Item Search

NameAudit NamePluginCategory
1.2 DTOO186CIS Microsoft Office System 2016 STIG v1.0.0 CAT IIWindows

SYSTEM AND COMMUNICATIONS PROTECTION

1.3 DTOO187CIS Microsoft Office System 2016 STIG v1.0.0 CAT IIWindows

SYSTEM AND COMMUNICATIONS PROTECTION

1.6.10 Ensure system-wide crypto policies are in effectCIS Red Hat Enterprise Linux 8 STIG v2.0.0 STIGUnix

ACCESS CONTROL

1.6.14 Ensure the GnuTLS library is configured to only allow DoD-approved SSL/TLS VersionsCIS Red Hat Enterprise Linux 8 STIG v2.0.0 STIGUnix

ACCESS CONTROL

1.7 DTOO191CIS Microsoft Office System 2016 STIG v1.0.0 CAT IIWindows

SYSTEM AND COMMUNICATIONS PROTECTION

1.16 DTOO409CIS Microsoft Office System 2016 STIG v1.0.0 CAT IIWindows

SYSTEM AND COMMUNICATIONS PROTECTION

5.2.5 Ensure users must re-authenticate for privilege escalationCIS Amazon Linux 2 STIG v2.0.1 STIGUnix

IDENTIFICATION AND AUTHENTICATION

5.2.9 Ensure sudo timestamp_timeout is configuredCIS Red Hat Enterprise Linux 8 STIG v2.0.0 STIGUnix

IDENTIFICATION AND AUTHENTICATION

5.3.3.2.4 Ensure password same consecutive characters is configuredCIS Red Hat Enterprise Linux 8 STIG v2.0.0 STIGUnix

IDENTIFICATION AND AUTHENTICATION

5.3.3.2.9 Ensure ucredit is configured in /etc/security/pwquality.confCIS Red Hat Enterprise Linux 8 STIG v2.0.0 STIGUnix

IDENTIFICATION AND AUTHENTICATION

5.3.3.2.12 Ensure ocredit is configured in /etc/security/pwquality.confCIS Red Hat Enterprise Linux 8 STIG v2.0.0 STIGUnix

IDENTIFICATION AND AUTHENTICATION

5.3.3.2.14 Ensure minclass is configured in /etc/security/pwquality.confCIS Red Hat Enterprise Linux 8 STIG v2.0.0 STIGUnix

IDENTIFICATION AND AUTHENTICATION

5.3.3.2.15 Ensure difok is configured in /etc/security/pwquality.confCIS Red Hat Enterprise Linux 8 STIG v2.0.0 STIGUnix

IDENTIFICATION AND AUTHENTICATION

5.3.3.6.3 Ensure the certificate of the user or group is mapped to the corresponding user or group in the "sssd.conf" fileCIS Red Hat Enterprise Linux 8 STIG v2.0.0 STIGUnix

IDENTIFICATION AND AUTHENTICATION

5.200 - Disable the Mapper I/O Driver.DISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

5.200 - Network - Mapper I/O Driver - AllowLLTDIOOnPublicNetDISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

5.202 - Windows Peer to Peer NetworkingDISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

5.224 - Power Mgmt - Password Wake on BatteryDISA Windows Vista STIG v6r41Windows

IDENTIFICATION AND AUTHENTICATION

5.230 - Online Assistance - Untrusted ContentDISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

5.240 - Windows Explorer - Shell Protocol Protected ModeDISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

5.253 - User Network SharingDISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

6.1.4 Ensure AIDE is configured to use cryptographic mechanisms to protect the integrity of audit toolsCIS Red Hat Enterprise Linux 8 STIG v2.0.0 STIGUnix

AUDIT AND ACCOUNTABILITY

7.1.16 Ensure system-wide shared library directories have mode 755 or less permissiveCIS Red Hat Enterprise Linux 8 STIG v2.0.0 STIGUnix

CONFIGURATION MANAGEMENT

7.1.27 Ensure the system-wide shared library files are group-owned by rootCIS Red Hat Enterprise Linux 8 STIG v2.0.0 STIGUnix

CONFIGURATION MANAGEMENT

DTBI325 - Security checking features must be enforced.DISA STIG Microsoft Internet Explorer 9 v1r15Windows

CONFIGURATION MANAGEMENT

DTBI375 - All network paths (UNCs) for Intranet sites must be disallowed.DISA STIG Microsoft Internet Explorer 9 v1r15Windows

CONFIGURATION MANAGEMENT

DTBI465 - MIME sniffing must be disallowed (Internet zone).DISA STIG Microsoft Internet Explorer 9 v1r15Windows

SYSTEM AND INFORMATION INTEGRITY

DTBI515 - Web sites in less privileged web content zones must be disallowed to navigate into the Internet zone.DISA STIG Microsoft Internet Explorer 9 v1r15Windows

ACCESS CONTROL

DTBI640 - Internet Explorer Processes for Restrict File Download must be enforced (IExplore).DISA STIG Microsoft Internet Explorer 9 v1r15Windows

CONFIGURATION MANAGEMENT

DTOO141 - Excel - AutoRepublish Warning Alert must be provided.DISA STIG Office 2010 Excel v1r11Windows

CONFIGURATION MANAGEMENT

DTOO184 - Office System - The Customer Experience Improvement Program for Office must be disabled.DISA STIG Office System 2010 v1r13Windows

CONFIGURATION MANAGEMENT

DTOO185 - Office System - Automatic receiving of small updates to improve reliability must be disallowed.DISA STIG Office System 2010 v1r13Windows

CONFIGURATION MANAGEMENT

DTOO190 - Office System - The encryption type for password protected Office 97 thru Office 2003 must be set.DISA STIG Office System 2010 v1r13Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO196 - Office System - A mix of policy and user locations for Office Products must be disallowed.DISA STIG Office System 2010 v1r13Windows

CONFIGURATION MANAGEMENT

DTOO197 - Office System - Smart Documents use of Manifests in Office must be disallowed.DISA STIG Office System 2010 v1r13Windows

CONFIGURATION MANAGEMENT

DTOO228 - Outlook - Plain Text Options for outbound email must be configured - PlainWrapLenDISA Microsoft Outlook 2010 STIG v1r14Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO239 - Outlook - Outlook Security Mode must be configured to use Group Policy settings.DISA Microsoft Outlook 2010 STIG v1r14Windows

CONFIGURATION MANAGEMENT

DTOO256 - Outlook - Trusted add-ins behavior for eMail must be configured.DISA Microsoft Outlook 2010 STIG v1r14Windows

CONFIGURATION MANAGEMENT

DTOO257 - Outlook - S/Mime interoperability with external clients for message handling must be configured.DISA Microsoft Outlook 2010 STIG v1r14Windows

IDENTIFICATION AND AUTHENTICATION

DTOO262 - Outlook - Run in FIPS compliant mode must be enforced.DISA Microsoft Outlook 2010 STIG v1r14Windows

IDENTIFICATION AND AUTHENTICATION

DTOO269 - Outlook - Attachments using generated name for secure temporary folders must be configured.DISA Microsoft Outlook 2010 STIG v1r14Windows

CONFIGURATION MANAGEMENT

DTOO272 - Outlook - Permit download of content from safe zones must be configured.DISA Microsoft Outlook 2010 STIG v1r14Windows

CONFIGURATION MANAGEMENT

DTOO277 - Outlook - Hyperlinks in suspected phishing e-mail messages must be disallowed.DISA Microsoft Outlook 2010 STIG v1r14Windows

CONFIGURATION MANAGEMENT

DTOO303 - Word - A warning before printing that the document contains tracking changes must be provided.DISA STIG Office 2010 Word v1r12Windows

CONFIGURATION MANAGEMENT

DTOO304 - PowerPoint - Warning Bar settings for VBA macros must be configured.DISA STIG Office 2010 PowerPoint v1r11Windows

CONFIGURATION MANAGEMENT

DTOO304 - Publisher - Warning Bar settings for VBA macros must be configured.DISA STIG Office 2010 Publisher v1r12Windows

CONFIGURATION MANAGEMENT

DTOO317 - Outlook - Replies or forwards to signed/encrypted messages must be signed/encrypted.DISA Microsoft Outlook 2010 STIG v1r14Windows

CONFIGURATION MANAGEMENT

DTOO319 - PowerPoint - The configuration for Slide Update with counterparts must be disallowed.DISA STIG Office 2010 PowerPoint v1r11Windows

CONFIGURATION MANAGEMENT

GEN000242 - The system must use at least two time sources for clock synchronization - 'NTP daemon is started at boot'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

WG410 IIS6 - Interactive scripts must have proper access controls. - 'Virtual Directories - AspScriptTimeout set to 90 or less'DISA STIG IIS 6.0 Site Checklist v6r16Windows

ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION