Item Search

NameAudit NamePluginCategory
DISA_STIG_Crunchy_Data_PostgreSQL_v3r1_OS_Linux.audit from DISA Crunchy Data PostgreSQL v3r1 STIGDISA STIG Crunchy Data PostgreSQL OS v3r1Unix
DISA_STIG_Oracle_Database_11.2g_v2r5_OS_Linux.audit from DISA Oracle Database 11.2g v2r5 STIGDISA STIG Oracle 11.2g v2r5 LinuxUnix
DISA_STIG_Oracle_Database_12c_v3r5_Database.audit from DISA Oracle Database 12c v3r5 STIGDISA Oracle Database 12c STIG v3r5 OracleDBOracleDB
DISA_STIG_Oracle_Database_19c_v1r5_Unix.audit from DISA Oracle Database 19c STIG v1r5DISA Oracle Database 19c STIG v1r5 UnixUnix
SLES-12-010580 - The SUSE operating system must disable the USB mass storage kernel module.DISA SLES 12 STIG v3r5Unix

IDENTIFICATION AND AUTHENTICATION

SLES-12-010600 - The SUSE operating system Apparmor tool must be configured to control whitelisted applications and user home directory access control.DISA SLES 12 STIG v3r5Unix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

SLES-12-010611 - The SUSE operating system must disable the x86 Ctrl-Alt-Delete key sequence for Graphical User Interfaces.DISA SLES 12 STIG v3r5Unix

CONFIGURATION MANAGEMENT

SLES-12-010750 - All SUSE operating system local interactive user home directories must be group-owned by the home directory owners primary group.DISA SLES 12 STIG v3r5Unix

CONFIGURATION MANAGEMENT

SLES-12-010780 - All SUSE operating system local initialization files must not execute world-writable programs.DISA SLES 12 STIG v3r5Unix

CONFIGURATION MANAGEMENT

SLES-12-010800 - SUSE operating system file systems that are used with removable media must be mounted to prevent files with the setuid and setgid bit set from being executed.DISA SLES 12 STIG v3r5Unix

CONFIGURATION MANAGEMENT

SLES-12-010830 - All SUSE operating system world-writable directories must be group-owned by root, sys, bin, or an application group.DISA SLES 12 STIG v3r5Unix

CONFIGURATION MANAGEMENT

SLES-12-010870 - The SUSE operating system must use a separate file system for the system audit data path.DISA SLES 12 STIG v3r5Unix

CONFIGURATION MANAGEMENT

SLES-12-010874 - The SUSE operating system library directories must be owned by root.DISA SLES 12 STIG v3r5Unix

CONFIGURATION MANAGEMENT

SLES-12-010876 - The SUSE operating system library directories must be group-owned by root.DISA SLES 12 STIG v3r5Unix

CONFIGURATION MANAGEMENT

SLES-12-010877 - The SUSE operating system must have system commands set to a mode of 755 or less permissive.DISA SLES 12 STIG v3r5Unix

CONFIGURATION MANAGEMENT

SLES-12-010879 - The SUSE operating system must have system commands owned by root.DISA SLES 12 STIG v3r5Unix

CONFIGURATION MANAGEMENT

SLES-12-010910 - The SUSE operating system must be configured to not overwrite Pluggable Authentication Modules (PAM) configuration on package changes.DISA SLES 12 STIG v3r5Unix

CONFIGURATION MANAGEMENT

SLES-12-020010 - SUSE operating system audit records must contain information to establish what type of events occurred, the source of events, where events occurred, and the outcome of events.DISA SLES 12 STIG v3r5Unix

AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT, MAINTENANCE

SLES-12-020030 - The SUSE operating system auditd service must notify the System Administrator (SA) and Information System Security Officer (ISSO) immediately when audit storage capacity is 75 percent full.DISA SLES 12 STIG v3r5Unix

AUDIT AND ACCOUNTABILITY

SLES-12-020060 - The SUSE operating system audit system must take appropriate action when the audit storage volume is full.DISA SLES 12 STIG v3r5Unix

AUDIT AND ACCOUNTABILITY

SLES-12-020090 - Audispd must off-load audit records onto a different system or media from the SUSE operating system being audited.DISA SLES 12 STIG v3r5Unix

AUDIT AND ACCOUNTABILITY

SLES-12-020120 - The SUSE operating system must protect audit rules from unauthorized modification.DISA SLES 12 STIG v3r5Unix

AUDIT AND ACCOUNTABILITY

SLES-12-020130 - The SUSE operating system audit tools must have the proper permissions configured to protect against unauthorized access.DISA SLES 12 STIG v3r5Unix

AUDIT AND ACCOUNTABILITY

SLES-12-020240 - The SUSE operating system must generate audit records for all uses of the privileged functions.DISA SLES 12 STIG v3r5Unix

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT

SLES-12-020280 - The SUSE operating system must generate audit records for all uses of the chfn command.DISA SLES 12 STIG v3r5Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

SLES-12-020360 - The SUSE operating system must generate audit records for all uses of the kmod command.DISA SLES 12 STIG v3r5Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

SLES-12-020420 - The SUSE operating system must generate audit records for all uses of the chown, fchown, fchownat, and lchown syscalls.DISA SLES 12 STIG v3r5Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

SLES-12-020590 - The SUSE operating system must generate audit records for all account creations, modifications, disabling, and termination events that affect /etc/gshadow.DISA SLES 12 STIG v3r5Unix

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY

SLES-12-020600 - The SUSE operating system must generate audit records for all uses of the chmod command.DISA SLES 12 STIG v3r5Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

SLES-12-020630 - Successful/unsuccessful attempts to modify categories of information (e.g., classification levels) must generate audit records.DISA SLES 12 STIG v3r5Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

SLES-12-020640 - The SUSE operating system must generate audit records for all uses of the rm command.DISA SLES 12 STIG v3r5Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

SLES-12-020690 - The SUSE operating system must generate audit records for all uses of the chage command.DISA SLES 12 STIG v3r5Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

SLES-12-020700 - The SUSE operating system must generate audit records for all uses of the usermod command.DISA SLES 12 STIG v3r5Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

SLES-12-020710 - The SUSE operating system must generate audit records for all uses of the crontab command.DISA SLES 12 STIG v3r5Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

SLES-12-020740 - The SUSE operating system must generate audit records for all uses of the init_module and finit_module syscalls.DISA SLES 12 STIG v3r5Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

SLES-12-030000 - The SUSE operating system must not have the telnet-server package installed.DISA SLES 12 STIG v3r5Unix

CONFIGURATION MANAGEMENT, IDENTIFICATION AND AUTHENTICATION

SLES-12-030040 - SuSEfirewall2 must protect against or limit the effects of Denial-of-Service (DoS) attacks on the SUSE operating system by implementing rate-limiting measures on impacted network interfaces.DISA SLES 12 STIG v3r5Unix

SYSTEM AND COMMUNICATIONS PROTECTION

SLES-12-030100 - All networked SUSE operating systems must have and implement SSH to protect the confidentiality and integrity of transmitted and received information, as well as information during preparation for transmission.DISA SLES 12 STIG v3r5Unix

SYSTEM AND COMMUNICATIONS PROTECTION

SLES-12-030110 - The SUSE operating system must log SSH connection attempts and failures to the server.DISA SLES 12 STIG v3r5Unix

ACCESS CONTROL

SLES-12-030140 - The SUSE operating system must deny direct logons to the root account using remote access via SSH.DISA SLES 12 STIG v3r5Unix

IDENTIFICATION AND AUTHENTICATION

SLES-12-030150 - The SUSE operating system must not allow automatic logon via SSH.DISA SLES 12 STIG v3r5Unix

CONFIGURATION MANAGEMENT

SLES-12-030190 - The SUSE operating system SSH daemon must be configured with a timeout interval.DISA SLES 12 STIG v3r5Unix

ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION

SLES-12-030261 - The SUSE operating system SSH daemon must prevent remote hosts from connecting to the proxy display.DISA SLES 12 STIG v3r5Unix

CONFIGURATION MANAGEMENT

SLES-12-030270 - The SUSE operating system SSH server must be configured to use only FIPS-validated key exchange algorithms.DISA SLES 12 STIG v3r5Unix

ACCESS CONTROL

SLES-12-030340 - The SUSE operating system must off-load rsyslog messages for networked systems in real time and off-load standalone systems at least weekly.DISA SLES 12 STIG v3r5Unix

AUDIT AND ACCOUNTABILITY

SLES-12-030361 - The SUSE operating system must not forward Internet Protocol version 6 (IPv6) source-routed packets.DISA SLES 12 STIG v3r5Unix

CONFIGURATION MANAGEMENT

SLES-12-030362 - The SUSE operating system must not forward Internet Protocol version 6 (IPv6) source-routed packets by default.DISA SLES 12 STIG v3r5Unix

CONFIGURATION MANAGEMENT

SLES-12-030365 - The SUSE operating system must not be performing Internet Protocol version 6 (IPv6) packet forwarding by default unless the system is a router.DISA SLES 12 STIG v3r5Unix

CONFIGURATION MANAGEMENT

SLES-12-030370 - The SUSE operating system must not forward Internet Protocol version 4 (IPv4) source-routed packets by default.DISA SLES 12 STIG v3r5Unix

CONFIGURATION MANAGEMENT

SLES-12-030450 - The SUSE operating system wireless network adapters must be disabled unless approved and documented.DISA SLES 12 STIG v3r5Unix

ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION