Item Search

NameAudit NamePluginCategory
OL6-00-000133 - All rsyslog-generated log files must be owned by root.DISA STIG Oracle Linux 6 v2r7Unix

SYSTEM AND INFORMATION INTEGRITY

OL6-00-000137 - The operating system must support the requirement to centrally manage the content of audit records generated by organization defined information system components.DISA STIG Oracle Linux 6 v2r7Unix

AUDIT AND ACCOUNTABILITY

OL6-00-000138 - System logs must be rotated daily.DISA STIG Oracle Linux 6 v2r7Unix

CONFIGURATION MANAGEMENT

OL6-00-000159 - The system must retain enough rotated audit logs to cover the required log retention period.DISA STIG Oracle Linux 6 v2r7Unix

CONFIGURATION MANAGEMENT

OL6-00-000171 - The audit system must be configured to audit all attempts to alter system time through clock_settime - b64DISA STIG Oracle Linux 6 v2r7Unix

AUDIT AND ACCOUNTABILITY

OL6-00-000175 - The operating system must automatically audit account modification - '/etc/passwd'DISA STIG Oracle Linux 6 v2r7Unix

ACCESS CONTROL

OL6-00-000176 - The operating system must automatically audit account disabling actions - '/etc/shadow'DISA STIG Oracle Linux 6 v2r7Unix

ACCESS CONTROL

OL6-00-000177 - The operating system must automatically audit account termination - '/etc/gshadow'DISA STIG Oracle Linux 6 v2r7Unix

ACCESS CONTROL

OL6-00-000177 - The operating system must automatically audit account termination - '/etc/passwd'DISA STIG Oracle Linux 6 v2r7Unix

ACCESS CONTROL

OL6-00-000182 - The audit system must be configured to audit modifications to the systems network configuration - '/etc/issue'DISA STIG Oracle Linux 6 v2r7Unix

CONFIGURATION MANAGEMENT

OL6-00-000184 - The audit system must be configured to audit all discretionary access control permission modifications using chmod, fchmod, and fchmodat - b32 auid=0DISA STIG Oracle Linux 6 v2r7Unix

AUDIT AND ACCOUNTABILITY

OL6-00-000184 - The audit system must be configured to audit all discretionary access control permission modifications using chmod, fchmod, and fchmodat - b32 auid>=500DISA STIG Oracle Linux 6 v2r7Unix

AUDIT AND ACCOUNTABILITY

OL6-00-000184 - The audit system must be configured to audit all discretionary access control permission modifications using chmod, fchmod, and fchmodat - b64 auid>=500DISA STIG Oracle Linux 6 v2r7Unix

AUDIT AND ACCOUNTABILITY

OL6-00-000185 - The audit system must be configured to audit all discretionary access control permission modifications using chown, fchown, fchownat, and lchown - b64 auid>=500DISA STIG Oracle Linux 6 v2r7Unix

AUDIT AND ACCOUNTABILITY

OL6-00-000197 - The audit system must be configured to audit failed attempts to access files and programs - b32 EACCES auid=0DISA STIG Oracle Linux 6 v2r7Unix

AUDIT AND ACCOUNTABILITY

OL6-00-000197 - The audit system must be configured to audit failed attempts to access files and programs - b64 EACCES auid=0DISA STIG Oracle Linux 6 v2r7Unix

AUDIT AND ACCOUNTABILITY

OL6-00-000200 - The audit system must be configured to audit user deletions of files and programs - b32 auid=0DISA STIG Oracle Linux 6 v2r7Unix

AUDIT AND ACCOUNTABILITY

OL6-00-000202 - The audit system must be configured to audit the loading and unloading of dynamic kernel modules - modprobeDISA STIG Oracle Linux 6 v2r7Unix

AUDIT AND ACCOUNTABILITY

OL6-00-000203 - The xinetd service must be disabled if no network services utilizing it are enabled - PROCESS_CHECKDISA STIG Oracle Linux 6 v2r7Unix

CONFIGURATION MANAGEMENT

OL6-00-000211 - The telnet daemon must not be running - PROCESS_CHECKDISA STIG Oracle Linux 6 v2r7Unix

CONFIGURATION MANAGEMENT

OL6-00-000214 - The rshd service must not be running - PROCESS_CHECKDISA STIG Oracle Linux 6 v2r7Unix

ACCESS CONTROL

OL6-00-000216 - The rexecd service must not be running - CHKCONFIGDISA STIG Oracle Linux 6 v2r7Unix

ACCESS CONTROL

OL6-00-000218 - The rlogind service must not be running - CHKCONFIGDISA STIG Oracle Linux 6 v2r7Unix

CONFIGURATION MANAGEMENT

OL6-00-000224 - The cron service must be running.DISA STIG Oracle Linux 6 v2r7Unix

CONFIGURATION MANAGEMENT

OL6-00-000227 - The SSH daemon must be configured to use only the SSHv2 protocol.DISA STIG Oracle Linux 6 v2r7Unix

IDENTIFICATION AND AUTHENTICATION

OL6-00-000231 - The SSH daemon must set a timeout count on idle sessions.DISA STIG Oracle Linux 6 v2r7Unix

MAINTENANCE

OL6-00-000246 - The avahi service must be disabled.DISA STIG Oracle Linux 6 v2r7Unix

CONFIGURATION MANAGEMENT

OL6-00-000256 - The openldap-servers package must not be installed unless required.DISA STIG Oracle Linux 6 v2r7Unix

CONFIGURATION MANAGEMENT

OL6-00-000259 - The graphical desktop environment must have automatic lock enabled.DISA STIG Oracle Linux 6 v2r7Unix

ACCESS CONTROL

OL6-00-000262 - The atd service must be disabled - PROCESS_CHECKDISA STIG Oracle Linux 6 v2r7Unix

CONFIGURATION MANAGEMENT

OL6-00-000267 - The qpidd service must not be running - CHKCONFIGDISA STIG Oracle Linux 6 v2r7Unix

CONFIGURATION MANAGEMENT

OL6-00-000274 - The system must prohibit the reuse of passwords within five iterations - system-authDISA STIG Oracle Linux 6 v2r7Unix

IDENTIFICATION AND AUTHENTICATION

OL6-00-000278 - The system package management tool must verify permissions on all files and directories associated with the audit package.DISA STIG Oracle Linux 6 v2r7Unix

AUDIT AND ACCOUNTABILITY

OL6-00-000281 - The system package management tool must verify contents of all files associated with the audit package.DISA STIG Oracle Linux 6 v2r7Unix

AUDIT AND ACCOUNTABILITY

OL6-00-000289 - The netconsole service must be disabled unless required - 'Running'DISA STIG Oracle Linux 6 v2r7Unix

CONFIGURATION MANAGEMENT

OL6-00-000289 - The netconsole service must be disabled unless required - CHKCONFIGDISA STIG Oracle Linux 6 v2r7Unix

CONFIGURATION MANAGEMENT

OL6-00-000293 - Wireless network adapters must be disabled.DISA STIG Oracle Linux 6 v2r7Unix

SYSTEM AND COMMUNICATIONS PROTECTION

OL6-00-000296 - All accounts on the system must have unique user or account names.DISA STIG Oracle Linux 6 v2r7Unix

IDENTIFICATION AND AUTHENTICATION

OL6-00-000305 - The operating system must provide a near real-time alert when any of the organization defined list of compromise or potential compromise indicators occurs.DISA STIG Oracle Linux 6 v2r7Unix

CONFIGURATION MANAGEMENT

OL6-00-000313 - The audit system must identify staff members to receive notifications of audit log storage volume capacity issues.DISA STIG Oracle Linux 6 v2r7Unix

AUDIT AND ACCOUNTABILITY

OL6-00-000315 - The Bluetooth kernel module must be disabled - 'bluetooth'DISA STIG Oracle Linux 6 v2r7Unix

CONFIGURATION MANAGEMENT

OL6-00-000337 - All public directories must be owned by a system account.DISA STIG Oracle Linux 6 v2r7Unix

CONFIGURATION MANAGEMENT

OL6-00-000341 - The snmpd service must not use a default password.DISA STIG Oracle Linux 6 v2r7Unix

CONFIGURATION MANAGEMENT

OL6-00-000344 - The system default umask in /etc/profile must be 077.DISA STIG Oracle Linux 6 v2r7Unix

CONFIGURATION MANAGEMENT

OL6-00-000357 - The system must disable accounts after excessive login failures within a 15-minute interval - system-auth fail_intervalDISA STIG Oracle Linux 6 v2r7Unix

ACCESS CONTROL

OL6-00-000384 - Audit log files must be owned by root.DISA STIG Oracle Linux 6 v2r7Unix

AUDIT AND ACCOUNTABILITY

OL6-00-000505 - The operating system must conduct backups of system-level information contained in the information system per organization defined frequency to conduct backups that are consistent with recovery time and recovery point objectives.DISA STIG Oracle Linux 6 v2r7Unix

CONFIGURATION MANAGEMENT

OL6-00-000508 - The system must allow locking of graphical desktop sessions.DISA STIG Oracle Linux 6 v2r7Unix

ACCESS CONTROL

OL6-00-000516 - The system package management tool must verify ownership on all files and directories associated with packages.DISA STIG Oracle Linux 6 v2r7Unix

CONFIGURATION MANAGEMENT

OL6-00-000519 - The system package management tool must verify contents of all files associated with packages.DISA STIG Oracle Linux 6 v2r7Unix

CONFIGURATION MANAGEMENT