Item Search

NameAudit NamePluginCategory
ALMA-09-024000 - AlmaLinux OS 9 must be configured so that the cryptographic hashes of system files match vendor values.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-024550 - AlmaLinux OS 9 must enable the hardware random number generator entropy gatherer service.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-026530 - AlmaLinux OS 9 must mount /dev/shm with the nodev option.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-026970 - AlmaLinux OS 9 must mount /tmp with the noexec option.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-027300 - AlmaLinux OS 9 must mount /var/log/audit with the noexec option.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-027410 - AlmaLinux OS 9 must mount /var/log/audit with the nosuid option.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-027630 - AlmaLinux OS 9 must mount /var/log with the noexec option.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-028070 - AlmaLinux OS 9 must mount /var/tmp with the noexec option.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-028620 - AlmaLinux OS 9 must prevent the chrony daemon from acting as a server.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-028730 - AlmaLinux OS 9 must not have the iprutils package installed.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-029060 - AlmaLinux OS 9 must not have the telnet-server package installed.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-029170 - AlmaLinux OS 9 must not have a Trivial File Transfer Protocol (TFTP) client package installed.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-031150 - AlmaLinux OS 9 must not have the ypserv package installed.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

CONFIGURATION MANAGEMENT

ALMA-09-032470 - AlmaLinux OS 9 must restrict the use of the "su" command.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

ACCESS CONTROL

ALMA-09-033240 - AlmaLinux OS 9 SSHD must accept public key authentication.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-034010 - AlmaLinux OS 9 must have the openssl-pkcs11 package installed.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-034780 - AlmaLinux OS 9 must not permit direct logons to the root account using remote access via SSH.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-035220 - AlmaLinux OS 9 must have the USBGuard package enabled.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-035440 - AlmaLinux OS 9 must block unauthorized peripherals before establishing a connection.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-036210 - AlmaLinux OS 9 must enforce password complexity by requiring that at least one uppercase character be used.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-036540 - AlmaLinux OS 9 passwords must be created with a minimum of 15 characters.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-036650 - AlmaLinux OS 9 must enforce password complexity by requiring that at least one numeric character be used.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-037860 - AlmaLinux OS 9 must not have any telnet packages installed.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-038300 - Passwords for new users or password changes must have a 24-hour minimum password lifetime restriction in /etc/login.defs.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-039620 - AlmaLinux OS 9 must have the packages required for encrypting offloaded audit logs installed.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-040500 - AlmaLinux OS 9 must terminate idle user sessions.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

SYSTEM AND COMMUNICATIONS PROTECTION

ALMA-09-042040 - AlmaLinux OS 9 must have the policycoreutils package installed.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

SYSTEM AND COMMUNICATIONS PROTECTION

ALMA-09-042700 - All AlmaLinux OS 9 networked systems must have the OpenSSH client installed.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

SYSTEM AND COMMUNICATIONS PROTECTION

ALMA-09-043910 - AlmaLinux OS 9 /var/log directory must be group-owned by root.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

SYSTEM AND INFORMATION INTEGRITY

ALMA-09-044350 - AlmaLinux OS 9 /var/log directory must be owned by root.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

SYSTEM AND INFORMATION INTEGRITY

ALMA-09-044460 - AlmaLinux OS 9 /var/log directory must have mode 0755 or less permissive.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

SYSTEM AND INFORMATION INTEGRITY

ALMA-09-045230 - AlmaLinux OS 9 must enable the SELinux targeted policy.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

SYSTEM AND INFORMATION INTEGRITY

ALMA-09-045780 - AlmaLinux OS 9 /etc/audit/auditd.conf file must have 0640 or less permissive to prevent unauthorized access.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

AUDIT AND ACCOUNTABILITY

ALMA-09-046330 - AlmaLinux OS 9 must generate audit records for any use of the "reboot" command.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

AUDIT AND ACCOUNTABILITY

ALMA-09-047980 - AlmaLinux OS 9 must enable auditing of processes that start prior to the audit daemon.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

ALMA-09-048860 - AlmaLinux OS 9 must generate audit records for any use of the "crontab" command.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

ALMA-09-049300 - AlmaLinux OS 9 must audit all uses of the kmod command.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

ALMA-09-049520 - AlmaLinux OS 9 must generate audit records for any use of the "passwd" command.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

ALMA-09-049850 - AlmaLinux OS 9 must generate audit records for any use of the "su" command.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

ALMA-09-050730 - AlmaLinux OS 9 must generate audit records for any use of the "sudoedit" command.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

ALMA-09-051170 - AlmaLinux OS 9 must generate audit records for any use of the "userhelper" command.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

ALMA-09-052160 - AlmaLinux OS 9 audispd-plugins package must be installed.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

AUDIT AND ACCOUNTABILITY

ALMA-09-054360 - AlmaLinux OS 9 audit system must make full use of the audit storage space.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

AUDIT AND ACCOUNTABILITY

ALMA-09-054910 - The auditd service must be enabled on AlmaLinux OS 9.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

ALMA-09-055680 - AlmaLinux OS 9 audit log directory must be owned by root to prevent unauthorized read access.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

AUDIT AND ACCOUNTABILITY

ALMA-09-055790 - AlmaLinux OS 9 audit log directory must have 0700 permissions to prevent unauthorized read access.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

AUDIT AND ACCOUNTABILITY

ALMA-09-056230 - AlmaLinux OS 9 audit tools must be group-owned by root.DISA CloudLinux AlmaLinux OS 9 STIG v1r4Unix

AUDIT AND ACCOUNTABILITY

VCTR-67-000007 - The vCenter Server must manage excess capacity, bandwidth, or other redundancy to limit the effects of information-flooding types of denial-of-service (DoS) attacks by enabling Network I/O Control (NIOC).DISA STIG VMware vSphere 6.7 vCenter v1r4VMware

CONFIGURATION MANAGEMENT

VCTR-67-000010 - The vCenter Server must limit the use of the built-in SSO administrative account.DISA STIG VMware vSphere 6.7 vCenter v1r4VMware

IDENTIFICATION AND AUTHENTICATION

VCTR-67-000012 - The vCenter Server must disable the distributed virtual switch health check.DISA STIG VMware vSphere 6.7 vCenter v1r4VMware

CONFIGURATION MANAGEMENT