| 1.3 OL08-00-010019 | CIS Oracle Linux 8 STIG v1.0.0 CAT II | Unix | CONFIGURATION MANAGEMENT |
| 1.8.11 Ensure overriding the screensaver lock-delay setting is prevented | CIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG | Unix | ACCESS CONTROL |
| 1.8.12 Ensure session idle-delay settings is enforced | CIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG | Unix | ACCESS CONTROL |
| 1.8.14 Ensure the screensaver idle-activation-enabled setting | CIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG | Unix | ACCESS CONTROL |
| 1.14 O19C-00-005900 | CIS Oracle Database 19c STIG v1.1.0 CAT II OracleDB | OracleDB | AUDIT AND ACCOUNTABILITY |
| 1.17 O19C-00-006600 | CIS Oracle Database 19c STIG v1.1.0 CAT II OracleDB | OracleDB | AUDIT AND ACCOUNTABILITY |
| 1.50 O19C-00-011800 | CIS Oracle Database 19c STIG v1.1.0 CAT I Windows | Windows | CONFIGURATION MANAGEMENT |
| 1.53 O19C-00-012100 | CIS Oracle Database 19c STIG v1.1.0 CAT II OracleDB | OracleDB | CONFIGURATION MANAGEMENT |
| 1.55 O19C-00-012300 | CIS Oracle Database 19c STIG v1.1.0 CAT II OracleDB | OracleDB | CONFIGURATION MANAGEMENT |
| 1.65 O19C-00-013700 | CIS Oracle Database 19c STIG v1.1.0 CAT II OracleDB | OracleDB | IDENTIFICATION AND AUTHENTICATION |
| 1.91 OL09-00-000499 | CIS Oracle Linux 9 STIG v1.0.0 CAT II | Unix | CONFIGURATION MANAGEMENT |
| 2.07 otrace - 'Disable' | CIS v1.1.0 Oracle 11g OS L1 | Unix | CONFIGURATION MANAGEMENT |
| 4.6 Ensure That Users In Different RAC Instances Are Identical In PW Files | CIS Oracle Database 26ai v1.0.0 L1 RDBMS | OracleDB | IDENTIFICATION AND AUTHENTICATION |
| 4.6 Ensure That Users In Different RAC Instances Are Identical In PW Files | CIS Oracle Database 26ai v1.0.0 L1 RDBMS On Windows Server Host OS OracleDB | OracleDB | IDENTIFICATION AND AUTHENTICATION |
| 4.6 Ensure That Users In Different RAC Instances Are Identical In PW Files | CIS Oracle Database 26ai v1.0.0 L1 RDBMS On Linux Host OS OracleDB | OracleDB | IDENTIFICATION AND AUTHENTICATION |
| 4.16 init.ora - 'o7_dictionary_accessibility = FALSE' | CIS v1.1.0 Oracle 11g OS L2 | Unix | ACCESS CONTROL |
| 4.16 init.ora - 'o7_dictionary_accessibility = FALSE' | CIS v1.1.0 Oracle 11g OS Windows Level 2 | Windows | ACCESS CONTROL |
| 5.3 Ensure Critical Packages Are Audited | CIS Oracle Database 26ai v1.0.0 L1 RDBMS On Linux Host OS OracleDB | OracleDB | AUDIT AND ACCOUNTABILITY |
| 5.3 Ensure Critical Packages Are Audited | CIS Oracle Database 23ai v1.1.0 L1 RDBMS | OracleDB | AUDIT AND ACCOUNTABILITY |
| 5.11 OAS - 'Server Oracle Wallet Auto Login - Allow Auto Login for the server's Oracle Wallet' | CIS v1.1.0 Oracle 11g OS Windows Level 2 | Windows | |
| 6.02 Cache - 'Cache must be emptied at shutdown of Oracle' | CIS v1.1.0 Oracle 11g OS Windows Level 1 | Windows | |
| 6.2.3 Ensure the 'DROP USER' Audit Option Is Enabled | CIS Oracle Server 18c DB Unified Auditing v1.1.0 | OracleDB | AUDIT AND ACCOUNTABILITY |
| 6.2.3 Ensure the 'DROP USER' Audit Option Is Enabled | CIS Oracle Server 12c DB Unified Auditing v3.0.0 | OracleDB | AUDIT AND ACCOUNTABILITY |
| 6.2.8 Ensure the 'REVOKE' Action Audit Is Enabled | CIS Oracle Server 12c DB Unified Auditing v3.0.0 | OracleDB | AUDIT AND ACCOUNTABILITY |
| 6.2.8 Ensure the 'REVOKE' Action Audit Is Enabled | CIS Oracle Server 18c DB Unified Auditing v1.1.0 | OracleDB | AUDIT AND ACCOUNTABILITY |
| 12.00 Oracle Installation - 'Do not install Oracle on an Internet facing server' | CIS v1.1.0 Oracle 11g OS Windows Level 1 | Windows | |
| 12.00 Oracle Installation - 'Do not install Oracle on an Internet facing server' | CIS v1.1.0 Oracle 11g OS L1 | Unix | |
| 12.14 All database objects - 'Monitor' | CIS v1.1.0 Oracle 11g OS L1 | Unix | |
| 12.14 All database objects - 'Monitor' | CIS v1.1.0 Oracle 11g OS Windows Level 1 | Windows | |
| 12.17 Applications with database access - 'Review' | CIS v1.1.0 Oracle 11g OS L1 | Unix | |
| 12.17 Applications with database access - 'Review' | CIS v1.1.0 Oracle 11g OS Windows Level 1 | Windows | |
| 12.30 Public dissemination of database information - 'Disallow' | CIS v1.1.0 Oracle 11g OS L1 | Unix | |
| 12.30 Public dissemination of database information - 'Disallow' | CIS v1.1.0 Oracle 11g OS Windows Level 1 | Windows | |
| DG0016-ORACLE11 - Unused database components, database application software, and database objects should be removed from the DBMS system. | DISA STIG Oracle 11 Installation v9r1 Windows | Windows | |
| DG0016-ORACLE11 - Unused database components, database application software, and database objects should be removed from the DBMS system. | DISA STIG Oracle 11 Installation v9r1 Linux | Unix | |
| DG0019-ORACLE11 - Application software should be owned by a Software Application account - 'Oracle base directory file permissions are correct' | DISA STIG Oracle 11 Installation v9r1 Windows | Windows | CONFIGURATION MANAGEMENT |
| DG0019-ORACLE11 - Application software should be owned by a Software Application account - 'Oracle home directory file permissions are correct' | DISA STIG Oracle 11 Installation v9r1 Windows | Windows | CONFIGURATION MANAGEMENT |
| DG0019-ORACLE11 - Application software should be owned by a Software Application account. | DISA STIG Oracle 11 Installation v9r1 Linux | Unix | CONFIGURATION MANAGEMENT |
| DG0093-ORACLE11 - Remote adminstrative connections to the database should be encrypted - '%ORACLE_HOME%\ldap\admin\fips.ora SSLFIPS_140 = TRUE' | DISA STIG Oracle 11 Installation v9r1 Windows | Windows | SYSTEM AND COMMUNICATIONS PROTECTION |
| DG0093-ORACLE11 - Remote adminstrative connections to the database should be encrypted - '$ORACLE_HOME/ldap/admin/fips.ora SSLFIPS_140 = true' | DISA STIG Oracle 11 Installation v9r1 Linux | Unix | SYSTEM AND COMMUNICATIONS PROTECTION |
| DG0093-ORACLE11 - Remote adminstrative connections to the database should be encrypted - 'Remote admin connections are encrypted' | DISA STIG Oracle 11 Installation v9r1 Linux | Unix | ACCESS CONTROL |
| DG0093-ORACLE11 - Remote adminstrative connections to the database should be encrypted - all protocols use TCPS' | DISA STIG Oracle 11 Installation v9r1 Windows | Windows | ACCESS CONTROL |
| DISA_VMware_vSphere_8.0_vCenter_Appliance_Management_Interface_(VAMI)_STIG_v2r1.audit from DISA VMware vSphere 8.0 vCenter Appliance Management Interface (VAMI) STIG v2r1 | DISA VMware vSphere 8.0 vCenter Appliance Management Interface (VAMI) STIG v2r1 | Unix | |
| DISA_VMware_vSphere_8.0_vCenter_Appliance_User_Interface_(UI)_STIG_v2r1.audit from DISA VMware vSphere 8.0 vCenter Appliance User Interface (UI) STIG v2r1 | DISA VMware vSphere 8.0 vCenter Appliance User Interface (UI) STIG v2r1 | Unix | |
| F5BI-AP-000231 - The F5 BIG-IP appliance must be configured to deny access when revocation data is unavailable using OCSP. | DISA F5 BIG-IP Access Policy Manager STIG v2r4 | F5 | IDENTIFICATION AND AUTHENTICATION |
| F5BI-DM-300046 - The F5 BIG-IP appliance must be configured to use multifactor authentication (MFA) for interactive logins. | DISA F5 BIG-IP TMOS NDM STIG v1r2 | F5 | AUDIT AND ACCOUNTABILITY, IDENTIFICATION AND AUTHENTICATION |
| MYS8-00-005100 - If passwords are used for authentication, the MySQL Database Server 8.0 must store only hashed, salted representations of passwords. | DISA Oracle MySQL 8.0 v2r2 DB | MySQLDB | IDENTIFICATION AND AUTHENTICATION |
| OL07-00-010019 - The Oracle Linux operating system must ensure cryptographic verification of vendor software packages. | DISA Oracle Linux 7 STIG v3r5 | Unix | CONFIGURATION MANAGEMENT |
| OL08-00-010019 - OL 8 must ensure cryptographic verification of vendor software packages. | DISA Oracle Linux 8 STIG v2r9 | Unix | CONFIGURATION MANAGEMENT |
| OL09-00-000499 - OL 9 must ensure cryptographic verification of vendor software packages. | DISA Oracle Linux 9 STIG v1r6 | Unix | CONFIGURATION MANAGEMENT |