Item Search

NameAudit NamePluginCategory
1.1.1 Ensure NGINX is installedCIS NGINX Benchmark v2.1.0 L1 LoadbalancerUnix

SYSTEM AND SERVICES ACQUISITION

1.1.1 Ensure NGINX is installedCIS NGINX Benchmark v2.1.0 L1 ProxyUnix

SYSTEM AND SERVICES ACQUISITION

1.4.1 Set 'password' for 'enable secret'CIS Cisco IOS XE 16.x v2.1.0 L1Cisco

ACCESS CONTROL

1.7.3 Ensure 'SSL AES 256 encryption' is set for HTTPS accessCIS Cisco ASA 9.x Firewall L1 v1.1.0Cisco

CONFIGURATION MANAGEMENT, MAINTENANCE

2.1.2 Ensure 'extproc' Is Not Present in 'listener.ora'CIS Oracle Server 11g R2 Unix v2.2.0Unix

CONFIGURATION MANAGEMENT

2.3.22.2 Ensure 'Block signing into Office' is set to 'Enabled: Org ID only'CIS Microsoft Office Enterprise v1.2.0 L1Windows

ACCESS CONTROL

3.4 - Login and Password Parameters - Password minimum lowercase <= 1NetApp Security Hardening Guide for ONTAP 9 v1.7.0Netapp_API
3.4 - Login and Password Parameters - Username Alphanumeric = falseNetApp Security Hardening Guide for ONTAP 9 v1.7.0Netapp_API
3.12 init.ora - 'log_archive_dest_n parameter settings'CIS v1.1.0 Oracle 11g OS Windows Level 1Windows
3.19 listener.ora - 'Verify and set permissions'CIS v1.1.0 Oracle 11g OS Windows Level 1Windows
4.1 Ensure All Default Passwords Are ChangedCIS Oracle Server 12c DB Traditional Auditing v3.0.0OracleDB

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

4.11.42.2 (L2) Ensure 'Turn off the Store application' is set to 'Enabled'CIS Microsoft Intune for Windows 11 v4.0.0 L2Windows

CONFIGURATION MANAGEMENT

4.11.42.2 (L2) Ensure 'Turn off the Store application' is set to 'Enabled'CIS Microsoft Intune for Windows 10 v4.0.0 L2Windows

CONFIGURATION MANAGEMENT

4.16 init.ora - 'o7_dictionary_accessibility = FALSE'CIS v1.1.0 Oracle 11g OS L2Unix

ACCESS CONTROL

4.16 init.ora - 'o7_dictionary_accessibility = FALSE'CIS v1.1.0 Oracle 11g OS Windows Level 2Windows

ACCESS CONTROL

4.17 spfile<sid>.ora - 'Remove the following from the spfile: dispatches= (PROTOCOL=TCP) (SERVICE=<sid>XDB)'CIS v1.1.0 Oracle 11g OS L2Unix

CONFIGURATION MANAGEMENT

5.1.1.6 Ensure 'EXECUTE' is revoked from 'PUBLIC' on 'SQL Injection Helper' PackagesCIS Oracle Server 12c DB Traditional Auditing v3.0.0OracleDB

ACCESS CONTROL

5.1.3.2 Ensure 'ALL' Is Revoked from Unauthorized 'GRANTEE' on 'DBA_%'CIS Oracle Server 19c DB Unified Auditing v1.2.0OracleDB

ACCESS CONTROL, MEDIA PROTECTION

5.3.1 Ensure 'SELECT_CATALOG_ROLE' Is Revoked from Unauthorized 'GRANTEE'CIS Oracle Server 19c DB Traditional Auditing v1.2.0OracleDB

ACCESS CONTROL, MEDIA PROTECTION

5.04 OAS - 'FIPS Compliance - sslfips_140 = TRUE'CIS v1.1.0 Oracle 11g OS L2Unix

SYSTEM AND COMMUNICATIONS PROTECTION

7.4 Create /etc/ftpusersCIS Solaris 9 v1.3Unix

ACCESS CONTROL

12.10 Oracle file locations - 'Separate for performance'CIS v1.1.0 Oracle 11g OS L1Unix
18.8.5.6 (NG) Ensure 'Turn On Virtualization Based Security: Credential Guard Configuration' is set to 'Disabled' (DC Only)CIS Azure Compute Microsoft Windows Server 2019 v1.0.0 NG DCWindows

SYSTEM AND INFORMATION INTEGRITY

18.9.5.1 (L1) Ensure 'Turn On Virtualization Based Security' is set to 'Enabled'CIS Microsoft Windows 10 EMS Gateway v3.0.0 L1Windows

SYSTEM AND INFORMATION INTEGRITY

18.9.5.1 (NG) Ensure 'Turn On Virtualization Based Security' is set to 'Enabled'CIS Microsoft Windows 10 Stand-alone v4.0.0 L1 BL NGWindows

SYSTEM AND INFORMATION INTEGRITY

18.9.5.1 (NG) Ensure 'Turn On Virtualization Based Security' is set to 'Enabled'CIS Microsoft Windows 10 Stand-alone v4.0.0 NGWindows

SYSTEM AND INFORMATION INTEGRITY

18.9.5.1 (NG) Ensure 'Turn On Virtualization Based Security' is set to 'Enabled'CIS Microsoft Windows 10 Stand-alone v4.0.0 L1 NGWindows

SYSTEM AND INFORMATION INTEGRITY

18.9.5.1 (NG) Ensure 'Turn On Virtualization Based Security' is set to 'Enabled'CIS Microsoft Windows 10 Enterprise v4.0.0 L1 NGWindows

SYSTEM AND INFORMATION INTEGRITY

18.9.5.1 (NG) Ensure 'Turn On Virtualization Based Security' is set to 'Enabled'CIS Microsoft Windows 10 Enterprise v4.0.0 NGWindows

SYSTEM AND INFORMATION INTEGRITY

18.9.5.6 (NG) Ensure 'Turn On Virtualization Based Security: Credential Guard Configuration' is set to 'Disabled' (DC Only)CIS Microsoft Windows Server 2025 v1.0.0 NG DCWindows

SYSTEM AND INFORMATION INTEGRITY

18.9.100.1 Ensure 'Turn on PowerShell Script Block Logging' is set to 'Enabled'CIS Azure Compute Microsoft Windows Server 2022 v1.0.0 L1 MSWindows

AUDIT AND ACCOUNTABILITY

18.10.66.4 (L2) Ensure 'Turn off the Store application' is set to 'Enabled'CIS Microsoft Windows 10 Enterprise v4.0.0 L2 BLWindows

CONFIGURATION MANAGEMENT

18.10.66.4 (L2) Ensure 'Turn off the Store application' is set to 'Enabled'CIS Microsoft Windows 11 Enterprise v4.0.0 L2Windows

CONFIGURATION MANAGEMENT

18.10.66.4 (L2) Ensure 'Turn off the Store application' is set to 'Enabled'CIS Microsoft Windows 11 Stand-alone v4.0.0 L2 BLWindows

CONFIGURATION MANAGEMENT

BIND-9X-001404 - On the BIND 9.x server the IP address for hidden master authoritative name servers must not appear in the name servers set in the zone database.DISA BIND 9.x STIG v2r3Unix

CONFIGURATION MANAGEMENT

DG0083-ORACLE11 - Automated notification of suspicious activity detected in the audit trail should be implemented.DISA STIG Oracle 11 Installation v9r1 WindowsWindows
DO0155-ORACLE11 - Only authorized system accounts should have the SYSTEM tablespace specified as the default tablespace - 'Tablespace not set to SYSTEM'DISA STIG Oracle 11 Instance v9r1 DatabaseOracleDB
GOOG-10-005505 - Google Android 10 must be configured to enable audit logging.MobileIron - DISA Google Android 10.x v2r1MDM

AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT

O112-C1-015400 - The DBMS, when using PKI-based authentication, must enforce authorized access to the corresponding private key.DISA STIG Oracle 11.2g v2r5 WindowsWindows

IDENTIFICATION AND AUTHENTICATION

RHEL-09-255055 - RHEL 9 SSH daemon must be configured to use system-wide crypto policies.DISA Red Hat Enterprise Linux 9 STIG v2r4Unix

ACCESS CONTROL

RHEL-09-651035 - RHEL 9 must be configured so that the file integrity tool verifies extended attributes.DISA Red Hat Enterprise Linux 9 STIG v2r4Unix

CONFIGURATION MANAGEMENT

VCWN-65-000004 - The vCenter Server for Windows must terminate management sessions after 10 minutes of inactivity.DISA STIG VMware vSphere vCenter 6.5 v2r3VMware

SYSTEM AND COMMUNICATIONS PROTECTION

WN10-AU-000083 - Windows 10 must be configured to audit Object Access - Other Object Access Events successes.DISA Microsoft Windows 10 STIG v3r4Windows

AUDIT AND ACCOUNTABILITY

WN10-AU-000084 - Windows 10 must be configured to audit Object Access - Other Object Access Events failures.DISA Microsoft Windows 10 STIG v3r4Windows

AUDIT AND ACCOUNTABILITY

WN10-CC-000052 - Windows 10 must be configured to prioritize ECC Curves with longer key lengths first.DISA Microsoft Windows 10 STIG v3r4Windows

IDENTIFICATION AND AUTHENTICATION

ZEBR-10-002800 - Zebra Android 10 must be configured to disable developer modes.AirWatch - DISA Zebra Android 10 COBO v1r2MDM

CONFIGURATION MANAGEMENT

ZEBR-10-002800 - Zebra Android 10 must be configured to disable developer modes.AirWatch - DISA Zebra Android 10 COPE v1r2MDM

CONFIGURATION MANAGEMENT

ZEBR-10-002800 - Zebra Android 10 must be configured to disable developer modes.MobileIron - DISA Zebra Android 10 COPE v1r2MDM

CONFIGURATION MANAGEMENT

ZEBR-10-005505 - Zebra Android 10 must be configured to enable audit logging.MobileIron - DISA Zebra Android 10 COBO v1r2MDM

AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT

ZEBR-10-005505 - Zebra Android 10 must be configured to enable audit logging.AirWatch - DISA Zebra Android 10 COPE v1r2MDM

AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT