Item Search

NameAudit NamePluginCategory
2.1.1.1.2 Set the 'ip domain-name'CIS Cisco IOS XE 17.x v2.2.0 L1Cisco

CONFIGURATION MANAGEMENT

2.1.1.1.2 Set the 'ip domain-name'CIS Cisco IOS XE 16.x v2.1.0 L1Cisco

CONFIGURATION MANAGEMENT

3.1.1 - AirWatch - Enable 'Require password'AirWatch - CIS Apple iOS 9 v1.0.0 L1MDM

ACCESS CONTROL

3.1.1 - MobileIron - Enable 'Require password'MobileIron - CIS Apple iOS 8 v1.0.0 L1MDM

ACCESS CONTROL

3.1.5 - MobileIron - Set the 'timeout' for 'Time without user input before password must be re-entered (in minutes)'MobileIron - CIS Apple iOS 8 v1.0.0 L1MDM

ACCESS CONTROL

4.40 listener.ora - 'secure_protocol_listener_name = (TCP,IPC)'CIS v1.1.0 Oracle 11g OS Windows Level 1Windows

ACCESS CONTROL

5.1 Set 'Turn off Encryption Support' to 'Use TLS 1.1 and TLS 1.2'CIS IE 10 v1.1.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

5.2.3 Ensure Complex Password Must Contain Alphabetic Characters Is ConfiguredCIS Apple macOS 11.0 Big Sur v4.0.0 L2Unix

IDENTIFICATION AND AUTHENTICATION

6.10 Ensure Weak SSL/TLS Ciphers Are DisabledCIS PostgreSQL 13 OS v1.2.0Unix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION

6.10 Ensure Weak SSL/TLS Ciphers Are DisabledCIS PostgreSQL 17 v1.0.0 L1 PostgreSQLUnix

SYSTEM AND COMMUNICATIONS PROTECTION

AS24-U2-000390 - Only authenticated system administrators or the designated PKI Sponsor for the Apache web server must have access to the Apache web servers private key.DISA STIG Apache Server 2.4 Unix Site v2r6Unix

IDENTIFICATION AND AUTHENTICATION

AS24-U2-000390 - Only authenticated system administrators or the designated PKI Sponsor for the Apache web server must have access to the Apache web servers private key.DISA STIG Apache Server 2.4 Unix Site v2r6 MiddlewareUnix

IDENTIFICATION AND AUTHENTICATION

CIS Docker Community Edition v1.1.0 L2 DockerCIS Docker Community Edition v1.1.0 L2 DockerUnix
CIS_Apache_Tomcat_8_L1_v1.1.0_Middleware.audit from CIS Apache Tomcat 8 BenchmarkCIS Apache Tomcat 8 L1 v1.1.0 MiddlewareUnix
CIS_Apache_Tomcat_10_L1_v1.1.0_Middleware.audit from CIS Apache Tomcat 10 BenchmarkCIS Apache Tomcat 10 L1 v1.1.0 MiddlewareUnix
CIS_Apache_Tomcat_10_L2_v1.1.0_Middleware.audit from CIS Apache Tomcat 10 BenchmarkCIS Apache Tomcat 10 L2 v1.1.0 MiddlewareUnix
CIS_Docker_v1.7.0_L1_Docker_-_Linux.audit from CIS Docker Benchmark v1.7.0CIS Docker v1.7.0 L1 Docker - LinuxUnix
CIS_Kubernetes_v1.20_v1.0.1_Level_1_Worker.audit from CIS Kubernetes v1.20 Benchmark v1.0.1CIS Kubernetes v1.20 Benchmark v1.0.1 L1 WorkerUnix

CONFIGURATION MANAGEMENT

CIS_Kubernetes_v1.23_v1.0.1_Level_2_Master.audit from CIS Kubernetes v1.23 Benchmark v1.0.1CIS Kubernetes v1.23 Benchmark v1.0.1 L2 MasterUnix

CONFIGURATION MANAGEMENT

CIS_Kubernetes_v1.23_v1.0.1_Level_2_Worker.audit from CIS Kubernetes v1.23 Benchmark v1.0.1CIS Kubernetes v1.23 Benchmark v1.0.1 L2 WorkerUnix

CONFIGURATION MANAGEMENT

CIS_Kubernetes_v1.24_v1.0.0_Level_1_Worker.audit from CIS Kubernetes v1.24 Benchmark v1.0.0CIS Kubernetes v1.24 Benchmark v1.0.0 L1 WorkerUnix

CONFIGURATION MANAGEMENT

CIS_Kubernetes_v1.24_v1.0.0_Level_2_Master.audit from CIS Kubernetes v1.24 Benchmark v1.0.0CIS Kubernetes v1.24 Benchmark v1.0.0 L2 MasterUnix

CONFIGURATION MANAGEMENT

CIS_MongoDB_3.6_Benchmark_Level_2_OS_Unix_v1.1.0.audit from CIS MongoDB 3.6 BenchmarkCIS MongoDB 3.6 L2 Unix Audit v1.1.0Unix
CIS_MongoDB_4_Benchmark_Level_1_OS_Windows_v1.0.0.audit from CIS MongoDB 4 BenchmarkCIS MongoDB 4 L1 OS Windows v1.0.0Windows
CIS_MongoDB_4_Benchmark_Level_2_OS_Linux_v1.0.0.audit from CIS MongoDB 4 BenchmarkCIS MongoDB 4 L2 OS Linux v1.0.0Unix
CIS_mongodb_5_Benchmark_Level_1_OS_Linux_v1.2.0.audit from CIS MongoDB 5 BenchmarkCIS MongoDB 5 L1 OS Linux v1.2.0Unix
CIS_MongoDB_6_v1.2.0_L1_OS_Linux.audit from CIS MongoDB 6 Benchmark v1.2.0CIS MongoDB 6 v1.2.0 L1 MongoDBUnix
CIS_MongoDB_6_v1.2.0_L2_OS_Windows.audit from CIS MongoDB 6 Benchmark v1.2.0CIS MongoDB 6 v1.2.0 L2 MongoDBWindows
CIS_MongoDB_7_v1.1.0_L1_OS_Windows.audit from CIS MongoDB 7 Benchmark v1.1.0CIS MongoDB 7 v1.1.0 L1 MongoDBWindows
CIS_MongoDB_7_v1.1.0_L2_OS_Linux.audit from CIS MongoDB 7 Benchmark v1.1.0CIS MongoDB 7 v1.1.0 L2 MongoDBUnix
CIS_PostgreSQL_9.5_v1.1.0_L1_OS_Linux.audit from CIS PostgreSQL 9.5 Benchmark v1.1.0CIS PostgreSQL 9.5 OS v1.1.0Unix
CIS_PostgreSQL_16_v1.0.0_L1_OS_Linux.audit from CIS PostgreSQL 16 Benchmark v1.0.0CIS PostgreSQL 16 OS v1.0.0Unix
CIS_v1.1.0_Oracle_11g_OS_Windows_Level_2.audit from CIS v1.1.0 Oracle 11gCIS v1.1.0 Oracle 11g OS Windows Level 2Windows
CISC-RT-000730 - The Cisco PE switch must be configured to block any traffic that is destined to the IP core infrastructure.DISA STIG Cisco IOS Switch RTR v3r1Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

EX13-CA-000010 - Exchange must use Encryption for OWA access.DISA Microsoft Exchange 2013 Client Access Server STIG v2r2Windows

ACCESS CONTROL

EX13-CA-000035 - Exchange ActiveSync (EAS) must only use certificate-based authentication to access email - ClientCertAuthDISA Microsoft Exchange 2013 Client Access Server STIG v2r2Windows

ACCESS CONTROL

EX16-MB-000430 - The Exchange global inbound message size must be controlled.DISA Microsoft Exchange 2016 Mailbox Server STIG v2r6Windows

SYSTEM AND COMMUNICATIONS PROTECTION

EX19-MB-000007 - Exchange must use encryption for Outlook Web App (OWA) access.DISA Microsoft Exchange 2019 Mailbox Server STIG v2r2Windows

ACCESS CONTROL

EX19-MB-000126 - The Exchange send connector connections count must be limited.DISA Microsoft Exchange 2019 Mailbox Server STIG v2r2Windows

SYSTEM AND COMMUNICATIONS PROTECTION

GEN007020 - The Stream Control Transmission Protocol (SCTP) must be disabled unless required.DISA STIG for Oracle Linux 5 v2r1Unix

CONFIGURATION MANAGEMENT

MS.EXO.5.1v1 - SMTP AUTH SHALL be disabled.CISA SCuBA Microsoft 365 Exchange Online v1.5.0microsoft_azure

CONFIGURATION MANAGEMENT

OH12-1X-000322 - OHS must have the SSLEngine, SSLProtocol, and SSLWallet directives enabled and configured to maintain the confidentiality of controlled information during transmission through the use of an approved TLS version - SSLWalletDISA STIG Oracle HTTP Server 12.1.3 v2r3Unix

SYSTEM AND COMMUNICATIONS PROTECTION

SPLK-CL-000190 - Splunk Enterprise installation directories must be secured.DISA STIG Splunk Enterprise 8.x for Linux v2r2 STIG OSUnix

AUDIT AND ACCOUNTABILITY

SPLK-CL-000280 - Splunk Enterprise must be configured with a report to notify the System Administrator (SA) and Information System Security Officer (ISSO), at a minimum, when an attack is detected on multiple devices and hosts within its scope of coverage.DISA STIG Splunk Enterprise 8.x for Linux v2r2 STIG REST APISplunk

CONFIGURATION MANAGEMENT

SPLK-CL-000320 - Splunk Enterprise must be configured to notify the System Administrator (SA) and Information System Security Officer (ISSO), at a minimum, when an attack is detected on multiple devices and hosts within its scope of coverage.DISA STIG Splunk Enterprise 7.x for Windows v3r1 REST APISplunk

CONFIGURATION MANAGEMENT

VCLD-70-000017 - VAMI must protect the keystore from unauthorized access - MIME that invoke OS shell programs disabled.DISA STIG VMware vSphere 7.0 VAMI v1r2Unix

IDENTIFICATION AND AUTHENTICATION

VCRP-67-000007 - The rhttpproxy private key file must be protected from unauthorized access.DISA STIG VMware vSphere 6.7 RhttpProxy v1r3Unix

IDENTIFICATION AND AUTHENTICATION

WN12-CC-000070 - Trusted app installation must be enabled to allow for signed enterprise line of business apps.DISA Windows Server 2012 and 2012 R2 MS STIG v3r7Windows

CONFIGURATION MANAGEMENT

WN12-CC-000070 - Trusted app installation must be enabled to allow for signed enterprise line of business apps.DISA Windows Server 2012 and 2012 R2 DC STIG v3r7Windows

CONFIGURATION MANAGEMENT

WN16-CC-000290 - Windows Telemetry must be configured to Security or Basic.DISA Microsoft Windows Server 2016 STIG v2r10Windows

CONFIGURATION MANAGEMENT