Item Search

NameAudit NamePluginCategory
5.007 - An approved, up-to-date, DoD antivirus program must be installed and used.DISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

5.140 - The HBSS McAfee Agent is not installed. - FrameworkServiceDISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

6.2 Ensure a secure antivirus profile is applied to all relevant security policiesCIS Palo Alto Firewall 7 Benchmark L1 v1.0.0Palo_Alto

SYSTEM AND INFORMATION INTEGRITY

20.1 (L1) Ensure 'Endpoint Protection is installed and in use'CIS Microsoft Windows 10 EMS Gateway v3.0.0 L1Windows

SYSTEM AND INFORMATION INTEGRITY

Adtran : Enable firewall syn-flood detectionTNS Adtran AOS Best Practice AuditAdtran

SYSTEM AND COMMUNICATIONS PROTECTION

CASA-FW-000300 - The Cisco ASA must be configured to generate an alert that can be forwarded to organization-defined personnel and/or the firewall administrator when denial-of-service (DoS) incidents are detected - From-addressDISA STIG Cisco ASA FW v2r1Cisco

SYSTEM AND INFORMATION INTEGRITY

CASA-FW-000300 - The Cisco ASA must be configured to generate an alert that can be forwarded to organization-defined personnel and/or the firewall administrator when denial-of-service (DoS) incidents are detected - Recipient-addressDISA STIG Cisco ASA FW v2r1Cisco

SYSTEM AND INFORMATION INTEGRITY

CASA-FW-000300 - The Cisco ASA must be configured to generate an alert that can be forwarded to organization-defined personnel and/or the firewall administrator when denial-of-service (DoS) incidents are detected - smtpDISA STIG Cisco ASA FW v2r1Cisco

SYSTEM AND INFORMATION INTEGRITY

Configure detection for potentially unwanted applicationsMSCT Windows 10 1809 v1.0.0Windows

CONFIGURATION MANAGEMENT

Configure detection for potentially unwanted applicationsMSCT Windows 10 v20H2 v1.0.0Windows

CONFIGURATION MANAGEMENT

Configure detection for potentially unwanted applicationsMSCT Windows 10 v22H2 v1.0.0Windows

CONFIGURATION MANAGEMENT

Configure detection for potentially unwanted applicationsMSCT Windows Server 1903 DC v1.19.9Windows

CONFIGURATION MANAGEMENT

Configure detection for potentially unwanted applicationsMSCT Windows Server 2025 DC v1.0.0Windows

CONFIGURATION MANAGEMENT

Configure detection for potentially unwanted applicationsMSCT MSCT Windows Server 2022 DC v1.0.0Windows

CONFIGURATION MANAGEMENT

Configure detection for potentially unwanted applicationsMSCT Windows Server 2022 v1.0.0Windows

CONFIGURATION MANAGEMENT

Configure detection for potentially unwanted applicationsMSCT Windows Server v20H2 MS v1.0.0Windows

CONFIGURATION MANAGEMENT

Configure detection for potentially unwanted applicationsMSCT Windows 10 v21H1 v1.0.0Windows

CONFIGURATION MANAGEMENT

Configure detection for potentially unwanted applicationsMSCT Windows 10 1909 v1.0.0Windows

CONFIGURATION MANAGEMENT

Configure detection for potentially unwanted applicationsMSCT Windows Server 2025 DC v2506 v1.0.0Windows

CONFIGURATION MANAGEMENT

Configure detection for potentially unwanted applicationsMSCT Windows Server 2025 MS v2506 v1.0.0Windows

CONFIGURATION MANAGEMENT

DTAM141 - McAfee VirusScan Access Protection Rules Common Standard Protection must be set to prevent modification of McAfee files and settings.DISA McAfee VirusScan 8.8 Local Client STIG v6r1Windows

CONFIGURATION MANAGEMENT

DTAM144 - McAfee VirusScan Access Protection Rules Common Standard Protection must be set to prevent termination of McAfee processes.DISA McAfee VirusScan 8.8 Local Client STIG v6r1Windows

ACCESS CONTROL

DTAM146 - McAfee VirusScan Access Protection Rules Common Standard Protection must be set to prevent hooking of McAfee processes.DISA McAfee VirusScan 8.8 Local Client STIG v6r1Windows

SYSTEM AND INFORMATION INTEGRITY

DTBI715-IE11 - Crash Detection management must be enforced.DISA STIG IE 11 v2r5Windows

CONFIGURATION MANAGEMENT

FNFG-FW-000090 - The FortiGate firewall must fail to a secure state if the firewall filtering functions fail unexpectedly - av-failopenDISA Fortigate Firewall STIG v1r3FortiGate

SYSTEM AND COMMUNICATIONS PROTECTION

FNFG-FW-000090 - The FortiGate firewall must fail to a secure state if the firewall filtering functions fail unexpectedly - av-failopen-sessionDISA Fortigate Firewall STIG v1r3FortiGate

SYSTEM AND COMMUNICATIONS PROTECTION

FNFG-FW-000090 - The FortiGate firewall must fail to a secure state if the firewall filtering functions fail unexpectedly - fail-openDISA Fortigate Firewall STIG v1r3FortiGate

SYSTEM AND COMMUNICATIONS PROTECTION

SonicWALL - Detection Prevention - Stealth ModeTNS SonicWALL v5.9SonicWALL
SonicWALL - Security Services - Gateway AV - ActivatedTNS SonicWALL v5.9SonicWALL

SYSTEM AND INFORMATION INTEGRITY

SonicWALL - Security Services - Gateway AV - EnabledTNS SonicWALL v5.9SonicWALL

SYSTEM AND INFORMATION INTEGRITY

SonicWALL - Security Services - Gateway AV - Signature TimestampTNS SonicWALL v5.9SonicWALL

AUDIT AND ACCOUNTABILITY

SYMP-AG-000600 - Symantec ProxySG providing content filtering must be configured to integrate with a system-wide intrusion detection system.DISA Symantec ProxySG Benchmark ALG v1r3BlueCoat

SYSTEM AND INFORMATION INTEGRITY

Turn off Crash DetectionMSCT Windows 10 v21H1 v1.0.0Windows

CONFIGURATION MANAGEMENT

Turn off Crash DetectionMSCT Windows Server 1903 DC v1.19.9Windows

CONFIGURATION MANAGEMENT

Turn off Crash DetectionMSCT Windows Server v1909 DC v1.0.0Windows

CONFIGURATION MANAGEMENT

Turn off Crash DetectionMSCT Windows 10 v1507 v1.0.0Windows

CONFIGURATION MANAGEMENT

Turn off Crash DetectionMSCT Windows 10 1803 v1.0.0Windows

CONFIGURATION MANAGEMENT

Turn off Crash DetectionMSCT Windows Server v1909 MS v1.0.0Windows

CONFIGURATION MANAGEMENT

Turn off Crash DetectionMSCT Windows Server v20H2 MS v1.0.0Windows

CONFIGURATION MANAGEMENT

Turn off Crash DetectionMSCT Windows 10 v20H2 v1.0.0Windows

CONFIGURATION MANAGEMENT

Turn off Crash DetectionMSCT Windows 11 v24H2 v1.0.0Windows

CONFIGURATION MANAGEMENT

Turn off Crash DetectionMSCT Windows Server 2025 DC v1.0.0Windows

CONFIGURATION MANAGEMENT

Turn off Crash DetectionMSCT Windows Server 2025 DC v2506 v1.0.0Windows

CONFIGURATION MANAGEMENT

WNDF-AV-000003 - Microsoft Defender AV must be configured to automatically take action on all detected tasks.DISA STIG Microsoft Defender Antivirus v2r4Windows

SYSTEM AND INFORMATION INTEGRITY

WNDF-AV-000016 - Microsoft Defender AV must be configured to not allow override of behavior monitoring.DISA STIG Microsoft Defender Antivirus v2r4Windows

SYSTEM AND COMMUNICATIONS PROTECTION

WNDF-AV-000019 - Microsoft Defender AV must be configured to monitor for file and program activity.DISA STIG Microsoft Defender Antivirus v2r4Windows

SYSTEM AND INFORMATION INTEGRITY

WNDF-AV-000021 - Microsoft Defender AV must be configured to always enable real-time protection.DISA STIG Microsoft Defender Antivirus v2r4Windows

SYSTEM AND INFORMATION INTEGRITY

WNDF-AV-000026 - Microsoft Defender AV must be configured to perform a weekly scheduled scan.DISA STIG Microsoft Defender Antivirus v2r4Windows

SYSTEM AND INFORMATION INTEGRITY

WNDF-AV-000034 - Microsoft Defender AV must be configured block Office applications from creating executable content.DISA STIG Microsoft Defender Antivirus v2r4Windows

SYSTEM AND COMMUNICATIONS PROTECTION

WNDF-AV-000037 - Microsoft Defender AV must be configured to block execution of potentially obfuscated scripts.DISA STIG Microsoft Defender Antivirus v2r4Windows

SYSTEM AND COMMUNICATIONS PROTECTION