Item Search

NameAudit NamePluginCategory
1.1 Ensure packages are obtained from authorized repositoriesCIS PostgreSQL 10 OS v1.0.0Unix

CONFIGURATION MANAGEMENT

1.1 Ensure packages are obtained from authorized repositoriesCIS PostgreSQL 9.6 OS v1.0.0Unix

CONFIGURATION MANAGEMENT

1.2.1.6 Ensure cryptographic verification of vendor software packagesCIS Red Hat Enterprise Linux 8 STIG v2.0.0 STIGUnix

CONFIGURATION MANAGEMENT

1.2.2 Ensure the latest software package is installedCIS NGINX v3.0.0 L1 WebserverUnix

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

1.4.6 Ensure version 7.2 or newer booted with UEFI have a unique name for the grub superusers accountCIS Amazon Linux 2 STIG v2.0.0 STIGUnix

ACCESS CONTROL

1.4.6 Ensure version 7.2 or newer booted with UEFI have a unique name for the grub superusers account - UEFI must have a unique name for the grub superusers account when booting into single-user mode and maintenance.CIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

ACCESS CONTROL

1.17 OL08-00-010140CIS Oracle Linux 8 STIG v1.0.0 CAT IUnix

ACCESS CONTROL

2.3.2 RedHat bind-chroot Rpm '/var/named/chroot/var/log'CIS ISC BIND 9.0/9.5 v2.0.0Unix
3.2.6 CDE - remote GUI login disabled - remote GUI login disabledCIS IBM AIX 7.1 L2 v2.1.0Unix

CONFIGURATION MANAGEMENT

5 - AuthenticationTNS Best Practice Jetty 9 LinuxUnix
AOSX-14-000008 - The macOS system must be configured with Wi-Fi support software disabled.DISA STIG Apple Mac OSX 10.14 v2r6Unix

ACCESS CONTROL

AOSX-15-000008 - The macOS system must be configured with Wi-Fi support software disabled.DISA STIG Apple Mac OSX 10.15 v1r10Unix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

APPL-11-000008 - The macOS system must be configured with Wi-Fi support software disabled.DISA STIG Apple macOS 11 v1r5Unix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

APPL-11-000008 - The macOS system must be configured with Wi-Fi support software disabled.DISA STIG Apple macOS 11 v1r8Unix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

GEN005160 - Any X Windows host must write .Xauthority files.DISA STIG for Oracle Linux 5 v2r1Unix

CONFIGURATION MANAGEMENT

GEN005200 - X displays must not be exported to the world.DISA STIG for Oracle Linux 5 v2r1Unix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

GEN005200 - X displays must not be exported to the world.DISA AIX 5.3 STIG v1r2Unix

ACCESS CONTROL

GEN005220 - .Xauthority or X*.hosts (or equivalent) file(s) must be used to restrict access to the X server.DISA STIG for Oracle Linux 5 v2r1Unix

CONFIGURATION MANAGEMENT

GEN005240 - The .Xauthority utility must only permit access to authorized hosts.DISA STIG for Oracle Linux 5 v2r1Unix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

GEN005240 - The .Xauthority utility must only permit access to authorized hosts.DISA AIX 5.3 STIG v1r2Unix

SYSTEM AND COMMUNICATIONS PROTECTION

GEN005240 - The .Xauthority utility must only permit access to authorized hosts.DISA STIG AIX 6.1 v1r14Unix

ACCESS CONTROL

GEN005260 - X Window System connections not required must be disabled.DISA STIG for Oracle Linux 5 v2r1Unix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

GEN005260 - X Window System connections not required must be disabled.DISA AIX 5.3 STIG v1r2Unix

ACCESS CONTROL

GEN005260 - X Window System connections not required must be disabled.DISA STIG AIX 6.1 v1r14Unix

ACCESS CONTROL

GEN005260 - X Window System connections that are not required must be disabled.DISA STIG Solaris 10 SPARC v2r4Unix

CONFIGURATION MANAGEMENT

GEN005260 - X Window System connections that are not required must be disabled.DISA STIG Solaris 10 X86 v2r4Unix

CONFIGURATION MANAGEMENT

JBOS-AS-000030 - The Java Security Manager must be enabled for the JBoss application server.DISA JBoss Enterprise Application Platform 6.3 STIG v2r6Unix

ACCESS CONTROL

JBOS-AS-000300 - JBoss KeyStore and Truststore passwords must not be stored in clear text.DISA JBoss Enterprise Application Platform 6.3 STIG v2r6Unix

IDENTIFICATION AND AUTHENTICATION

JBOS-AS-000715 - JBoss must be configured to generate log records when concurrent logons from different workstations occur to the application server management interface.DISA JBoss Enterprise Application Platform 6.3 STIG v2r6Unix

AUDIT AND ACCOUNTABILITY

MADB-10-012100 - MariaDB must implement NIST FIPS 140-2 validated cryptographic modules to provision digital signatures.DISA MariaDB Enterprise 10.x v2r4 DBMySQLDB

SYSTEM AND COMMUNICATIONS PROTECTION

MADB-10-012200 - MariaDB must implement NIST FIPS 140-2 validated cryptographic modules to generate and validate cryptographic hashes.DISA MariaDB Enterprise 10.x v2r4 OS LinuxUnix

SYSTEM AND COMMUNICATIONS PROTECTION

OL08-00-010140 - OL 8 operating systems booted with United Extensible Firmware Interface (UEFI) must require authentication upon booting into single-user mode and maintenance.DISA Oracle Linux 8 STIG v2r7Unix

ACCESS CONTROL

PGS9-00-008000 - PostgreSQL must implement NIST FIPS 140-2 or 140-3 validated cryptographic modules to generate and validate cryptographic hashes.DISA STIG PostgreSQL 9.x on RHEL OS v2r5Unix

SYSTEM AND COMMUNICATIONS PROTECTION

PGS9-00-008200 - PostgreSQL must implement NIST FIPS 140-2 or 140-3 validated cryptographic modules to protect unclassified information requiring confidentiality and cryptographic protection, in accordance with the data owners requirements.DISA STIG PostgreSQL 9.x on RHEL OS v2r5Unix

SYSTEM AND COMMUNICATIONS PROTECTION

PPS9-00-012700 - The EDB Postgres Advanced Server must implement NIST FIPS 140-2 or 140-3 validated cryptographic modules to provision digital signatures.EDB PostgreSQL Advanced Server OS Linux Audit v2r3Unix

SYSTEM AND COMMUNICATIONS PROTECTION

PPS9-00-012900 - The EDB Postgres Advanced Server must implement NIST FIPS 140-2 or 140-3 validated cryptographic modules to protect unclassified information requiring confidentiality and cryptographic protection, in accordance with the requirements of the data owner.EDB PostgreSQL Advanced Server OS Linux Audit v2r3Unix

SYSTEM AND COMMUNICATIONS PROTECTION

SLEM-05-611070 - SLEM 5 must employ user passwords with a maximum lifetime of 60 days.DISA SUSE Linux Enterprise Micro SLEM 5 STIG v1r3Unix

IDENTIFICATION AND AUTHENTICATION

SOL-11.1-020500 - Any X Windows host must write .Xauthority files.DISA Solaris 11 SPARC STIG v3r4Unix

CONFIGURATION MANAGEMENT

SOL-11.1-020500 - Any X Windows host must write .Xauthority files.DISA Solaris 11 X86 STIG v3r4Unix

CONFIGURATION MANAGEMENT

SOL-11.1-020530 - X displays must not be exported to the world.DISA Solaris 11 SPARC STIG v3r4Unix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

SOL-11.1-020530 - X displays must not be exported to the world.DISA Solaris 11 X86 STIG v3r4Unix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

SOL-11.1-020540 - .Xauthority or X*.hosts (or equivalent) file(s) must be used to restrict access to the X server.DISA Solaris 11 SPARC STIG v3r4Unix

CONFIGURATION MANAGEMENT

SOL-11.1-020540 - .Xauthority or X*.hosts (or equivalent) file(s) must be used to restrict access to the X server.DISA Solaris 11 X86 STIG v3r4Unix

CONFIGURATION MANAGEMENT

SOL-11.1-020550 - The .Xauthority utility must only permit access to authorized hosts.DISA Solaris 11 SPARC STIG v3r4Unix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

SOL-11.1-020550 - The .Xauthority utility must only permit access to authorized hosts.DISA Solaris 11 X86 STIG v3r4Unix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

WN12-00-000200 - Windows PowerShell must be updated to a version that supports script block logging on Windows 2012/2012 R2.DISA Windows Server 2012 and 2012 R2 DC STIG v3r7Windows

CONFIGURATION MANAGEMENT

WN12-00-000210 - PowerShell script block logging must be enabled on Windows 2012/2012 R2 - EnabledDISA Windows Server 2012 and 2012 R2 DC STIG v3r7Windows

AUDIT AND ACCOUNTABILITY

WN12-00-000210 - PowerShell script block logging must be enabled on Windows 2012/2012 R2 - EnabledDISA Windows Server 2012 and 2012 R2 MS STIG v3r7Windows

AUDIT AND ACCOUNTABILITY

WN12-00-000210 - PowerShell script block logging must be enabled on Windows 2012/2012 R2 - PatchDISA Windows Server 2012 and 2012 R2 DC STIG v3r7Windows

AUDIT AND ACCOUNTABILITY

WN12-00-000210 - PowerShell script block logging must be enabled on Windows 2012/2012 R2 - PatchDISA Windows Server 2012 and 2012 R2 MS STIG v3r7Windows

AUDIT AND ACCOUNTABILITY