Item Search

NameAudit NamePluginCategory
DTAVSEL-205 - A notification mechanism or process must be in place to notify Administrators of out of date DAT, detected malware and error codes - SMTP recipientsMcAfee Virus Scan Enterprise for Linux 1.9x/2.0x Local Client v1r6Unix

SYSTEM AND INFORMATION INTEGRITY

DTOO104 - Publisher - Disabling of user name and password syntax from being used in URLs must be enforced.DISA STIG Office 2010 Publisher v1r12Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO111 - PowerPoint - Enabling IE Bind to Object functionality must be present.DISA STIG Office 2010 PowerPoint v1r11Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO117 - Access - Saved from URL mark to assure Internet zone processing must be enforced.DISA STIG Office 2010 Access v1r11Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO123 - PowerPoint - Navigation to URL's embedded in Office products must be blocked.DISA STIG Office 2010 PowerPoint v1r11Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO123 - Publisher - Navigation to URL's embedded in Office products must be blocked.DISA STIG Office 2010 Publisher v1r12Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO124 - Access - Scripted Window Security must be enforced.DISA STIG Office 2010 Access v1r11Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO124 - Project - Scripted Window Security must be enforced.DISA STIG Office 2010 Project v1r10Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO124 - Publisher - Scripted Window Security must be enforced.DISA STIG Office 2010 Publisher v1r12Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO128 - Project - Data Execution Prevention must be enforced.DISA STIG Office 2010 Project v1r10Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO128 - Publisher - Data Execution Prevention must be enforced.DISA STIG Office 2010 Publisher v1r12Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO129 - Access - Links that invoke instances of IE from within an Office product must be blocked.DISA STIG Office 2010 Access v1r11Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO132 - Project - File Downloads must be configured for proper restrictions.DISA STIG Office 2010 Project v1r10Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO158 - InfoPath - Disabling the opening of solutions from the Internet Security Zone must be configured.DISA STIG Office 2010 InfoPath v1r12Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO159 - InfoPath - Disabling of Fully Trusted Solutions access to computers must be configured.DISA STIG Office 2010 InfoPath v1r12Windows

CONFIGURATION MANAGEMENT

DTOO164 - InfoPath - Beaconing UI shown for opened forms must be configured.DISA STIG Office 2010 InfoPath v1r12Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO201 - Office System - Connection verification of permissions must be enforced.DISA STIG Office System 2010 v1r13Windows

ACCESS CONTROL

DTOO210 - Word - Pre-release versions of file formats new to Office Products must be blocked.DISA STIG Office 2010 Word v1r12Windows

CONFIGURATION MANAGEMENT

DTOO211 - PowerPoint - ActiveX Installs must be configured for proper restriction.DISA STIG Office 2010 PowerPoint v1r11Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO211 - Publisher - ActiveX Installs must be configured for proper restriction.DISA STIG Office 2010 Publisher v1r12Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO292 - Word - Document behavior if file validation fails must be set - OpenInProtectedViewDISA STIG Office 2010 Word v1r12Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO322 - Publisher - Fatally corrupt files must be blocked from opening.DISA STIG Office 2010 Publisher v1r12Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTOO337 - Word - Word 95 binary documents and templates must be configured to edit in protected view.DISA STIG Office 2010 Word v1r12Windows

SYSTEM AND COMMUNICATIONS PROTECTION

GEN000000-AIX0090 - The /etc/netsvc.conf file must be group-owned by bin, sys, or system.DISA STIG AIX 5.3 v1r2Unix

ACCESS CONTROL

GEN000242 - The system must use at least two time sources for clock synchronization - 'at least 2 servers are configured'DISA STIG AIX 5.3 v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN001120 - The system must not permit root logins using remote access programs, such as ssh.DISA STIG AIX 5.3 v1r2Unix

IDENTIFICATION AND AUTHENTICATION

GEN001200 - All system command files must have mode 0755 or less permissive - '/sbin/*'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN001200 - All system command files must have mode 0755 or less permissive - '/usr/lbin/*'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN001210 - All system command files must not have extended ACLs - '/etc/*'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN001210 - All system command files must not have extended ACLs - '/usr/lbin/*'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN001220 - All system files, programs, and directories must be owned by a system account - '/usr/sbin/*'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN001300 - Library files must have mode 0755 or less permissive - '/lib/*'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/config FILE_Fchpriv exists'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/config PASSWORD_Check exists'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/config PROC_Privilege exists'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/config USER_Change exists'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/config USER_Reboot exists'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/config USER_Remove exists'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/config USER_SetEnv exists'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/events ACCT_Disable exists'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/events DEV_Configure exists'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/events DEV_Create exists'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/events FILE_Fchpriv exists'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/events FILE_Owner exists'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/events USER_Remove exists'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN003810 - The portmap or rpcbind service must not be running unless needed.DISA STIG AIX 5.3 v1r2Unix

ACCESS CONTROL

GEN003830 - The rlogind service must not be running.DISA STIG AIX 5.3 v1r2Unix

ACCESS CONTROL

GEN005260 - X Window System connections not required must be disabled.DISA STIG AIX 5.3 v1r2Unix

ACCESS CONTROL

GEN005306 - SNMP service must require a FIPS 140-2 approved hash algorithm as part of its authentication and integrity methodsDISA STIG AIX 5.3 v1r2Unix

ACCESS CONTROL

GEN006040 - The system must not have any peer-to-peer file-sharing application installed.DISA STIG AIX 5.3 v1r2Unix

ACCESS CONTROL