Item Search

NameAudit NamePluginCategory
1.2 VCST-80-000005CIS VMware vSphere 8.0 vCenter Appliance Secure Token Service STS STIG v1.0.0 CAT IIUnix

ACCESS CONTROL

1.4.6 Ensure version 7.2 or newer booted with UEFI have a unique name for the grub superusers accountCIS Amazon Linux 2 STIG v2.0.1 STIGUnix

ACCESS CONTROL

1.19 VCPF-80-000129CIS VMware vSphere 8.0 vCenter Appliance Perfcharts STIG v1.0.0 CAT IIUnix

ACCESS CONTROL

1.179 WN22-DC-000340CIS Microsoft Windows Server 2022 STIG v3.0.0 DC CAT IIWindows

ACCESS CONTROL

1.181 WN22-DC-000360CIS Microsoft Windows Server 2022 STIG v3.0.0 DC CAT IIWindows

ACCESS CONTROL

1.182 WN22-DC-000370CIS Microsoft Windows Server 2022 STIG v3.0.0 DC CAT IIWindows

ACCESS CONTROL

1.184 WN16-DC-000400CIS Microsoft Windows Server 2016 STIG v4.0.0 DC CAT IIWindows

ACCESS CONTROL

1.199 WN16-MS-000390CIS Microsoft Windows Server 2016 STIG v4.0.0 MS CAT IIWindows

ACCESS CONTROL

1.201 WN22-MS-000110CIS Microsoft Windows Server 2022 STIG v3.0.0 MS CAT IIWindows

ACCESS CONTROL

1.254 WN16-UR-000050CIS Microsoft Windows Server 2016 STIG v4.0.0 MS CAT IIWindows

ACCESS CONTROL

ALMA-09-006180 - AlmaLinux OS 9 must require authentication to access emergency mode.DISA Cloud Linux AlmaLinux OS 9 STIG v1r7Unix

ACCESS CONTROL

APPL-26-002001 - The macOS system must disable Server Message Block (SMB) sharing.DISA Apple macOS 26 Tahoe STIG v1r3Unix

ACCESS CONTROL

IBMW-LS-000050 - Users in the REST API admin role must be authorized.DISA IBM WebSphere Liberty Server STIG v2r2Unix

ACCESS CONTROL

OL08-00-010150 - OL 8 operating systems booted with a BIOS must require authentication upon booting into single-user and maintenance modes.DISA Oracle Linux 8 STIG v2r9Unix

ACCESS CONTROL

OL08-00-010151 - OL 8 operating systems must require authentication upon booting into rescue mode.DISA Oracle Linux 8 STIG v2r9Unix

ACCESS CONTROL

OL09-00-000030 - OL 9 must require authentication to access single-user mode.DISA Oracle Linux 9 STIG v1r6Unix

ACCESS CONTROL

RHEL-08-010149 - RHEL 8 operating systems booted with a BIOS must require a unique superusers name upon booting into single-user and maintenance modes.DISA Red Hat Enterprise Linux 8 STIG v2r8Unix

ACCESS CONTROL

RHEL-08-010151 - RHEL 8 operating systems must require authentication upon booting into rescue mode.DISA Red Hat Enterprise Linux 8 STIG v2r8Unix

ACCESS CONTROL

RHEL-08-010152 - RHEL 8 operating systems must require authentication upon booting into emergency mode.DISA Red Hat Enterprise Linux 8 STIG v2r8Unix

ACCESS CONTROL

RHEL-09-212020 - RHEL 9 must require a unique superusers name upon booting into single-user and maintenance modes.DISA Red Hat Enterprise Linux 9 STIG v2r9Unix

ACCESS CONTROL

RHEL-09-611195 - RHEL 9 must require authentication to access emergency mode.DISA Red Hat Enterprise Linux 9 STIG v2r9Unix

ACCESS CONTROL

RHEL-10-400025 - RHEL 10 must be configured so that the "/etc/gshadow" file is group-owned by "root".DISA Red Hat Enterprise Linux 10 STIG v1r2Unix

ACCESS CONTROL

RHEL-10-400035 - RHEL 10 must be configured so that the "/etc/gshadow-" file is group-owned by "root".DISA Red Hat Enterprise Linux 10 STIG v1r2Unix

ACCESS CONTROL

RHEL-10-400045 - RHEL 10 must be configured so that the "/etc/passwd" file is group-owned by "root".DISA Red Hat Enterprise Linux 10 STIG v1r2Unix

ACCESS CONTROL

RHEL-10-400145 - RHEL 10 must be configured so that all system device files are correctly labeled to prevent unauthorized modification.DISA Red Hat Enterprise Linux 10 STIG v1r2Unix

ACCESS CONTROL

RHEL-10-400150 - RHEL 10 must be configured so that the Secure Shell (SSH) server configuration file is group-owned by "root".DISA Red Hat Enterprise Linux 10 STIG v1r2Unix

ACCESS CONTROL

RHEL-10-400240 - RHEL 10 must enforce mode "0750" or less permissive for local interactive user home directories.DISA Red Hat Enterprise Linux 10 STIG v1r2Unix

ACCESS CONTROL

RHEL-10-400315 - RHEL 10 must define default permissions for the bash shell.DISA Red Hat Enterprise Linux 10 STIG v1r2Unix

ACCESS CONTROL

RHEL-10-400330 - RHEL 10 must define default permissions for the system default profile.DISA Red Hat Enterprise Linux 10 STIG v1r2Unix

ACCESS CONTROL

RHEL-10-400340 - RHEL 10 must enforce mode "0600" or less permissive for Secure Shell (SSH) private host key files.DISA Red Hat Enterprise Linux 10 STIG v1r2Unix

ACCESS CONTROL

SLES-15-010190 - SUSE operating systems with a basic input/output system (BIOS) must require authentication upon booting into single-user and maintenance modes.DISA SUSE Linux Enterprise Server 15 STIG v2r6Unix

ACCESS CONTROL

SLES-15-010200 - SUSE operating systems with Unified Extensible Firmware Interface (UEFI) implemented must require authentication upon booting into single-user mode and maintenance.DISA SUSE Linux Enterprise Server 15 STIG v2r6Unix

ACCESS CONTROL

VCST-80-000005 - The vCenter STS service cookies must have secure flag set.DISA VMware vSphere 8.0 vCenter Appliance Secure Token Service STS STIG v2r2Unix

ACCESS CONTROL

VCST-80-000130 The vCenter STS service DefaultServlet must be set to 'readonly' for 'PUT' and 'DELETE' commands.DISA VMware vSphere 8.0 vCenter Appliance Secure Token Service (STS) STIG v2r1Unix

ACCESS CONTROL

VCUI-80-000130 The vCenter UI service DefaultServlet must be set to 'readonly' for 'PUT' and 'DELETE' commands.DISA VMware vSphere 8.0 vCenter Appliance User Interface (UI) STIG v2r1Unix

ACCESS CONTROL

WN11-UR-000025 - The 'Allow log on locally' user right must only be assigned to the Administrators and Users groups.DISA Microsoft Windows 11 STIG v2r9Windows

ACCESS CONTROL

WN11-UR-000075 - The 'Deny log on as a batch job' user right on domain-joined workstations must be configured to prevent access from highly privileged domain accounts.DISA Microsoft Windows 11 STIG v2r9Windows

ACCESS CONTROL

WN11-UR-000085 - The 'Deny log on locally' user right on workstations must be configured to prevent access from highly privileged domain accounts on domain systems and unauthenticated access on all systems.DISA Microsoft Windows 11 STIG v2r9Windows

ACCESS CONTROL

WN22-DC-000370 - Windows Server 2022 Deny access to this computer from the network user right on domain controllers must be configured to prevent unauthenticated access.DISA Microsoft Windows Server 2022 STIG v2r8Windows

ACCESS CONTROL

WN22-DC-000370 - Windows Server 2022 Deny access to this computer from the network user right on domain controllers must be configured to prevent unauthenticated access.DISA Microsoft Windows Server 2022 STIG v2r10Windows

ACCESS CONTROL

WN22-DC-000390 - Windows Server 2022 Deny log on as a service user right must be configured to include no accounts or groups (blank) on domain controllers.DISA Microsoft Windows Server 2022 STIG v2r8Windows

ACCESS CONTROL

WN22-MS-000080 - Windows Server 2022 Deny access to this computer from the network user right on domain-joined member servers must be configured to prevent access from highly privileged domain accounts and local accounts and from unauthenticated access on all systems.DISA Microsoft Windows Server 2022 STIG v2r8Windows

ACCESS CONTROL

WN25-00-000180 - Windows Server 2025 nonadministrative accounts or groups must only have print permissions on printer shares.DISA Microsoft Windows Server 2025 STIG v1r1Windows

ACCESS CONTROL

WN25-CC-000530 - Windows Server 2025 must have PowerShell Transcription enabled.DISA Microsoft Windows Server 2025 STIG v1r3Windows

ACCESS CONTROL

WN25-DC-000390 - The Windows Server 2025 'Deny log on as a service' user right must be configured to include no accounts or groups (blank) on domain controllers.DISA Microsoft Windows Server 2025 STIG v1r1Windows

ACCESS CONTROL

WN25-DC-000390 - The Windows Server 2025 'Deny log on as a service' user right must be configured to include no accounts or groups (blank) on domain controllers.DISA Microsoft Windows Server 2025 STIG v1r3Windows

ACCESS CONTROL

WN25-DC-000400 - The Windows Server 2025 'Deny log on locally' user right on domain controllers must be configured to prevent unauthenticated access.DISA Microsoft Windows Server 2025 STIG v1r3Windows

ACCESS CONTROL

WN25-DC-000406 - Windows Server 2025 must be configured for name-based strong mappings for certificates.DISA Microsoft Windows Server 2025 STIG v1r1Windows

ACCESS CONTROL

WN25-DC-000406 - Windows Server 2025 must be configured for name-based strong mappings for certificates.DISA Microsoft Windows Server 2025 STIG v1r3Windows

ACCESS CONTROL

WN25-MS-000080 - The Windows Server 2025 'Deny access to this computer from the network' user right on domain-joined member servers must be configured to prevent access from highly privileged domain accounts and local accounts and from unauthenticated access on all systems.DISA Microsoft Windows Server 2025 STIG v1r3Windows

ACCESS CONTROL