Item Search

NameAudit NamePluginCategory
1.4 SLES-15-010030CIS SUSE Linux Enterprise Server 15 STIG v1.0.0 CAT IUnix

CONFIGURATION MANAGEMENT, IDENTIFICATION AND AUTHENTICATION

1.14 AZLX-23-000300CIS Amazon Linux 2023 STIG v1.0.0 CAT IUnix

CONFIGURATION MANAGEMENT, IDENTIFICATION AND AUTHENTICATION

1.18 ESXI-80-000133CIS VMware vSphere 8.0 ESXi STIG v1.0.0 CAT I UnixUnix

CONFIGURATION MANAGEMENT

1.18 SLES-15-010180CIS SUSE Linux Enterprise Server 15 STIG v1.0.0 CAT IUnix

CONFIGURATION MANAGEMENT, IDENTIFICATION AND AUTHENTICATION

1.22 UBTU-24-100800CIS Ubuntu Linux 24.04 LTS STIG v1.0.0 CAT IUnix

SYSTEM AND COMMUNICATIONS PROTECTION

1.23 RHEL-10-200090CIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT IUnix

CONFIGURATION MANAGEMENT, IDENTIFICATION AND AUTHENTICATION

1.23 UBTU-24-100810CIS Ubuntu Linux 24.04 LTS STIG v1.0.0 CAT IUnix

SYSTEM AND COMMUNICATIONS PROTECTION

1.50 RHEL-09-215015CIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT IUnix

CONFIGURATION MANAGEMENT, IDENTIFICATION AND AUTHENTICATION

1.55 UBTU-22-255010CIS Ubuntu Linux 22.04 LTS STIG v1.0.0 CAT IUnix

SYSTEM AND COMMUNICATIONS PROTECTION

6.1.15 Ensure the file permissions ownership and group membership of system files and commands match the vendor valuesCIS Amazon Linux 2 STIG v2.0.1 STIGUnix

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY

AIX7-00-001120 - AIX must enforce password complexity by requiring that at least one upper-case character be used.DISA IBM AIX 7.x STIG v3r3Unix

IDENTIFICATION AND AUTHENTICATION

AIX7-00-001121 - AIX must enforce password complexity by requiring that at least one lower-case character be used.DISA IBM AIX 7.x STIG v3r3Unix

IDENTIFICATION AND AUTHENTICATION

AIX7-00-001123 - AIX must require the change of at least 50% of the total number of characters when passwords are changed.DISA IBM AIX 7.x STIG v3r3Unix

IDENTIFICATION AND AUTHENTICATION

AIX7-00-001128 - AIX must use Loadable Password Algorithm (LPA) password hashing algorithm.DISA IBM AIX 7.x STIG v3r3Unix

IDENTIFICATION AND AUTHENTICATION

AIX7-00-003022 - AIX must disable trivial file transfer protocol.DISA IBM AIX 7.x STIG v3r3Unix

CONFIGURATION MANAGEMENT

AIX7-00-003101 - The AIX system must have no .netrc files on the system.DISA IBM AIX 7.x STIG v3r3Unix

IDENTIFICATION AND AUTHENTICATION

AS24-U1-000520 - The Apache web server must generate a session ID using as much of the character set as possible to reduce the risk of brute force.DISA STIG Apache Server 2.4 Unix Server v3r2Unix

SYSTEM AND COMMUNICATIONS PROTECTION

AS24-U1-000520 - The Apache web server must generate a session ID using as much of the character set as possible to reduce the risk of brute force.DISA STIG Apache Server 2.4 Unix Server v3r2 MiddlewareUnix

SYSTEM AND COMMUNICATIONS PROTECTION

CISC-ND-000620 - The Cisco router must only store cryptographic representations of passwords.DISA Cisco IOS Router NDM STIG v3r8Cisco

IDENTIFICATION AND AUTHENTICATION

CISC-ND-000620 - The Cisco switch must only store cryptographic representations of passwords.DISA Cisco IOS XE Switch NDM STIG v3r6Cisco

IDENTIFICATION AND AUTHENTICATION

ESXI-80-000133 - The ESXi Image Profile and vSphere Installation Bundle (VIB) acceptance level must be verified.DISA VMware vSphere 8.0 ESXi STIG v2r4 UnixUnix

CONFIGURATION MANAGEMENT

ESXI5-VM-000001 - The system must control virtual machine access to host resources - 'Memory limit'DISA VMware ESXi Version 5 Virtual Machine STIG v2r1VMware

SYSTEM AND COMMUNICATIONS PROTECTION

ESXI5-VM-000008 - The system must disable virtual disk erasure.DISA VMware ESXi Version 5 Virtual Machine STIG v2r1VMware

CONFIGURATION MANAGEMENT

ESXI5-VM-000010 - The system must not use independent, non-persistent disks.DISA VMware ESXi Version 5 Virtual Machine STIG v2r1VMware

AUDIT AND ACCOUNTABILITY

GEN000100 - The operating system must be a supported release.DISA STIG for Oracle Linux 5 v2r1Unix

CONFIGURATION MANAGEMENT, SYSTEM AND INFORMATION INTEGRITY

GEN004220 - Administrative accounts must not run a web browser, except as needed for local service administration.DISA STIG for Oracle Linux 5 v2r1Unix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

GEN004600 - The SMTP service must be an up-to-date version - 'postfix'DISA STIG for Oracle Linux 5 v2r1Unix

CONFIGURATION MANAGEMENT, SYSTEM AND INFORMATION INTEGRITY

GEN004600 - The SMTP service must be an up-to-date version - 'sendmail'DISA STIG for Oracle Linux 5 v2r1Unix

CONFIGURATION MANAGEMENT, SYSTEM AND INFORMATION INTEGRITY

GEN005000 - Anonymous FTP accounts must not have a functional shell.DISA STIG for Oracle Linux 5 v2r1Unix

ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION

GEN005100 - The TFTP daemon must have mode 0755 or less permissive.DISA STIG for Oracle Linux 5 v2r1Unix

ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION

GEN005200 - X displays must not be exported to the world.DISA STIG for Oracle Linux 5 v2r1Unix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

GEN005300 - SNMP communities, users, and passphrases must be changed from the default.DISA STIG for Oracle Linux 5 v2r1Unix

CONFIGURATION MANAGEMENT, IDENTIFICATION AND AUTHENTICATION

GEN008640-ESXI5-000055 - The system must not use removable media as the boot loader.DISA VMWare ESXi 5.0 Server STIG v2r1VMware

CONFIGURATION MANAGEMENT

GEN008680 - If the system boots from removable media, it must be stored in a safe or similarly secured container.DISA STIG for Oracle Linux 5 v2r1Unix

CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION

JUSX-VN-000006 - The Juniper SRX Services Gateway VPN must use AES256 encryption for the Internet Key Exchange (IKE) proposal to protect the confidentiality of remote access sessions - IKE proposal to protect the confidentiality of remote access sessions.DISA Juniper SRX Services Gateway VPN v3r2Juniper

ACCESS CONTROL

O121-C2-014600 - The DBMS must support organizational requirements to enforce password encryption for storage.DISA Oracle Database 12c STIG v3r5 WindowsWindows

IDENTIFICATION AND AUTHENTICATION

O121-C2-014600 - The DBMS must support organizational requirements to enforce password encryption for storage.DISA Oracle Database 12c STIG v3r5 UnixUnix

IDENTIFICATION AND AUTHENTICATION

OL07-00-020050 - The Oracle Linux operating system must prevent the installation of software, patches, service packs, device drivers, or operating system components from a repository without verification they have been digitally signed using a certificate that is issued by a Certificate Authority (CA) that is recognized and approved by the organization - CA that is recognized and approved by the organization.DISA Oracle Linux 7 STIG v3r5Unix

CONFIGURATION MANAGEMENT

OL07-00-020060 - The Oracle Linux operating system must prevent the installation of software, patches, service packs, device drivers, or operating system components of local packages without verification they have been digitally signed using a certificate that is issued by a Certificate Authority (CA) that is recognized and approved by the organization - CA that is recognized and approved by the organization.DISA Oracle Linux 7 STIG v3r5Unix

CONFIGURATION MANAGEMENT

SQL6-D0-007900 - If DBMS authentication using passwords is employed, SQL Server must enforce the DOD standards for password complexity and lifetime.DISA MS SQL Server 2016 Instance STIG v3r6 MS_SQLDBMS_SQLDB

IDENTIFICATION AND AUTHENTICATION

SRG-OS-000090-ESXI5 - The system must verify the integrity of the installation media before installing ESXi.DISA VMWare ESXi 5.0 Server STIG v2r1VMware

CONFIGURATION MANAGEMENT

SRG-OS-000095-ESXI5 - Inetd and xinetd must be disabled or removed if no network services utilizing them are enabled.DISA VMWare ESXi 5.0 Server STIG v2r1VMware

CONFIGURATION MANAGEMENT

SRG-OS-000112-ESXI5 - The SSH daemon must be configured to only use the SSHv2 protocol.DISA VMWare ESXi 5.0 Server STIG v2r1VMware

CONFIGURATION MANAGEMENT

SRG-OS-000113-ESXI5 - The operating system must use organization-defined replay-resistant authentication mechanisms for network access to non-privileged accounts.DISA VMWare ESXi 5.0 Server STIG v2r1VMware

CONFIGURATION MANAGEMENT

SRG-OS-000193-ESXI5 - The Image Profile and VIB Acceptance Levels must be verified.DISA VMWare ESXi 5.0 Server STIG v2r1VMware

CONFIGURATION MANAGEMENT

SRG-OS-000248-ESXI5 - There must be no .rhosts or hosts.equiv files on the system.DISA VMWare ESXi 5.0 Server STIG v2r1VMware

CONFIGURATION MANAGEMENT

TCAT-AS-000630 - TLS must be enabled on JMX.DISA STIG Apache Tomcat Application Server 9 v3r4 MiddlewareUnix

IDENTIFICATION AND AUTHENTICATION

WN10-AC-000045 - Reversible password encryption must be disabled.DISA Microsoft Windows 10 STIG v3r6Windows

IDENTIFICATION AND AUTHENTICATION

WN10-CC-000315 - The Windows Installer Always install with elevated privileges must be disabled.DISA Microsoft Windows 10 STIG v3r6Windows

CONFIGURATION MANAGEMENT

WN19-AC-000090 - Windows Server 2019 reversible password encryption must be disabled.DISA Microsoft Windows Server 2019 STIG v3r8Windows

IDENTIFICATION AND AUTHENTICATION