Item Search

NameAudit NamePluginCategory
2.2.4.1.1.1 (L1) Ensure 'Load Pictures from Web pages not created in Excel' is set to 'Disabled'CIS Microsoft Intune for Office v1.1.0 L1Windows

SYSTEM AND COMMUNICATIONS PROTECTION

2.5 Ensure 'Web and App Activity' is set to DisabledAirWatch - CIS Google Android 7 v1.0.0 L1MDM

CONFIGURATION MANAGEMENT

2.5.10.8.1.2.2 (L1) Ensure 'Prevent publishing to a DAV server' is set to 'Enabled'CIS Microsoft Intune for Office v1.1.0 L1Windows

CONFIGURATION MANAGEMENT

4.3.6 Ensure 'signatureAlgorithm' is set to a secure algorithm in OIDC Relying Party (RP)CIS IBM WebSphere Liberty v1.0.0 L1Unix

SYSTEM AND COMMUNICATIONS PROTECTION

5.1.1 Ensure allow and deny filters limit access to specific IP addressesCIS NGINX Benchmark v2.1.0 L2 WebserverUnix

SYSTEM AND COMMUNICATIONS PROTECTION

6.17 Set Retry Limit for Account LockoutCIS Oracle Solaris 11.4 L1 v1.1.0Unix

ACCESS CONTROL

7.2 Set Strong Password Creation Policies - MINDIFF = 3CIS Solaris 11.2 L1 v1.1.0Unix

IDENTIFICATION AND AUTHENTICATION

7.2 Set Strong Password Creation Policies - DICTIONDBDIR = /var/passwdCIS Solaris 11.1 L1 v1.0.0Unix

IDENTIFICATION AND AUTHENTICATION

7.2 Set Strong Password Creation Policies - DICTIONLIST = /usr/share/lib/dict/wordsCIS Solaris 11.2 L1 v1.1.0Unix

IDENTIFICATION AND AUTHENTICATION

7.2 Set Strong Password Creation Policies - HISTORY = 10CIS Solaris 11 L1 v1.1.0Unix

IDENTIFICATION AND AUTHENTICATION

7.2 Set Strong Password Creation Policies - MINALPHA = 2CIS Solaris 11.1 L1 v1.0.0Unix

IDENTIFICATION AND AUTHENTICATION

7.2 Set Strong Password Creation Policies - MINLOWER = 1CIS Solaris 11.1 L1 v1.0.0Unix

IDENTIFICATION AND AUTHENTICATION

7.2 Set Strong Password Creation Policies - MINNONALPHA = 1CIS Solaris 11.1 L1 v1.0.0Unix

IDENTIFICATION AND AUTHENTICATION

7.2 Set Strong Password Creation Policies - NAMECHECK = yesCIS Solaris 11.2 L1 v1.1.0Unix

IDENTIFICATION AND AUTHENTICATION

7.2 Set Strong Password Creation Policies- MAXREPEATS = 0CIS Solaris 11.2 L1 v1.1.0Unix

IDENTIFICATION AND AUTHENTICATION

10.4 Ensure the LimitRequestBody Directive is Set to 102400 or LessCIS Apache HTTP Server 2.2 L2 v3.6.0 MiddlewareUnix

CONFIGURATION MANAGEMENT

10.4 Ensure the LimitRequestBody Directive is Set to 102400 or LessCIS Apache HTTP Server 2.4 v2.2.0 L2Unix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

Access Security - J-Web - Set session-limit restrictions suitable for your environmentJuniper Hardening JunOS 12 Devices ChecklistJuniper

ACCESS CONTROL

AS24-U1-000510 - The Apache web server must generate a session ID long enough that it cannot be guessed through brute forceDISA STIG Apache Server 2.4 Unix Server v3r2 MiddlewareUnix

SYSTEM AND COMMUNICATIONS PROTECTION

AS24-U1-000510 - The Apache web server must generate a session ID long enough that it cannot be guessed through brute force.DISA STIG Apache Server 2.4 Unix Server v3r2Unix

SYSTEM AND COMMUNICATIONS PROTECTION

AS24-W2-000460 - The Apache web server must invalidate session identifiers upon hosted application user logout or other session termination.DISA STIG Apache Server 2.4 Windows Site v2r2Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTBI014-IE11 - Turn off Encryption Support must be enabled.DISA STIG IE 11 v2r5Windows

SYSTEM AND COMMUNICATIONS PROTECTION

GEN000120 - System security patches and updates must be installed and up-to-date - oslevel -sDISA STIG AIX 6.1 v1r14Unix

SYSTEM AND INFORMATION INTEGRITY

SonicWALL - Use non default admin access ports - HTTPTNS SonicWALL v5.9SonicWALL

CONFIGURATION MANAGEMENT

VCEM-70-000033 - ESX Agent Manager default servlet must be set to 'readonly'.DISA STIG VMware vSphere 7.0 EAM Tomcat v1r2Unix

CONFIGURATION MANAGEMENT

VCLU-80-000062 The vCenter Lookup service must be configured to fail to a known safe state if system initialization fails.DISA VMware vSphere 8.0 vCenter Appliance Lookup Service STIG v2r1Unix

SYSTEM AND COMMUNICATIONS PROTECTION

VCPF-80-000062 The vCenter Perfcharts service must be configured to fail to a known safe state if system initialization fails.DISA VMware vSphere 8.0 vCenter Appliance Perfcharts STIG v2r1Unix

SYSTEM AND COMMUNICATIONS PROTECTION

VCST-80-000062 The vCenter STS service must be configured to fail to a known safe state if system initialization fails.DISA VMware vSphere 8.0 vCenter Appliance Secure Token Service (STS) STIG v2r1Unix

SYSTEM AND COMMUNICATIONS PROTECTION

VCUI-70-000032 - vSphere UI must set the secure flag for cookies.DISA STIG VMware vSphere 7.0 vCA UI v1r2Unix

SYSTEM AND COMMUNICATIONS PROTECTION

VCUI-80-000062 The vCenter UI service must be configured to fail to a known safe state if system initialization fails.DISA VMware vSphere 8.0 vCenter Appliance User Interface (UI) STIG v2r1Unix

SYSTEM AND COMMUNICATIONS PROTECTION

VCUI-80-000130 The vCenter UI service DefaultServlet must be set to 'readonly' for 'PUT' and 'DELETE' commands.DISA VMware vSphere 8.0 vCenter Appliance User Interface (UI) STIG v2r1Unix

ACCESS CONTROL

VCWN-06-000007 - The system must limit the effects of information-flooding types of Denial of Service (DoS) attacks.DISA STIG VMware vSphere vCenter 6.x v1r4VMware

SYSTEM AND COMMUNICATIONS PROTECTION

VCWN-06-000024 - The system must ensure the vpxuser password meets length policy.DISA STIG VMware vSphere vCenter 6.x v1r4VMware

CONFIGURATION MANAGEMENT

VCWN-06-000036 - The system must produce audit records containing information to establish what type of events occurred.DISA STIG VMware vSphere vCenter 6.x v1r4VMware

SYSTEM AND INFORMATION INTEGRITY

WBLC-02-000098 - Oracle WebLogic must protect audit tools from unauthorized access.Oracle WebLogic Server 12c Linux v2r2Unix

AUDIT AND ACCOUNTABILITY

WBLC-02-000098 - Oracle WebLogic must protect audit tools from unauthorized access.Oracle WebLogic Server 12c Windows v2r2Windows

AUDIT AND ACCOUNTABILITY

WBLC-02-000098 - Oracle WebLogic must protect audit tools from unauthorized access.Oracle WebLogic Server 12c Linux v2r2 MiddlewareUnix

AUDIT AND ACCOUNTABILITY

WBSP-AS-000780 - The WebSphere Application Server wsadmin file must be protected from unauthorized modification.DISA IBM WebSphere Traditional 9 STIG v1r1 MiddlewareUnix

AUDIT AND ACCOUNTABILITY

WBSP-AS-000780 - The WebSphere Application Server wsadmin file must be protected from unauthorized modification.DISA IBM WebSphere Traditional 9 Windows STIG v1r1Windows

AUDIT AND ACCOUNTABILITY

WBSP-AS-000780 - The WebSphere Application Server wsadmin file must be protected from unauthorized modification.DISA IBM WebSphere Traditional 9 STIG v1r1Unix

AUDIT AND ACCOUNTABILITY

Web sites in less privileged Web content zones can navigate into this zone - Internet ZoneMSCT Windows 10 1903 v1.19.9Windows

ACCESS CONTROL

Web sites in less privileged Web content zones can navigate into this zone - Internet ZoneMSCT Windows 10 v20H2 v1.0.0Windows

ACCESS CONTROL

Web sites in less privileged Web content zones can navigate into this zone - Internet ZoneMSCT Windows 10 v21H1 v1.0.0Windows

ACCESS CONTROL

Web sites in less privileged Web content zones can navigate into this zone - Internet ZoneMSCT Windows Server 1903 DC v1.19.9Windows

ACCESS CONTROL

Web sites in less privileged Web content zones can navigate into this zone - Internet ZoneMSCT Windows Server v1909 MS v1.0.0Windows

ACCESS CONTROL

Web sites in less privileged Web content zones can navigate into this zone - Internet ZoneMSCT Windows Server v20H2 MS v1.0.0Windows

ACCESS CONTROL

Web sites in less privileged Web content zones can navigate into this zone - Internet ZoneMSCT Windows Server 2019 DC v1.0.0Windows

ACCESS CONTROL

Web sites in less privileged Web content zones can navigate into this zone - Restricted Sites ZoneMSCT Windows 10 v21H1 v1.0.0Windows

ACCESS CONTROL

Web sites in less privileged Web content zones can navigate into this zone - Restricted Sites ZoneMSCT Windows Server 1903 DC v1.19.9Windows

ACCESS CONTROL

WN12-AD-000009-DC - The directory server supporting (directly or indirectly) system access or resource authorization must run on a machine dedicated to that function - RolesDISA Windows Server 2012 and 2012 R2 DC STIG v3r7Windows

SYSTEM AND COMMUNICATIONS PROTECTION