Item Search

NameAudit NamePluginCategory
2.3.7.2 (L1) Configure 'Interactive logon: Message text for users attempting to log on'CIS Azure Compute Microsoft Windows Server 2019 v1.0.0 L1 DCWindows

ACCESS CONTROL

2.3.7.3 (L1) Configure 'Interactive logon: Message text for users attempting to log on'CIS Microsoft Windows Server 2008 Member Server Level 1 v3.3.1Windows

ACCESS CONTROL

2.3.7.4 (L1) Configure 'Interactive logon: Message text for users attempting to log on'CIS Windows Server 2012 R2 MS L1 v3.0.0Windows

ACCESS CONTROL

2.3.7.4 (L1) Configure 'Interactive logon: Message text for users attempting to log on'CIS Microsoft Windows Server 2016 v4.0.0 L1 MSWindows

ACCESS CONTROL

2.3.7.4 (L1) Configure 'Interactive logon: Message text for users attempting to log on'CIS Microsoft Windows Server 2019 v4.0.0 L1 DCWindows

ACCESS CONTROL

2.3.7.4 Configure 'Interactive logon: Message text for users attempting to log on'CIS Microsoft Windows 11 Enterprise v5.0.1 L1 BLWindows

ACCESS CONTROL

2.3.7.4 Configure 'Interactive logon: Message text for users attempting to log on'CIS Microsoft Windows Server 2022 Stand-alone v2.0.0 L1 MSWindows

ACCESS CONTROL

2.3.7.5 (L1) Configure 'Interactive logon: Message text for users attempting to log on'CIS Microsoft Windows 10 Enterprise v4.0.0 L1 BL NGWindows

ACCESS CONTROL

5.5.1.2 Ensure minimum days between password changes is configured - /etc/login.defsCIS Red Hat Enterprise Linux 7 STIG v2.0.0 L1 WorkstationUnix

CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION

ARST-L2-000160 - The Arista MLS layer 2 switch must have all trunk links enabled statically.DISA STIG Arista MLS EOS 4.2x L2S v2r1Arista

CONFIGURATION MANAGEMENT

FGFW-ND-000020 - The FortiGate device must automatically audit account removal actionsDISA Fortigate Firewall NDM STIG v1r4FortiGate

ACCESS CONTROL

FGFW-ND-000030 - The FortiGate device must have only one local account to be used as the account of last resort in the event the authentication server is unavailable.DISA Fortigate Firewall NDM STIG v1r4FortiGate

ACCESS CONTROL

FGFW-ND-000065 - The FortiGate device must generate audit records when successful/unsuccessful attempts to modify administrator privileges occurDISA Fortigate Firewall NDM STIG v1r4FortiGate

AUDIT AND ACCOUNTABILITY

FGFW-ND-000075 - The FortiGate device must generate audit records when successful/unsuccessful logon attempts occurDISA Fortigate Firewall NDM STIG v1r4FortiGate

AUDIT AND ACCOUNTABILITY

FGFW-ND-000155 - The FortiGate device must limit privileges to change the software resident within software libraries.DISA Fortigate Firewall NDM STIG v1r4FortiGate

CONFIGURATION MANAGEMENT

GOOG-12-006000 - Google Android 12 must be configured to enforce a minimum password length of six characters.AirWatch - DISA Google Android 12 COPE v1r2MDM

IDENTIFICATION AND AUTHENTICATION

GOOG-13-006000 - Google Android 13 must be configured to enforce a minimum password length of six characters.MobileIron - DISA Google Android 13 COPE STIG v2r3MDM

IDENTIFICATION AND AUTHENTICATION

GOOG-14-006000 - Google Android 14 must be configured to enforce a minimum password length of six characters.AirWatch - DISA Google Android 14 COPE STIG v2r3MDM

IDENTIFICATION AND AUTHENTICATION

GOOG-15-006000 - Google Android 15 must be configured to enforce a minimum password length of six characters.AirWatch - DISA Google Android 15 COBO STIG v1r3MDM

IDENTIFICATION AND AUTHENTICATION

OL09-00-002422 - OL 9 must implement nonexecutable data to protect its memory from unauthorized code execution.DISA Oracle Linux 9 STIG v1r4Unix

SYSTEM AND INFORMATION INTEGRITY

OL09-00-002425 - OL 9 must be configured to prevent unrestricted mail relaying.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002428 - OL 9 must prevent the loading of a new kernel for later execution.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002504 - OL 9 system commands must be group-owned by root or a system account.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002515 - OL 9 local interactive user home directories must have mode 0750 or less permissive.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002516 - OL 9 world-writable directories must be owned by root, sys, bin, or an application user.DISA Oracle Linux 9 STIG v1r4Unix

SYSTEM AND COMMUNICATIONS PROTECTION

OL09-00-002520 - OL 9 library directories must be group-owned by root or a system account.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002531 - OL 9 /boot/grub2/grub.cfg file must be owned by root.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002534 - OL 9 /etc/group file must be owned by root.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002540 - OL 9 /etc/gshadow file must be owned by root.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002541 - OL 9 /etc/gshadow- file must be owned by root.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002553 - OL 9 /etc/shadow- file must be owned by root.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002560 - OL 9 /var/log directory must be group-owned by root.DISA Oracle Linux 9 STIG v1r4Unix

SYSTEM AND INFORMATION INTEGRITY

OL09-00-002563 - OL 9 /var/log/messages file must be group-owned by root.DISA Oracle Linux 9 STIG v1r4Unix

SYSTEM AND INFORMATION INTEGRITY

OL09-00-002581 - OL 9 cron configuration files directory must be group-owned by root.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-002584 - OL 9 must audit any script or executable called by cron as root or by any privileged user.DISA Oracle Linux 9 STIG v1r4Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

OL09-00-003000 - OL 9 must be configured so that the root account is the only account having unrestricted access to the system.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-003005 - OL 9 interactive users must have a primary group that exists.DISA Oracle Linux 9 STIG v1r4Unix

IDENTIFICATION AND AUTHENTICATION

OL09-00-003021 - OL 9 must automatically lock the root account until the root account is released by an administrator when three unsuccessful logon attempts occur during a 15-minute time period.DISA Oracle Linux 9 STIG v1r4Unix

ACCESS CONTROL

OL09-00-003022 - OL 9 must log username information when unsuccessful logon attempts occur.DISA Oracle Linux 9 STIG v1r4Unix

ACCESS CONTROL

OL09-00-003030 - OL 9 must automatically expire temporary accounts within 72 hours.DISA Oracle Linux 9 STIG v1r4Unix

ACCESS CONTROL

OL09-00-003065 - OL 9 must disable account identifiers (individuals, groups, roles, and devices) after 35 days of inactivity.DISA Oracle Linux 9 STIG v1r4Unix

ACCESS CONTROL

OL09-00-003070 - OL 9 must enforce a delay of at least four seconds between logon prompts following a failed logon attempt.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-005020 - OL 9 must encrypt the transfer of audit records offloaded onto a different system or media from the system being audited via rsyslog.DISA Oracle Linux 9 STIG v1r4Unix

AUDIT AND ACCOUNTABILITY

OL09-00-005025 - OL 9 must encrypt via the gtls driver the transfer of audit records offloaded onto a different system or media from the system being audited via rsyslog.DISA Oracle Linux 9 STIG v1r4Unix

AUDIT AND ACCOUNTABILITY

OL09-00-006003 - OL 9 systems using Domain Name Servers (DNS) resolution must have at least two name servers configured.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-006025 - OL 9 must prevent IPv4 Internet Control Message Protocol (ICMP) redirect messages from being accepted.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-006032 - OL 9 must not send Internet Control Message Protocol (ICMP) redirects.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-006033 - OL 9 must not allow interfaces to perform Internet Control Message Protocol (ICMP) redirects by default.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-006046 - OL 9 must not forward IPv6 source-routed packets by default.DISA Oracle Linux 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

OL09-00-006050 - OL 9 must be configured to use TCP syncookies.DISA Oracle Linux 9 STIG v1r4Unix

SYSTEM AND COMMUNICATIONS PROTECTION