unix

ACCESS CONTROL

GEN003840 - The rexec daemon must not be running.DISA STIG AIX 6.1 v1r14Unix

ACCESS CONTROL

GEN003840 - The rexec daemon must not be running.DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL

GEN005500 - The SSH daemon must be configured to only use the SSHv2 protocol.DISA STIG AIX 6.1 v1r14Unix

ACCESS CONTROL

GEN006380 - The system must not use UDP for NIS/NIS+.DISA STIG AIX 6.1 v1r14Unix

ACCESS CONTROL

GEN006380 - The system must not use UDP for NIS/NIS+.DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL

JUEX-RT-000170 - The Juniper perimeter router must be configured to protect an enclave connected to an alternate gateway by using an inbound filter that only permits packets with destination addresses within the site's address space.DISA Juniper EX Series Router v2r1Juniper

ACCESS CONTROL

JUEX-RT-000380 - The Juniper router must be configured to restrict traffic destined to itself.DISA Juniper EX Series Router v2r1Juniper

SYSTEM AND COMMUNICATIONS PROTECTION

JUEX-RT-000440 - The Juniper PE router must be configured to block any traffic that is destined to IP core infrastructure.DISA Juniper EX Series Router v2r1Juniper

SYSTEM AND COMMUNICATIONS PROTECTION

JUEX-RT-000500 - The Juniper perimeter router must be configured to restrict it from accepting outbound IP packets that contain an illegitimate address in the source address field via egress filter or by enabling Unicast Reverse Path Forwarding (uRPF).DISA Juniper EX Series Router v2r1Juniper

SYSTEM AND COMMUNICATIONS PROTECTION

JUEX-RT-000920 - The Juniper PE router must be configured to have each Virtual Routing and Forwarding (VRF) instance bound to the appropriate physical or logical interfaces to maintain traffic separation between all MPLS L3VPNs.DISA Juniper EX Series Router v2r1Juniper

CONFIGURATION MANAGEMENT

JUEX-RT-000930 - The Juniper PE router must be configured to have each Virtual Routing and Forwarding (VRF) instance with the appropriate Route Target (RT).DISA Juniper EX Series Router v2r1Juniper

CONFIGURATION MANAGEMENT

JUEX-RT-000960 - The Juniper PE router providing Virtual Private LAN Services (VPLS) must be configured to have all attachment circuits defined to the virtual forwarding instance (VFI) with the globally unique VPN ID assigned for each customer VLAN.DISA Juniper EX Series Router v2r1Juniper

CONFIGURATION MANAGEMENT

OS10-L2S-000020 - The Dell OS10 Switch must uniquely identify all network-connected endpoint devices before establishing any connection.DISA Dell OS10 Switch Layer 2 Switch STIG v1r1Dell_OS10

IDENTIFICATION AND AUTHENTICATION

PHTN-40-000040 - The Photon operating system must not have the telnet package installed.DISA VMware vSphere 8.0 vCenter Appliance Photon OS 4.0 STIG v2r2Unix

IDENTIFICATION AND AUTHENTICATION

RHEL-09-214025 - RHEL 9 must have GPG signature verification enabled for all software repositories.DISA Red Hat Enterprise Linux 9 STIG v2r9Unix

CONFIGURATION MANAGEMENT

RHEL-10-600730 - RHEL 10 must employ FIPS 140-3-approved cryptographic hashing algorithms for all stored passwords.DISA Red Hat Enterprise Linux 10 STIG v1r2Unix

IDENTIFICATION AND AUTHENTICATION

SLES-15-010430 - The SUSE operating system tool zypper must have gpgcheck enabled.DISA SUSE Linux Enterprise Server 15 STIG v2r6Unix

CONFIGURATION MANAGEMENT

SLES-15-010450 - The SUSE operating system must reauthenticate users when changing authenticators, roles, or escalating privileges.DISA SUSE Linux Enterprise Server 15 STIG v2r6Unix

IDENTIFICATION AND AUTHENTICATION

SLES-15-010450 - The SUSE operating system must reauthenticate users when changing authenticators, roles, or escalating privileges.DISA SUSE Linux Enterprise Server 15 STIG v2r8Unix

IDENTIFICATION AND AUTHENTICATION

SQLD-22-003300 - SQL Server must implement cryptographic mechanisms to prevent unauthorized modification or disclosure of organization-defined information at rest (to include, at a minimum, PII and classified information) on organization-defined information system components.DISA Microsoft SQL Server 2022 Database STIG v1r3MS_SQLDB

SYSTEM AND COMMUNICATIONS PROTECTION

VCWN-06-000014 - The system must ensure the distributed port group MAC Address Change policy is set to reject.DISA VMware vSphere vCenter Server Version 6 STIG v1r4VMware

CONFIGURATION MANAGEMENT

VCWN-06-000027 - The system must minimize access to the vCenter server.DISA VMware vSphere vCenter Server Version 6 STIG v1r4VMware

CONFIGURATION MANAGEMENT

VMCH-06-000006 - The system must disable virtual disk erasure.DISA VMware vSphere Virtual Machine Version 6 STIG v1r1VMware

CONFIGURATION MANAGEMENT