Item Search

NameAudit NamePluginCategory
5.5.1.2 Ensure minimum days between password changes is configured - /etc/login.defsCIS Red Hat Enterprise Linux 7 STIG v2.0.0 L1 WorkstationUnix

CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION

CNTR-R2-000520 - Configuration and authentication files for Rancher RKE2 must be protected.DISA Rancher Government Solutions RKE2 STIG v2r7Unix

CONFIGURATION MANAGEMENT

GOOG-14-006000 - Google Android 14 must be configured to enforce a minimum password length of six characters.AirWatch - DISA Google Android 14 COBO STIG v2r5MDM

IDENTIFICATION AND AUTHENTICATION

GOOG-14-006000 - Google Android 14 must be configured to enforce a minimum password length of six characters.AirWatch - DISA Google Android 14 COPE STIG v2r5MDM

IDENTIFICATION AND AUTHENTICATION

GOOG-14-006100 - Google Android 14 must be configured to not allow passwords that include more than four repeating or sequential characters - Complex CharactersMobileIron - DISA Google Android 14 COBO STIG v2r5MDM

IDENTIFICATION AND AUTHENTICATION

GOOG-14-006400 - Google Android 14 must be configured to not allow more than 10 consecutive failed authentication attempts.MobileIron - DISA Google Android 14 COBO STIG v2r5MDM

ACCESS CONTROL

GOOG-14-006700 - Google Android 14 allowlist must be configured to not include applications with the following characteristics:MobileIron - DISA Google Android 14 COBO STIG v2r5MDM

CONFIGURATION MANAGEMENT, IDENTIFICATION AND AUTHENTICATION

GOOG-14-007200 - Google Android 14 must be configured to disable trust agents - NOTE: This requirement is not applicable (NA) for specific biometric authentication factors included in the product's Common Criteria evaluation.AirWatch - DISA Google Android 14 COPE STIG v2r5MDM

IDENTIFICATION AND AUTHENTICATION

GOOG-14-007800 - Google Android 14 must be configured to generate audit records for the following auditable events: Detected integrity violations.MobileIron - DISA Google Android 14 COBO STIG v2r5MDM

AUDIT AND ACCOUNTABILITY

GOOG-14-008400 - Google Android 14 must be configured to disable USB mass storage mode.MobileIron - DISA Google Android 14 COPE STIG v2r5MDM

SYSTEM AND COMMUNICATIONS PROTECTION

GOOG-14-008400 - Google Android 14 must be configured to disable USB mass storage mode.AirWatch - DISA Google Android 14 COBO STIG v2r5MDM

SYSTEM AND COMMUNICATIONS PROTECTION

GOOG-14-008400 - Google Android 14 must be configured to disable USB mass storage mode.MobileIron - DISA Google Android 14 COBO STIG v2r5MDM

SYSTEM AND COMMUNICATIONS PROTECTION

GOOG-14-008900 - Google Android 14 must be configured to disable exceptions to the access control policy that prevent [selection: application processes, groups of application processes] from accessing [selection: all, private] data stored by other [selection: application processes, groups of application processes].MobileIron - DISA Google Android 14 COPE STIG v2r5MDM

ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION

GOOG-14-009800 - Google Android 14 users must complete required training.MobileIron - DISA Google Android 14 COPE STIG v2r5MDM

CONFIGURATION MANAGEMENT

GOOG-14-009800 - Google Android 14 users must complete required training.AirWatch - DISA Google Android 14 COBO STIG v2r5MDM

CONFIGURATION MANAGEMENT

GOOG-14-009900 - Google Android 14 must be configured to enforce that Wi-Fi Sharing is disabled.MobileIron - DISA Google Android 14 COPE STIG v2r5MDM

CONFIGURATION MANAGEMENT

GOOG-14-009900 - Google Android 14 must be configured to enforce that Wi-Fi Sharing is disabled.AirWatch - DISA Google Android 14 COBO STIG v2r5MDM

CONFIGURATION MANAGEMENT

GOOG-14-010000 - Google Android 14 must have the DOD root and intermediate PKI certificates installed.MobileIron - DISA Google Android 14 COBO STIG v2r5MDM

CONFIGURATION MANAGEMENT

GOOG-14-010200 - The Google Android 14 work profile must be configured to enforce the system application disable list.AirWatch - DISA Google Android 14 COBO STIG v2r5MDM

CONFIGURATION MANAGEMENT

GOOG-14-011000 - Android 14 devices must be configured to enable Common Criteria Mode (CC Mode) - CC Mode.MobileIron - DISA Google Android 14 COPE STIG v2r5MDM

CONFIGURATION MANAGEMENT

GOOG-14-012200 - Google Android 14 must be configured to disable all data signaling over [assignment: list of externally accessible hardware ports (for example, USB)] - for example, USB].MobileIron - DISA Google Android 14 COPE STIG v2r5MDM

ACCESS CONTROL

GOOG-14-012400 - Google Android 14 must allow only the administrator (MDM) to perform the following management function: Disable Phone Hub - MDM to perform the following management function: Disable Phone Hub.AirWatch - DISA Google Android 14 COBO STIG v2r5MDM

SYSTEM AND COMMUNICATIONS PROTECTION

GOOG-14-013500 - Google Android 14 must implement the management setting: disable Camera.AirWatch - DISA Google Android 14 COBO STIG v2r5MDM

CONFIGURATION MANAGEMENT

MADB-10-001600 - MariaDB must include additional, more detailed, organization-defined information in the audit records for audit events identified by type, location, or subject.DISA MariaDB Enterprise 10.x STIG v2r5 MySQLDBMySQLDB

AUDIT AND ACCOUNTABILITY

MADB-10-002500 - MariaDB must protect its audit features from unauthorized removal.DISA MariaDB Enterprise 10.x STIG v2r5 MySQLDBMySQLDB

AUDIT AND ACCOUNTABILITY

MADB-10-002600 - MariaDB must limit privileges to change software modules, to include stored procedures, functions and triggers, and links to software external to the DBMS.DISA MariaDB Enterprise 10.x STIG v2r5 MySQLDBMySQLDB

CONFIGURATION MANAGEMENT

MADB-10-003100 - Default demonstration and sample databases, database objects, and applications must be removed.DISA MariaDB Enterprise 10.x STIG v2r5 MySQLDBMySQLDB

CONFIGURATION MANAGEMENT

MADB-10-003400 - Access to external executables must be disabled or restricted.DISA MariaDB Enterprise 10.x STIG v2r5 MySQLDBMySQLDB

CONFIGURATION MANAGEMENT

MADB-10-003800 - If passwords are used for authentication, MariaDB must store only hashed, salted representations of passwords.DISA MariaDB Enterprise 10.x STIG v2r5 UnixUnix

IDENTIFICATION AND AUTHENTICATION

MADB-10-003900 - If passwords are used for authentication, MariaDB must transmit only encrypted representations of passwords.DISA MariaDB Enterprise 10.x STIG v2r5 MySQLDBMySQLDB

IDENTIFICATION AND AUTHENTICATION

MADB-10-004500 - The MariaDB must uniquely identify and authenticate nonorganizational users (or processes acting on behalf of nonorganizational users).DISA MariaDB Enterprise 10.x STIG v2r5 MySQLDBMySQLDB

IDENTIFICATION AND AUTHENTICATION

MADB-10-004600 - MariaDB must separate user functionality (including user interface services) from database management functionality.DISA MariaDB Enterprise 10.x STIG v2r5 MySQLDBMySQLDB

SYSTEM AND COMMUNICATIONS PROTECTION

MADB-10-005200 - MariaDB must protect the confidentiality and integrity of all information at rest.DISA MariaDB Enterprise 10.x STIG v2r5 MySQLDBMySQLDB

SYSTEM AND COMMUNICATIONS PROTECTION

MADB-10-005600 - Access to database files must be limited to relevant processes and to authorized, administrative users.DISA MariaDB Enterprise 10.x STIG v2r5 UnixUnix

SYSTEM AND COMMUNICATIONS PROTECTION

MADB-10-005700 - MariaDB must check the validity of all data inputs except those specifically identified by the organization.DISA MariaDB Enterprise 10.x STIG v2r5 MySQLDBMySQLDB

SYSTEM AND INFORMATION INTEGRITY

MADB-10-005900 - MariaDB and associated applications, when making use of dynamic code execution, must scan input data for invalid values that may indicate a code injection attack.DISA MariaDB Enterprise 10.x STIG v2r5 UnixUnix

SYSTEM AND INFORMATION INTEGRITY

MADB-10-006300 - MariaDB must provide logout functionality to allow the user to manually terminate a session initiated by that user.DISA MariaDB Enterprise 10.x STIG v2r5 MySQLDBMySQLDB

ACCESS CONTROL

MADB-10-006600 - MariaDB must associate organization-defined types of security labels having organization-defined security label values with information in transmission.DISA MariaDB Enterprise 10.x STIG v2r5 MySQLDBMySQLDB

ACCESS CONTROL

MADB-10-006900 - Execution of software modules (to include stored procedures, functions, and triggers) with elevated privileges must be restricted to necessary cases only.DISA MariaDB Enterprise 10.x STIG v2r5 MySQLDBMySQLDB

ACCESS CONTROL

MADB-10-007500 - MariaDB must provide an immediate real-time alert to appropriate support staff of all audit failure events requiring real-time alerts.DISA MariaDB Enterprise 10.x STIG v2r5 UnixUnix

AUDIT AND ACCOUNTABILITY

MADB-10-008100 - MariaDB must disable network functions, ports, protocols, and services deemed by the organization to be nonsecure, in accord with the Ports, Protocols, and Services Management (PPSM) guidance.DISA MariaDB Enterprise 10.x STIG v2r5 MySQLDBMySQLDB

CONFIGURATION MANAGEMENT

MADB-10-008200 - MariaDB must require users to reauthenticate when organization-defined circumstances or situations require reauthentication.DISA MariaDB Enterprise 10.x STIG v2r5 MySQLDBMySQLDB

IDENTIFICATION AND AUTHENTICATION

MADB-10-008500 - MariaDB must only accept end entity certificates issued by DoD PKI or DoD-approved PKI Certification Authorities (CAs) for the establishment of all encrypted sessions.DISA MariaDB Enterprise 10.x STIG v2r5 UnixUnix

SYSTEM AND COMMUNICATIONS PROTECTION

MADB-10-010200 - MariaDB must generate audit records when security objects are modified.DISA MariaDB Enterprise 10.x STIG v2r5 MySQLDBMySQLDB

AUDIT AND ACCOUNTABILITY

MADB-10-010500 - MariaDB must generate audit records when unsuccessful attempts to modify categories of information (e.g., classification levels/security levels) occur.DISA MariaDB Enterprise 10.x STIG v2r5 MySQLDBMySQLDB

AUDIT AND ACCOUNTABILITY

MADB-10-010800 - MariaDB must generate audit records when security objects are deleted.DISA MariaDB Enterprise 10.x STIG v2r5 MySQLDBMySQLDB

AUDIT AND ACCOUNTABILITY

MADB-10-010900 - MariaDB must generate audit records when unsuccessful attempts to delete security objects occur.DISA MariaDB Enterprise 10.x STIG v2r5 MySQLDBMySQLDB

AUDIT AND ACCOUNTABILITY

MADB-10-011300 - MariaDB must generate audit records when unsuccessful logons or connection attempts occur.DISA MariaDB Enterprise 10.x STIG v2r5 MySQLDBMySQLDB

AUDIT AND ACCOUNTABILITY

MADB-10-011700 - MariaDB must generate audit records when concurrent logons/connections by the same user from different workstations occur.DISA MariaDB Enterprise 10.x STIG v2r5 MySQLDBMySQLDB

AUDIT AND ACCOUNTABILITY

MADB-10-012400 - MariaDB must off-load audit data to a separate log management facility; this must be continuous and in near real time for systems with a network connection to the storage facility and weekly or more often for stand-alone systems.DISA MariaDB Enterprise 10.x STIG v2r5 UnixUnix

AUDIT AND ACCOUNTABILITY