Item Search

NameAudit NamePluginCategory
1.10.1 (L1) Ensure 'Allow Basic authentication for HTTP' is set to 'Disabled'CIS Microsoft Edge v3.0.0 L1Windows

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION

1.21.1 (L1) Ensure 'Specifies whether to allow websites to make requests to more-private network endpoints' is set to 'Disabled'CIS Microsoft Edge v3.0.0 L1Windows

CONFIGURATION MANAGEMENT

1.51 (L2) Ensure 'Allow users to proceed from the HTTPS warning page' is set to 'Disabled'CIS Microsoft Edge v3.0.0 L2Windows

SYSTEM AND COMMUNICATIONS PROTECTION

1.55 (L1) Ensure 'Automatically open downloaded MHT or MHTML files from the web in Internet Explorer mode' is set to 'Disabled'CIS Microsoft Edge v3.0.0 L1Windows

CONFIGURATION MANAGEMENT

1.124 (L1) Ensure 'Show the Reload in Internet Explorer mode button in the toolbar' is set to 'Disabled'CIS Microsoft Edge v3.0.0 L1Windows

CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION

2.1.2 Set 'no cdp run'CIS Cisco IOS 15 L1 v4.1.1Cisco

ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION

2.3.2 - AirWatch - Require Use Only in Mail for Sensitive Mail AccountsAirWatch - CIS Apple iOS 9 v1.0.0 L2MDM

ACCESS CONTROL

2.4.4 Ensure 'Send Exchange Customer Experience reports' is set to 'False'CIS Microsoft Exchange Server 2019 L2 Mailbox v1.0.0Windows

CONFIGURATION MANAGEMENT

3.2 Set 'Disable 'Remember password' for Internet e- mail accounts' to 'Enabled'CIS MS Office Outlook 2010 v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

3.3.1 (L1) Ensure 'Auto-update check period override' is set to any value except '0'CIS Microsoft Edge v3.0.0 L1Windows

SYSTEM AND INFORMATION INTEGRITY

4.5 Configure Solaris Auditing - active audit policiesCIS Solaris 11.2 L1 v1.1.0Unix

AUDIT AND ACCOUNTABILITY

4.5 Configure Solaris Auditing - active user default audit flagsCIS Solaris 11.2 L1 v1.1.0Unix

AUDIT AND ACCOUNTABILITY

4.5 Configure Solaris Auditing - audit condition=auditingCIS Solaris 11.2 L1 v1.1.0Unix

AUDIT AND ACCOUNTABILITY

4.5 Configure Solaris Auditing - configured audit policiesCIS Solaris 11.2 L1 v1.1.0Unix

AUDIT AND ACCOUNTABILITY

4.5 Configure Solaris Auditing - configured non-attributable audit flagsCIS Solaris 11.2 L1 v1.1.0Unix

AUDIT AND ACCOUNTABILITY

4.5 Configure Solaris Auditing - PluginCIS Solaris 11.2 L1 v1.1.0Unix

AUDIT AND ACCOUNTABILITY

6.2.2 Ensure at least one SCP Archive Site is configuredCIS Juniper OS Benchmark v2.1.0 L2Juniper

CONTINGENCY PLANNING

18.9.65.3.9.3 (L1) Ensure 'Require use of specific security layer for remote (RDP) connections' is set to 'Enabled: SSL'CIS Microsoft Windows Server 2008 R2 Member Server Level 1 v3.3.1Windows

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION

18.9.65.3.9.3 (L1) Ensure 'Require use of specific security layer for remote (RDP) connections' is set to 'Enabled: SSL'CIS Microsoft Windows Server 2008 Domain Controller Level 1 v3.3.1Windows

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION

18.9.65.3.9.3 (L1) Ensure 'Require use of specific security layer for remote (RDP) connections' is set to 'Enabled: SSL'CIS Microsoft Windows Server 2008 Member Server Level 1 v3.3.1Windows

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION

18.10.24.1 (L1) Ensure 'EMET 5.52' or higher is installedCIS Windows Server 2012 R2 DC L1 v3.0.0Windows

SYSTEM AND INFORMATION INTEGRITY

18.10.24.1 (L1) Ensure 'EMET 5.52' or higher is installedCIS Windows Server 2012 MS L1 v3.0.0Windows

SYSTEM AND INFORMATION INTEGRITY

18.10.57.3.9.3 (L1) Ensure 'Require use of specific security layer for remote (RDP) connections' is set to 'Enabled: SSL'CIS Windows Server 2012 R2 MS L1 v3.0.0Windows

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION

Catalina - Enforce FileVaultNIST macOS Catalina v1.5.0 - 800-53r5 ModerateUnix

SYSTEM AND COMMUNICATIONS PROTECTION

CIS_Palo_Alto_Firewall_9_Benchmark_v1.1.0_L1.audit from CIS Palo Alto Firewall 9 Benchmark v1.1.0CIS Palo Alto Firewall 9 v1.1.0 L1Palo_Alto
CIS_Palo_Alto_Firewall_10_Benchmark_v1.2.0_L1.audit from CIS Palo Alto Firewall 10 Benchmark v1.2.0CIS Palo Alto Firewall 10 v1.2.0 L1Palo_Alto
Control which extensions cannot be installedMSCT Edge v87 v1.0.0Windows

CONFIGURATION MANAGEMENT

Control which extensions cannot be installedMSCT edge v96 v1.0.0Windows

CONFIGURATION MANAGEMENT

DTOO104 - Outlook - Disable user name and password syntax from being used in URLsDISA STIG Office 2010 Outlook v1r14Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO260 - Message formats must be set to use SMime.DISA STIG Microsoft Outlook 2016 v2r3Windows

IDENTIFICATION AND AUTHENTICATION

EDGE-00-000027 - Web Bluetooth API must be disabled.DISA STIG Edge v2r2Windows

CONFIGURATION MANAGEMENT

EX13-MB-000035 - Exchange Circular Logging must be disabled.DISA Microsoft Exchange 2013 Mailbox Server STIG v2r3Windows

AUDIT AND ACCOUNTABILITY

EX13-MB-000260 - Exchange must not send automated replies to remote domains.DISA Microsoft Exchange 2013 Mailbox Server STIG v2r3Windows

SYSTEM AND INFORMATION INTEGRITY

EX16-MB-000090 - Exchange Message Tracking Logging must be enabled.DISA Microsoft Exchange 2016 Mailbox Server STIG v2r6Windows

AUDIT AND ACCOUNTABILITY

EX16-MB-000270 - Exchange Mailboxes must be retained until backups are complete.DISA Microsoft Exchange 2016 Mailbox Server STIG v2r6Windows

SYSTEM AND COMMUNICATIONS PROTECTION

EX16-MB-000340 - Exchange Mailbox Stores must mount at startup.DISA Microsoft Exchange 2016 Mailbox Server STIG v2r6Windows

SYSTEM AND COMMUNICATIONS PROTECTION

EX19-MB-000041 - Exchange message tracking logging must be enabled.DISA Microsoft Exchange 2019 Mailbox Server STIG v2r2Windows

AUDIT AND ACCOUNTABILITY

EX19-MB-000283 - Exchange must be configured in accordance with the security configuration settings based on DOD security configuration or implementation guidance, including STIGs, NSA configuration guides, CTOs, and DTMs.DISA Microsoft Exchange 2019 Mailbox Server STIG v2r2Windows

CONFIGURATION MANAGEMENT

HONW-09-010000 - Honeywell Mobility Edge Android Pie devices Work Profile must be configured to disable the autofill services.AirWatch - DISA Honeywell Android 9.x COBO v1r2MDM

CONFIGURATION MANAGEMENT

HONW-09-010000 - Honeywell Mobility Edge Android Pie devices Work Profile must be configured to disable the autofill services.MobileIron - DISA Honeywell Android 9.x COBO v1r2MDM

CONFIGURATION MANAGEMENT

Monterey - Enforce FileVaultNIST macOS Monterey v1.0.0 - 800-53r4 ModerateUnix

SYSTEM AND COMMUNICATIONS PROTECTION

Monterey - Enforce FileVaultNIST macOS Monterey v1.0.0 - 800-53r5 HighUnix

SYSTEM AND COMMUNICATIONS PROTECTION

Monterey - Enforce FileVaultNIST macOS Monterey v1.0.0 - 800-53r5 ModerateUnix

SYSTEM AND COMMUNICATIONS PROTECTION

OL6-00-000126 - The Reliable Datagram Sockets (RDS) protocol must be disabled unless required.DISA STIG Oracle Linux 6 v2r7Unix

CONFIGURATION MANAGEMENT

Specifies whether to allow websites to make requests to any network endpoint in an insecure manner.MSCT Edge v133 v1.0.0Windows

CONFIGURATION MANAGEMENT

Specifies whether to allow websites to make requests to any network endpoint in an insecure manner.MSCT Edge v135 v1.0.0Windows

CONFIGURATION MANAGEMENT

Specifies whether to allow websites to make requests to any network endpoint in an insecure manner.MSCT Edge v136 v1.0.0Windows

CONFIGURATION MANAGEMENT

Specifies whether to allow websites to make requests to any network endpoint in an insecure manner.MSCT Edge v132 v1.0.0Windows

CONFIGURATION MANAGEMENT

Specifies whether to allow websites to make requests to any network endpoint in an insecure manner.MSCT Edge v137 v1.0.0Windows

CONFIGURATION MANAGEMENT

WN11-00-000005 - Domain-joined systems must use Windows 11 Enterprise Edition 64-bit version.DISA Microsoft Windows 11 STIG v2r3Windows

CONFIGURATION MANAGEMENT