Item Search

NameAudit NamePluginCategory
1.3 Secure DNS service operating platformCIS ISC BIND 9.0/9.5 v2.0.0Unix
1.4 Verify Security of Forwarding PartnersCIS ISC BIND 9.0/9.5 v2.0.0Unix
1.11 Ensure 'Unknown sources' is set to DisabledAirWatch - CIS Google Android 7 v1.0.0 L1MDM

CONFIGURATION MANAGEMENT

2.1.4.1 Ensure cloud storage is set to enabledCIS Zoom L2 v1.0.0Zoom

CONFIGURATION MANAGEMENT

2.2.1.10 Ensure 'Force Apple Watch wrist detection' is set to 'Enabled'MobileIron - CIS Apple iOS 13 and iPadOS 13 v1.0.0 End User Owned L1MDM
3.4.2 Ensure 'Require alphanumeric value' is set to 'Enabled'AirWatch - CIS Apple iPadOS 18 v1.0.0 L2 Institutionally OwnedMDM

IDENTIFICATION AND AUTHENTICATION

5.2 Protecting BackupsCIS IBM DB2 v10 v1.1.0 Database Level 1IBM_DB2DB
5.2 Protecting BackupsCIS IBM DB2 v10 v1.1.0 Database Level 2IBM_DB2DB
5.2 Protecting BackupsCIS IBM DB2 v10 v1.1.0 Linux OS Level 2Unix
5.2 Set 'Check for server certificate revocation' to 'Enabled'CIS IE 11 v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

7.1 Secure SYSADM authority - SYSADM GroupCIS IBM DB2 v10 v1.1.0 Windows OS Level 2Windows

ACCESS CONTROL

8.2 (L1) VMware Tools must have all software updates installedCIS VMware ESXi 8.0 v1.2.0 L1VMware

RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

9.1 Start and Stop DB2 InstanceCIS IBM DB2 v10 v1.1.0 Linux OS Level 2Unix
18.7.9 (L2) Ensure 'Configure Windows protected print' is set to 'Enabled'CIS Microsoft Windows Server 2025 v1.0.0 L2 DCWindows

CONFIGURATION MANAGEMENT

18.7.9 (L2) Ensure 'Configure Windows protected print' is set to 'Enabled'CIS Microsoft Windows 11 Enterprise v4.0.0 L2Windows

CONFIGURATION MANAGEMENT

AIOS-18-015100 - Apple iOS/iPadOS 18 must delete eSIM content when the device is erased.AirWatch - DISA Apple iOS/iPadOS 18 v1r1MDM

MEDIA PROTECTION

Check for server certificate revocationMSCT Windows Server v1909 DC v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

Check for server certificate revocationMSCT Windows Server v2004 DC v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

Check for server certificate revocationMSCT Windows Server 2016 MS v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

Check for server certificate revocationMSCT Windows 10 v2004 v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

Check for server certificate revocationMSCT Windows 10 1803 v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

Check for server certificate revocationMSCT Windows 10 v21H2 v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

Check for server certificate revocationMSCT Windows 10 v1507 v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

Check for server certificate revocationMSCT MSCT Windows Server 2022 DC v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

Check for server certificate revocationMSCT Windows Server 1903 MS v1.19.9Windows

IDENTIFICATION AND AUTHENTICATION

Check for server certificate revocationMSCT Windows Server 2022 v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

Check for server certificate revocationMSCT Windows Server v20H2 MS v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

Check for server certificate revocationMSCT Windows 10 1909 v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

Check for server certificate revocationMSCT Windows 10 v20H2 v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

Check for server certificate revocationMSCT Windows 10 v22H2 v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

Check for server certificate revocationMSCT Windows Server 2025 DC v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

Check for server certificate revocationMSCT Windows 11 v24H2 v1.0.0Windows

IDENTIFICATION AND AUTHENTICATION

Check for signatures on downloaded programsMSCT Windows Server 2016 MS v1.0.0Windows

CONFIGURATION MANAGEMENT

Check for signatures on downloaded programsMSCT Windows Server 2022 v1.0.0Windows

CONFIGURATION MANAGEMENT

Check for signatures on downloaded programsMSCT Windows Server 1903 MS v1.19.9Windows

CONFIGURATION MANAGEMENT

Check for signatures on downloaded programsMSCT Windows Server v1909 MS v1.0.0Windows

CONFIGURATION MANAGEMENT

GEN000520 - The root user must not own the logon session for an application requiring a continuous display.DISA STIG AIX 6.1 v1r14Unix

ACCESS CONTROL

GEN008480-ESXI5-000122 - The system must have USB Mass Storage disabled unless needed.DISA STIG VMWare ESXi Server 5 STIG v2r1VMware

CONFIGURATION MANAGEMENT

Limits print driver installation to Administrators - RestrictDriverInstallationToAdministratorsMSCT Windows Server 2025 DC v1.0.0Windows

SYSTEM AND INFORMATION INTEGRITY

Limits print driver installation to Administrators - RestrictDriverInstallationToAdministratorsMSCT Windows Server 2025 MS v1.0.0Windows

SYSTEM AND INFORMATION INTEGRITY

SQL2-00-024500 - The Service Master Key must be backed up, stored offline and off-site.DISA STIG SQL Server 2012 DB Instance Security v1r20MS_SQLDB

SYSTEM AND COMMUNICATIONS PROTECTION

SQL4-00-024500 - The Service Master Key must be backed up, stored offline and off-site.DISA STIG SQL Server 2014 Instance DB Audit v2r4MS_SQLDB

SYSTEM AND COMMUNICATIONS PROTECTION

User Authentication Security - Local Authentication - Use a strong password that complies with your organization's password policyJuniper Hardening JunOS 12 Devices ChecklistJuniper

IDENTIFICATION AND AUTHENTICATION

VCENTER-000022 - Network access to the vCenter Server system must be restricted.DISA STIG VMWare ESXi vCenter 5 STIG v2r1VMware

CONFIGURATION MANAGEMENT

VCSA-70-000285 - The vCenter Server must restrict access to cryptographic permissions.DISA STIG VMware vSphere 7.0 vCenter v1r3VMware

CONFIGURATION MANAGEMENT

VCSA-70-000291 - The vCenter Server must limit membership to the 'TrustedAdmins' Single Sign-On (SSO) group.DISA STIG VMware vSphere 7.0 vCenter v1r3VMware

CONFIGURATION MANAGEMENT

VCSA-80-000274 - The vCenter Server must not configure all port groups to virtual local area network (VLAN) values reserved by upstream physical switches.DISA VMware vSphere 8.0 vCenter STIG v2r2VMware

CONFIGURATION MANAGEMENT

VCTR-67-000020 - The vCenter Server must not configure all port groups to VLAN values reserved by upstream physical switches.DISA STIG VMware vSphere 6.7 vCenter v1r4VMware

CONFIGURATION MANAGEMENT

VCWN-65-000020 - The vCenter Server for Windows must not configure all port groups to VLAN values reserved by upstream physical switches.DISA STIG VMware vSphere vCenter 6.5 v2r3VMware

CONFIGURATION MANAGEMENT

WN12-00-000004 - Users with administrative privilege must be documented.DISA Windows Server 2012 and 2012 R2 DC STIG v3r7Windows

CONFIGURATION MANAGEMENT