Item Search

NameAudit NamePluginCategory
ALMA-09-016850 - AlmaLinux OS 9 /etc/shadow- file must have mode 0000 or less permissive to prevent unauthorized access.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

CONFIGURATION MANAGEMENT

ALMA-09-017180 - AlmaLinux OS 9 /etc/shadow file must have mode 0000 to prevent unauthorized access.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

CONFIGURATION MANAGEMENT

ALMA-09-017510 - AlmaLinux OS 9 must set the umask value to 077 for all local interactive user accounts.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

CONFIGURATION MANAGEMENT

ALMA-09-018390 - AlmaLinux OS 9 must prevent the use of dictionary words for passwords.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

CONFIGURATION MANAGEMENT

ALMA-09-018500 - AlmaLinux OS 9 must not accept router advertisements on all IPv6 interfaces.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

CONFIGURATION MANAGEMENT

ALMA-09-019600 - AlmaLinux OS 9 must have the nss-tools package installed.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

CONFIGURATION MANAGEMENT

ALMA-09-020370 - AlmaLinux OS 9 SSH daemon must not allow compression or must only allow compression after successful authentication.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

CONFIGURATION MANAGEMENT

ALMA-09-020920 - AlmaLinux OS 9 SSH private host key files must have mode 0640 or less permissive.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

CONFIGURATION MANAGEMENT

ALMA-09-021140 - AlmaLinux OS 9 SSH daemon must not allow known hosts authentication.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

CONFIGURATION MANAGEMENT

ALMA-09-021470 - AlmaLinux OS 9 SSH daemon must disable remote X connections for interactive users.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

CONFIGURATION MANAGEMENT

ALMA-09-021910 - AlmaLinux OS 9 effective dconf policy must match the policy keyfiles.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

CONFIGURATION MANAGEMENT

ALMA-09-022130 - All AlmaLinux OS 9 local initialization files must have mode 0740 or less permissive.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

CONFIGURATION MANAGEMENT

ALMA-09-022680 - AlmaLinux OS 9 must prevent special devices on file systems that are used with removable media.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

CONFIGURATION MANAGEMENT

ALMA-09-023890 - The root account must be the only account having unrestricted access to an AlmaLinux OS 9 system.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

CONFIGURATION MANAGEMENT

ALMA-09-024000 - AlmaLinux OS 9 must be configured so that the cryptographic hashes of system files match vendor values.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

CONFIGURATION MANAGEMENT

ALMA-09-024110 - AlmaLinux OS 9 must clear the page allocator to prevent use-after-free attacks.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

CONFIGURATION MANAGEMENT

ALMA-09-024990 - AlmaLinux OS 9 system accounts must not have an interactive login shell.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

CONFIGURATION MANAGEMENT

ALMA-09-025320 - AlmaLinux OS 9 must use a separate file system for /var/log.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

CONFIGURATION MANAGEMENT

ALMA-09-025650 - AlmaLinux OS 9 must disable virtual system calls.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

CONFIGURATION MANAGEMENT

ALMA-09-028510 - AlmaLinux OS 9 must disable remote management of the chrony daemon.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

CONFIGURATION MANAGEMENT

ALMA-09-028730 - AlmaLinux OS 9 must not have the iprutils package installed.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

CONFIGURATION MANAGEMENT

ALMA-09-029170 - AlmaLinux OS 9 must not have a Trivial File Transfer Protocol (TFTP) client package installed.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

CONFIGURATION MANAGEMENT

ALMA-09-035440 - AlmaLinux OS 9 must block unauthorized peripherals before establishing a connection.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-039290 - AlmaLinux OS 9 must use mechanisms meeting the requirements of applicable federal laws, executive orders, directives, policies, regulations, standards, and guidance for authentication to a cryptographic module.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-039510 - The libreswan package must be installed.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-039620 - AlmaLinux OS 9 must have the packages required for encrypting offloaded audit logs installed.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-040720 - AlmaLinux OS 9 must disable access to network bpf system call from nonprivileged processes.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

SYSTEM AND COMMUNICATIONS PROTECTION

ALMA-09-040830 - AlmaLinux OS 9 must restrict exposed kernel pointer addresses access.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

SYSTEM AND COMMUNICATIONS PROTECTION

ALMA-09-042150 - Any AlmaLinux OS 9 world-writable directories must be owned by root, sys, bin, or an application user.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

SYSTEM AND COMMUNICATIONS PROTECTION

ALMA-09-044020 - AlmaLinux OS 9 /var/log/messages file must be group-owned by root.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

SYSTEM AND INFORMATION INTEGRITY

ALMA-09-044350 - AlmaLinux OS 9 /var/log directory must be owned by root.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

SYSTEM AND INFORMATION INTEGRITY

ALMA-09-044680 - AlmaLinux OS 9 must enable mitigations against processor-based vulnerabilities.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

SYSTEM AND INFORMATION INTEGRITY

ALMA-09-046550 - AlmaLinux OS 9 must enable Linux audit logging for the USBGuard daemon.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

ALMA-09-054030 - AlmaLinux OS 9 audit system must take appropriate action when an error writing to the audit storage volume occurs.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

ALMA-09-056780 - AlmaLinux OS 9 audit system must protect logon UIDs from unauthorized change.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

ALMA-09-057110 - AlmaLinux OS 9 audit system must protect auditing rules from unauthorized change.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GOOG-13-006100 - Google Android 13 must be configured to not allow passwords that include more than four repeating or sequential characters - CharactersAirWatch - DISA Google Android 13 COPE v2r2MDM

CONFIGURATION MANAGEMENT

GOOG-13-006200 - Google Android 13 must be configured to enable a screen-lock policy that will lock the display after a period of inactivity.AirWatch - DISA Google Android 13 COBO v2r2MDM

ACCESS CONTROL

GOOG-13-006400 - Google Android 13 must be configured to not allow more than 10 consecutive failed authentication attempts.AirWatch - DISA Google Android 13 COBO v2r2MDM

ACCESS CONTROL

GOOG-13-007400 - Google Android 13 must be configured to disable developer modes.AirWatch - DISA Google Android 13 COBO v2r2MDM

CONFIGURATION MANAGEMENT

GOOG-13-008400 - Google Android 13 must be configured to disable USB mass storage mode.MobileIron - DISA Google Android 13 COBO v2r2MDM

SYSTEM AND COMMUNICATIONS PROTECTION

GOOG-13-008600 - Google Android 13 must be configured to not allow backup of [all applications, configuration data] to remote systems.AirWatch - DISA Google Android 13 COBO v2r2MDM

SYSTEM AND COMMUNICATIONS PROTECTION

GOOG-13-008600 - Google Android 13 must be configured to not allow backup of [all applications, configuration data] to remote systems.AirWatch - DISA Google Android 13 COPE v2r2MDM

SYSTEM AND COMMUNICATIONS PROTECTION

GOOG-13-009500 - Google Android 13 must be configured to disable ad hoc wireless client-to-client connection capability.AirWatch - DISA Google Android 13 COPE v2r2MDM

SYSTEM AND COMMUNICATIONS PROTECTION

GOOG-13-009800 - Google Android 13 users must complete required training.MobileIron - DISA Google Android 13 COBO v2r2MDM

CONFIGURATION MANAGEMENT

GOOG-13-009900 - Google Android 13 must be configured to enforce that Wi-Fi Sharing is disabled.AirWatch - DISA Google Android 13 COPE v2r2MDM

CONFIGURATION MANAGEMENT

GOOG-13-010200 - The Google Android 13 work profile must be configured to enforce the system application disable list.AirWatch - DISA Google Android 13 COBO v2r2MDM

CONFIGURATION MANAGEMENT

GOOG-13-010300 - Google Android 13 must be provisioned as a fully managed device and configured to create a work profile.AirWatch - DISA Google Android 13 COPE v2r2MDM

CONFIGURATION MANAGEMENT

GOOG-13-010600 - Google Android 13 must be configured to disallow configuration of date and time.AirWatch - DISA Google Android 13 COBO v2r2MDM

CONFIGURATION MANAGEMENT

GOOG-13-010600 - Google Android 13 must be configured to disallow configuration of date and time.MobileIron - DISA Google Android 13 COBO v2r2MDM

CONFIGURATION MANAGEMENT