Item Search

NameAudit NamePluginCategory
1.5.1 Ensure fs.protected_hardlinks is configuredCIS Ubuntu Linux 24.04 LTS v2.0.0 L1 WorkstationUnix

ACCESS CONTROL

1.5.2 Ensure fs.protected_symlinks is configuredCIS Debian Linux 12 v2.0.0 L2 ServerUnix

ACCESS CONTROL

1.5.2 Ensure fs.protected_symlinks is configuredCIS Ubuntu Linux 24.04 LTS v2.0.0 L2 ServerUnix

ACCESS CONTROL

1.5.2 Ensure fs.protected_symlinks is configuredCIS SUSE Linux Enterprise 16 v1.0.0 L2 WorkstationUnix

ACCESS CONTROL

1.5.3 Ensure fs.protected_symlinks is configuredCIS Amazon Linux 2 v4.0.0 L1 ServerUnix

ACCESS CONTROL

1.25 RHEL-09-213030CIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT IIUnix

ACCESS CONTROL

1.274 RHEL-10-600500CIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT IIUnix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

1.379 RHEL-10-701080CIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT IIUnix

ACCESS CONTROL

AIX7-00-003020 - AIX must use Trusted Execution (TE) Check policy.DISA IBM AIX 7.x STIG v3r3Unix

ACCESS CONTROL

GEN000252 - The time synchronization configuration file (such as /etc/ntp.conf) must have mode 0640 or less permissive.DISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

GEN001140 - System files and directories must not have uneven access permissions - /sbin/*DISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

GEN001180 - All network services daemon files must have mode 0755 or less permissive - httpdDISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN001280 - Manual page files must have mode 0655 or less permissive - /usr/sfw/man/*DISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN001340 - NIS/NIS+/yp files must be group-owned by root, sys, or bin - /var/yp/*DISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN001380 - The /etc/passwd file must have mode 0644 or less permissive.DISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN001400 - The /etc/shadow (or equivalent) file must be owned by root.DISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN002320 - Audio devices must have mode 0660 or less permissive - /dev/audio*DISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN003200 - The cron.deny file must have mode 0600 or less permissive.DISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN003400 - The 'at' directory must have mode 0755 or less permissive - at directory must have mode 0755 or less permissive.DISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN003440 - 'At' jobs must not set the umask to a value less restrictive than 077 - At jobs must not set the umask to a value less restrictive than 077.DISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN003740 - The inetd.conf file must have mode 0440 or less permissive.DISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN003780 - The services file must have mode 0444 or less permissive.DISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN003920 - The hosts.lpd (or equivalent) file must be owned by root - /etc/apache/httpd-standalone-ipp.confDISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN003920 - The hosts.lpd (or equivalent) file must be owned by root - SMB_CONFDISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN003940 - The hosts.lpd (or equivalent) must have mode 0644 or less permissive - httpd-standalone-ipp.confDISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

GEN003940 - The hosts.lpd (or equivalent) must have mode 0644 or less permissive - SMB_CONFDISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN004900 - The ftpusers file must contain account names not allowed to use FTP.DISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

GEN004920 - The ftpusers file must be owned by root.DISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN004920 - The ftpusers file must be owned by root.DISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

GEN004940 - The ftpusers file must have mode 0640 or less permissive.DISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN005320 - The snmpd.conf file must have mode 0600 or less permissive - /etc/sma/snmp/snmpd.confDISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

GEN005320 - The snmpd.conf file must have mode 0600 or less permissive - /etc/snmp/conf/snmpd.confDISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN005320 - The snmpd.conf file must have mode 0600 or less permissive - /var/sma_snmp/snmpd.confDISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

GEN005340 - Management Information Base (MIB) files must have mode 0640 or less permissive.DISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

GEN006140 - The smb.conf file must have mode 0644 or less permissive.DISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN006260 - The /etc/news/hosts.nntp (or equivalent) must have mode 0600 or less permissive.DISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

GEN006280 - The /etc/news/hosts.nntp.nolimit (or equivalent) must have mode 0600 or less permissive.DISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

GEN006320 - The /etc/news/passwd.nntp file (or equivalent) must have mode 0600 or less permissive.DISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

GEN006320 - The /etc/news/passwd.nntp file (or equivalent) must have mode 0600 or less permissive.DISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

MD4X-00-001200 - MongoDB must enforce discretionary access control policies, as defined by the data owner, over defined subjects and objects.DISA STIG MongoDB Enterprise Advanced 4.x v1r4 DBMongoDB

ACCESS CONTROL

OL07-00-020022 - The Oracle Linux operating system must not allow privileged accounts to utilize SSH.DISA Oracle Linux 7 STIG v3r5Unix

ACCESS CONTROL

OL07-00-020220 - The Oracle Linux operating system must enable the SELinux targeted policy.DISA Oracle Linux 7 STIG v3r5Unix

ACCESS CONTROL, SYSTEM AND INFORMATION INTEGRITY

RHEL-07-020022 - The Red Hat Enterprise Linux operating system must not allow privileged accounts to utilize SSH.DISA Red Hat Enterprise Linux 7 STIG v3r15Unix

ACCESS CONTROL

RHEL-09-213035 - RHEL 9 must enable kernel parameters to enforce discretionary access (DAC) control on symlinks.DISA Red Hat Enterprise Linux 9 STIG v2r9Unix

ACCESS CONTROL

RHEL-10-600500 - RHEL 10 must restrict the use of the "su" command.DISA Red Hat Enterprise Linux 10 STIG v1r2Unix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

SLES-12-010690 - All SUSE operating system files and directories must have a valid owner.DISA SLES 12 STIG v3r5Unix

ACCESS CONTROL

SLES-12-010700 - All SUSE operating system files and directories must have a valid group owner.DISA SLES 12 STIG v3r5Unix

ACCESS CONTROL

WN12-GE-000006 - Permissions for system drive root directory (usually C:\) must conform to minimum requirements.DISA Windows Server 2012 and 2012 R2 DC STIG v3r7Windows

ACCESS CONTROL

WN12-GE-000007 - Permissions for program file directories must conform to minimum requirementsDISA Windows Server 2012 and 2012 R2 MS STIG v3r7Windows

ACCESS CONTROL

WN16-00-000180 - Permissions for the Windows installation directory must conform to minimum requirements.DISA Microsoft Windows Server 2016 STIG v2r10Windows

ACCESS CONTROL