Item Search

NameAudit NamePluginCategory
1.1 AZLX-23-000100CIS Amazon Linux 2023 STIG v1.0.0 CAT IUnix

SYSTEM AND COMMUNICATIONS PROTECTION

1.2 RHEL-10-000510CIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT IUnix

SYSTEM AND COMMUNICATIONS PROTECTION

1.3 WN22-00-000030CIS Microsoft Windows Server 2022 STIG v3.0.0 DC CAT IWindows

CONFIGURATION MANAGEMENT, SYSTEM AND INFORMATION INTEGRITY

1.3 WN22-00-000030CIS Microsoft Windows Server 2022 STIG v3.0.0 MS CAT IWindows

CONFIGURATION MANAGEMENT, SYSTEM AND INFORMATION INTEGRITY

1.5 OL08-00-010030CIS Oracle Linux 8 STIG v1.0.0 CAT IUnix

SYSTEM AND COMMUNICATIONS PROTECTION

1.86 RHEL-10-300090CIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT IUnix

MAINTENANCE, SYSTEM AND COMMUNICATIONS PROTECTION

1.105 RHEL-09-231190CIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT IUnix

SYSTEM AND COMMUNICATIONS PROTECTION

1.450 RHEL-09-672020CIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT IUnix

MAINTENANCE, SYSTEM AND COMMUNICATIONS PROTECTION

ALMA-09-039840 - AlmaLinux OS 9 must have the crypto-policies package installed.DISA Cloud Linux AlmaLinux OS 9 STIG v1r7Unix

MAINTENANCE, SYSTEM AND COMMUNICATIONS PROTECTION

APPL-14-005020 - The macOS system must enforce FileVault.DISA Apple macOS 14 Sonoma STIG v2r4Unix

SYSTEM AND COMMUNICATIONS PROTECTION

APPL-15-005020 - The macOS system must enforce FileVault.DISA Apple macOS 15 Sequoia STIG v1r7Unix

SYSTEM AND COMMUNICATIONS PROTECTION

APPL-26-005020 - The macOS system must enforce FileVault.DISA Apple macOS 26 Tahoe STIG v1r3Unix

SYSTEM AND COMMUNICATIONS PROTECTION

ARST-ND-000850 - The Arista network Arista device must be configured to send log data to a central log server for the purpose of forwarding alerts to the administrators and the ISSO.DISA STIG Arista MLS EOS 4.2x NDM v2r1Arista

AUDIT AND ACCOUNTABILITY

AZLX-23-000100 - Amazon Linux 2023 local disk partitions must implement cryptographic mechanisms to prevent unauthorized disclosure or modification of all information that requires at rest protection.DISA Amazon Linux 2023 STIG v1r4Unix

SYSTEM AND COMMUNICATIONS PROTECTION

CISC-L2-000020 - The Cisco switch must uniquely identify and authenticate all network-connected endpoint devices before establishing any connection.DISA Cisco IOS XE Switch L2S STIG v3r2Cisco

IDENTIFICATION AND AUTHENTICATION

CISC-L2-000020 - The Cisco switch must uniquely identify and authenticate all network-connected endpoint devices before establishing any connection.DISA Cisco IOS Switch L2S STIG v3r2Cisco

IDENTIFICATION AND AUTHENTICATION

ESXI5-VM-000001 - The system must control virtual machine access to host resources - 'Memory reservation'DISA VMware ESXi Version 5 Virtual Machine STIG v2r1VMware

SYSTEM AND COMMUNICATIONS PROTECTION

ESXI5-VM-000001 - The system must control virtual machine access to host resources - 'Memory share'DISA VMware ESXi Version 5 Virtual Machine STIG v2r1VMware

SYSTEM AND COMMUNICATIONS PROTECTION

ESXI5-VM-000007 - The system must disable virtual disk shrinking.DISA VMware ESXi Version 5 Virtual Machine STIG v2r1VMware

CONFIGURATION MANAGEMENT

GEN000100-ESXI5-000062 - The operating system must be a supported release.DISA VMWare ESXi 5.0 Server STIG v2r1VMware

SYSTEM AND INFORMATION INTEGRITY

GEN008600-ESXI5-000050 - The system must be configured to only boot from the system boot device.DISA VMWare ESXi 5.0 Server STIG v2r1VMware

CONFIGURATION MANAGEMENT

GEN008680-ESXI5-000056 - If the system boots from removable media, it must be stored in a safe or similarly secured container.DISA VMWare ESXi 5.0 Server STIG v2r1VMware

CONFIGURATION MANAGEMENT

JUSX-AG-000120 - The Juniper SRX Services Gateway Firewall providing content filtering must protect against known and unknown types of denial-of-service (DoS) attacks by implementing statistics-based screens - DoS attacks by implementing statistics-based screens.DISA Juniper SRX Services Gateway ALG v3r3Juniper

SYSTEM AND COMMUNICATIONS PROTECTION

JUSX-AG-000122 - The Juniper SRX Services Gateway Firewall must protect against known types of denial-of-service (DoS) attacks by implementing signature-based screens - DoS attacks by implementing signature-based screens.DISA Juniper SRX Services Gateway ALG v3r3Juniper

SYSTEM AND COMMUNICATIONS PROTECTION

JUSX-VN-000005 - The Juniper SRX Services Gateway VPN must use AES256 for the IPsec proposal to protect the confidentiality of remote access sessions.DISA Juniper SRX Services Gateway VPN v3r2Juniper

ACCESS CONTROL

JUSX-VN-000007 - The Juniper SRX Services Gateway VPN must be configured to use Diffie-Hellman (DH) group 15 or higher - DH group.DISA Juniper SRX Services Gateway VPN v3r2Juniper

ACCESS CONTROL

MD4X-00-000600 - If passwords are used for authentication, MongoDB must transmit only encrypted representations of passwords.DISA STIG MongoDB Enterprise Advanced 4.x v1r4 OSUnix

IDENTIFICATION AND AUTHENTICATION

MD7X-00-003900 - If passwords are used for authentication, MongoDB must transmit only encrypted representations of passwords.DISA MongoDB Enterprise Advanced 7.x STIG v1r2 UnixUnix

IDENTIFICATION AND AUTHENTICATION

MD7X-00-003900 If passwords are used for authentication, MongoDB must transmit only encrypted representations of passwords.DISA MongoDB Enterprise Advanced 7.x STIG v1r1Unix

IDENTIFICATION AND AUTHENTICATION

MD8X-00-003700 - If passwords are used for authentication, MongoDB must transmit only encrypted representations of passwords.DISA MongoDB Enterprise Advanced 8.x STIG v1r1 UnixUnix

IDENTIFICATION AND AUTHENTICATION

OL07-00-010020 - The Oracle Linux operating system must be configured so that the cryptographic hash of system files and commands matches vendor values.DISA Oracle Linux 7 STIG v3r5Unix

CONFIGURATION MANAGEMENT

OL08-00-010030 - All OL 8 local disk partitions must implement cryptographic mechanisms to prevent unauthorized disclosure or modification of all information that requires at-rest protection.DISA Oracle Linux 8 STIG v2r9Unix

SYSTEM AND COMMUNICATIONS PROTECTION

OL08-00-010183 - OL 8 cryptographic policy must not be overridden.DISA Oracle Linux 8 STIG v2r9Unix

MAINTENANCE, SYSTEM AND COMMUNICATIONS PROTECTION

OL09-00-000240 - OL 9 must have the crypto-policies package installed.DISA Oracle Linux 9 STIG v1r6Unix

MAINTENANCE, SYSTEM AND COMMUNICATIONS PROTECTION

OL09-00-000242 - OL 9 must not allow the cryptographic policy to be overridden.DISA Oracle Linux 9 STIG v1r6Unix

MAINTENANCE, SYSTEM AND COMMUNICATIONS PROTECTION

OL09-00-002418 - OL 9 local disk partitions must implement cryptographic mechanisms to prevent unauthorized disclosure or modification of all information that requires at rest protection.DISA Oracle Linux 9 STIG v1r6Unix

SYSTEM AND COMMUNICATIONS PROTECTION

PANW-AG-000102 - The Palo Alto Networks security platform must protect against denial-of-service (DoS) attacks from external sources - DoS attacks to protect against the use of internal information systems to launch any DoS attacks against other networks or endpoints.DISA Palo Alto Networks ALG STIG v3r4Palo_Alto

SYSTEM AND COMMUNICATIONS PROTECTION

RHEL-09-215100 - RHEL 9 must have the crypto-policies package installed.DISA Red Hat Enterprise Linux 9 STIG v2r9Unix

MAINTENANCE, SYSTEM AND COMMUNICATIONS PROTECTION

RHEL-09-231190 - RHEL 9 local disk partitions must implement cryptographic mechanisms to prevent unauthorized disclosure or modification of all information that requires at rest protection.DISA Red Hat Enterprise Linux 9 STIG v2r9Unix

SYSTEM AND COMMUNICATIONS PROTECTION

RHEL-09-672020 - RHEL 9 cryptographic policy must not be overridden.DISA Red Hat Enterprise Linux 9 STIG v2r9Unix

MAINTENANCE, SYSTEM AND COMMUNICATIONS PROTECTION

RHEL-10-000510 - RHEL 10 must implement cryptographic mechanisms to prevent unauthorized disclosure or modification of all information on local disk partitions that requires at-rest protection.DISA Red Hat Enterprise Linux 10 STIG v1r2Unix

SYSTEM AND COMMUNICATIONS PROTECTION

RHEL-10-300000 - RHEL 10 must have the "crypto-policies" package installed.DISA Red Hat Enterprise Linux 10 STIG v1r2Unix

MAINTENANCE, SYSTEM AND COMMUNICATIONS PROTECTION

RHEL-10-300090 - RHEL 10 cryptographic policy must not be overridden.DISA Red Hat Enterprise Linux 10 STIG v1r2Unix

MAINTENANCE, SYSTEM AND COMMUNICATIONS PROTECTION

UBTU-20-010042 - The Ubuntu operating system must use SSH to protect the confidentiality and integrity of transmitted information.DISA Canonical Ubuntu 20.04 LTS STIG v2r4Unix

SYSTEM AND COMMUNICATIONS PROTECTION

UBTU-22-255010 - Ubuntu 22.04 LTS must have SSH installed.DISA Canonical Ubuntu 22.04 LTS STIG v2r9Unix

SYSTEM AND COMMUNICATIONS PROTECTION

UBTU-24-100800 - Ubuntu 24.04 LTS must have SSH installed.DISA Canonical Ubuntu 24.04 LTS STIG v1r6Unix

SYSTEM AND COMMUNICATIONS PROTECTION

UBTU-24-100810 - Ubuntu 24.04 LTS must use SSH to protect the confidentiality and integrity of transmitted information.DISA Canonical Ubuntu 24.04 LTS STIG v1r6Unix

SYSTEM AND COMMUNICATIONS PROTECTION

WN12-PK-000006-DC - Domain Controller PKI certificates must be issued by the DoD PKI or an approved External Certificate Authority (ECA).DISA Windows Server 2012 and 2012 R2 DC STIG v3r7Windows

IDENTIFICATION AND AUTHENTICATION

WN12-PK-000007-DC - PKI certificates associated with user accounts must be issued by the DoD PKI or an approved External Certificate Authority (ECA).DISA Windows Server 2012 and 2012 R2 DC STIG v3r7Windows

IDENTIFICATION AND AUTHENTICATION

WN19-CC-000430 - Windows Server 2019 must disable the Windows Installer Always install with elevated privileges option.DISA Microsoft Windows Server 2019 STIG v3r8Windows

CONFIGURATION MANAGEMENT