Item Search

NameAudit NamePluginCategory
1.5.1 Ensure fs.protected_hardlinks is configuredCIS Ubuntu Linux 24.04 LTS v2.0.0 L1 WorkstationUnix

ACCESS CONTROL

1.5.1 Ensure fs.protected_hardlinks is configuredCIS SUSE Linux Enterprise 16 v1.0.0 L1 WorkstationUnix

ACCESS CONTROL

1.5.2 Ensure fs.protected_symlinks is configuredCIS Debian Linux 12 v2.0.0 L2 ServerUnix

ACCESS CONTROL

1.5.2 Ensure fs.protected_symlinks is configuredCIS Ubuntu Linux 24.04 LTS v2.0.0 L2 ServerUnix

ACCESS CONTROL

1.5.2 Ensure fs.protected_symlinks is configuredCIS SUSE Linux Enterprise 16 v1.0.0 L2 WorkstationUnix

ACCESS CONTROL

1.5.2 Ensure fs.protected_symlinks is configuredCIS Debian Linux 12 v2.0.0 L2 WorkstationUnix

ACCESS CONTROL

1.5.3 Ensure fs.protected_symlinks is configuredCIS Amazon Linux 2 v4.0.0 L1 ServerUnix

ACCESS CONTROL

1.25 RHEL-09-213030CIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT IIUnix

ACCESS CONTROL

1.274 RHEL-10-600500CIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT IIUnix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

1.378 RHEL-10-701070CIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT IIUnix

ACCESS CONTROL

1.379 RHEL-10-701080CIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT IIUnix

ACCESS CONTROL

AIX7-00-003020 - AIX must use Trusted Execution (TE) Check policy.DISA IBM AIX 7.x STIG v3r3Unix

ACCESS CONTROL

GEN000252 - The time synchronization configuration file (such as /etc/ntp.conf) must have mode 0640 or less permissive.DISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

GEN001140 - System files and directories must not have uneven access permissions - /sbin/*DISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

GEN002320 - Audio devices must have mode 0660 or less permissive - /dev/audio*DISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN003200 - The cron.deny file must have mode 0600 or less permissive.DISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN003400 - The 'at' directory must have mode 0755 or less permissive - at directory must have mode 0755 or less permissive.DISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN003440 - 'At' jobs must not set the umask to a value less restrictive than 077 - At jobs must not set the umask to a value less restrictive than 077.DISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN003740 - The inetd.conf file must have mode 0440 or less permissive.DISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN003780 - The services file must have mode 0444 or less permissive.DISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN003920 - The hosts.lpd (or equivalent) file must be owned by root - /etc/apache/httpd-standalone-ipp.confDISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN003920 - The hosts.lpd (or equivalent) file must be owned by root - SMB_CONFDISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN003940 - The hosts.lpd (or equivalent) must have mode 0644 or less permissive - httpd-standalone-ipp.confDISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

GEN003940 - The hosts.lpd (or equivalent) must have mode 0644 or less permissive - SMB_CONFDISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN004900 - The ftpusers file must contain account names not allowed to use FTP.DISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

GEN004920 - The ftpusers file must be owned by root.DISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN004920 - The ftpusers file must be owned by root.DISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

GEN004940 - The ftpusers file must have mode 0640 or less permissive.DISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN005320 - The snmpd.conf file must have mode 0600 or less permissive - /etc/snmp/conf/snmpd.confDISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN006140 - The smb.conf file must have mode 0644 or less permissive.DISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN006260 - The /etc/news/hosts.nntp (or equivalent) must have mode 0600 or less permissive.DISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

GEN006280 - The /etc/news/hosts.nntp.nolimit (or equivalent) must have mode 0600 or less permissive.DISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

GEN006320 - The /etc/news/passwd.nntp file (or equivalent) must have mode 0600 or less permissive.DISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

MD4X-00-001200 - MongoDB must enforce discretionary access control policies, as defined by the data owner, over defined subjects and objects.DISA STIG MongoDB Enterprise Advanced 4.x v1r4 DBMongoDB

ACCESS CONTROL

O112-C2-003000 - The DBMS must enforce Discretionary Access Control (DAC) policy allowing users to specify and control sharing by named individuals, groups of individuals, or by both, limiting propagation of access rights and includes or excludes access to the granularity of a single user.DISA STIG Oracle 11.2g v2r5 DatabaseOracleDB

ACCESS CONTROL

O112-C2-006600 - Databases utilizing Discretionary Access Control (DAC) must enforce a policy that limits propagation of access rights.DISA STIG Oracle 11.2g v2r5 DatabaseOracleDB

ACCESS CONTROL

O121-C2-006600 - Databases utilizing Discretionary Access Control (DAC) must enforce a policy that limits propagation of access rights.DISA Oracle Database 12c STIG v3r5 OracleDBOracleDB

ACCESS CONTROL

OL07-00-020021 - The Oracle Linux operating system must confine SELinux users to roles that conform to least privilege.DISA Oracle Linux 7 STIG v3r5Unix

ACCESS CONTROL

OL07-00-020022 - The Oracle Linux operating system must not allow privileged accounts to utilize SSH.DISA Oracle Linux 7 STIG v3r5Unix

ACCESS CONTROL

OL07-00-020220 - The Oracle Linux operating system must enable the SELinux targeted policy.DISA Oracle Linux 7 STIG v3r5Unix

ACCESS CONTROL, SYSTEM AND INFORMATION INTEGRITY

RHEL-07-020022 - The Red Hat Enterprise Linux operating system must not allow privileged accounts to utilize SSH.DISA Red Hat Enterprise Linux 7 STIG v3r15Unix

ACCESS CONTROL

RHEL-09-213035 - RHEL 9 must enable kernel parameters to enforce discretionary access (DAC) control on symlinks.DISA Red Hat Enterprise Linux 9 STIG v2r9Unix

ACCESS CONTROL

RHEL-10-600500 - RHEL 10 must restrict the use of the "su" command.DISA Red Hat Enterprise Linux 10 STIG v1r2Unix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

SLES-12-010690 - All SUSE operating system files and directories must have a valid owner.DISA SLES 12 STIG v3r5Unix

ACCESS CONTROL

SLES-12-010700 - All SUSE operating system files and directories must have a valid group owner.DISA SLES 12 STIG v3r5Unix

ACCESS CONTROL

WN12-GE-000006 - Permissions for system drive root directory (usually C:\) must conform to minimum requirements.DISA Windows Server 2012 and 2012 R2 DC STIG v3r7Windows

ACCESS CONTROL

WN12-GE-000007 - Permissions for program file directories must conform to minimum requirementsDISA Windows Server 2012 and 2012 R2 MS STIG v3r7Windows

ACCESS CONTROL

WN16-00-000160 - Permissions for the system drive root directory (usually C:\) must conform to minimum requirements.DISA Microsoft Windows Server 2016 STIG v2r10Windows

ACCESS CONTROL

WN16-00-000180 - Permissions for the Windows installation directory must conform to minimum requirements.DISA Microsoft Windows Server 2016 STIG v2r10Windows

ACCESS CONTROL

WN19-00-000160 - Windows Server 2019 permissions for the Windows installation directory must conform to minimum requirements.DISA Microsoft Windows Server 2019 STIG v3r8Windows

ACCESS CONTROL