Item Search

NameAudit NamePluginCategory
1.2 Set 'Allow Active X One Off Forms' to 'Enabled:Load only Outlook Controls'CIS MS Office Outlook 2010 v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

1.7 Ensure logging data is monitoredCIS Juniper OS Benchmark v2.1.0 L1Juniper

AUDIT AND ACCOUNTABILITY

1.9 WN16-00-000100CIS Microsoft Windows Server 2016 STIG v4.0.0 DC CAT IIWindows

CONFIGURATION MANAGEMENT

1.9 WN16-00-000100CIS Microsoft Windows Server 2016 STIG v4.0.0 MS CAT IIWindows

CONFIGURATION MANAGEMENT

1.9 WN19-00-000090CIS Microsoft Windows Server 2019 STIG v4.0.0 MS CAT IIWindows

CONFIGURATION MANAGEMENT

1.9 WN19-00-000090CIS Microsoft Windows Server 2019 STIG v4.0.0 DC CAT IIWindows

CONFIGURATION MANAGEMENT

1.9 WN22-00-000090CIS Microsoft Windows Server 2022 STIG v3.0.0 DC CAT IIWindows

CONFIGURATION MANAGEMENT

1.9 WN22-00-000090CIS Microsoft Windows Server 2022 STIG v3.0.0 MS CAT IIWindows

CONFIGURATION MANAGEMENT

1.13.5 Ensure 'Allow Active X One Off Forms' is set to Enabled:Load only Outlook ControlsCIS Microsoft Office Outlook 2016 v1.1.0 Level 1Windows

SYSTEM AND COMMUNICATIONS PROTECTION

1.13.5 Ensure 'Allow Active X One Off Forms' is set to Enabled:Load only Outlook ControlsCIS Microsoft Office Outlook 2013 v1.1.0 Level 1Windows

SYSTEM AND COMMUNICATIONS PROTECTION

1.20 IBMW-LS-000770CIS IBM WebSphere Liberty Server STIG v1.0.0 CAT IUnix

ACCESS CONTROL

1.24 IBMW-LS-000970CIS IBM WebSphere Liberty Server STIG v1.0.0 CAT IIUnix

IDENTIFICATION AND AUTHENTICATION

1.75 O365-OU-000007CIS Microsoft Office 365 ProPlus STIG v1.1.0 CAT IIWindows

SYSTEM AND COMMUNICATIONS PROTECTION

2.0 Install & Config - 'Disable FilerView HTTP'TNS NetApp Data ONTAP 7GNetApp

CONFIGURATION MANAGEMENT

2.5.14.3.5 (L1) Ensure 'Allow Active X One Off Forms' is set to 'Enabled: Load only Outlook Controls'CIS Microsoft Intune for Office v1.1.0 L1Windows

CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION

4.1.4 Ensure only modern TLS protocols are usedCIS NGINX v3.0.0 L1 ProxyUnix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION

4.1.4 Ensure only modern TLS protocols are usedCIS NGINX v3.0.0 L1 LoadbalancerUnix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION

4.1.4 Ensure only modern TLS protocols are usedCIS NGINX v3.0.0 L1 WebserverUnix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION

4.3.14 Ensure 'skipResourceOwnerValidation' is set to 'false' in OAuth 2.0CIS IBM WebSphere Liberty v1.0.0 L1Unix

IDENTIFICATION AND AUTHENTICATION

4.5 Set Security TLS Version MinimumCIS Mozilla Firefox 102 ESR Windows L1 v1.0.0Windows

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION

4.10.9.1.3 Ensure 'Prevent installation of devices that match any of these device IDs: Prevent installation of devices that match any of these device IDs' is set to 'PCI\CC_0C0A'CIS Microsoft Intune for Windows 10 v5.0.0 BLWindows

MEDIA PROTECTION

5.1 Set 'Turn off Encryption Support' to 'Use TLS 1.1 and TLS 1.2'CIS IE 10 v1.1.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

5.4 CIFS - 'cifs.smb2.durable_handle.enable = on'TNS NetApp Data ONTAP 7GNetApp

CONFIGURATION MANAGEMENT

5.4 CIFS - 'cifs.smb2.durable_handle.timeout'TNS NetApp Data ONTAP 7GNetApp

ACCESS CONTROL

6.17 Ensure Biosdevname is not enabledCIS Ubuntu 12.04 LTS Benchmark L1 v1.1.0Unix

CONFIGURATION MANAGEMENT

7.4 Ensure TLS 1.0 is disabledCIS IIS 8.0 v1.5.1 Level 2Windows

SYSTEM AND COMMUNICATIONS PROTECTION

7.4 Ensure TLS 1.0 is enabledCIS IIS 7 L1 v1.8.0Windows
7.4 Ensure TLS 1.0 is enabled - DisabledByDefaultCIS IIS 7 L1 v1.8.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

7.4 Ensure TLS 1.0 is enabled - enabledCIS IIS 7 L1 v1.8.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

8.2.8 (L1) Ensure PCI and PCIe device passthrough is disabledCIS VMware ESXi 7.0 v1.5.0 L1VMware

CONFIGURATION MANAGEMENT

8.2.8 Ensure PCI and PCIe device passthrough is disabledCIS VMware ESXi 6.7 v1.3.0 Level 1VMware

CONFIGURATION MANAGEMENT

Allow Active X One Off FormsMSCT Microsoft 365 Apps for Enterprise 2206 v1.0.0Windows

SYSTEM AND COMMUNICATIONS PROTECTION

DTBI014 - The IE TLS parameter must be set correctly.DISA STIG Microsoft Internet Explorer 9 v1r15Windows

SYSTEM AND COMMUNICATIONS PROTECTION

IBMW-LS-000020 - The WebSphere Liberty Server Quality of Protection (QoP) must be set to use TLSv1.2 or higher.DISA IBM WebSphere Liberty Server STIG v2r2Unix

ACCESS CONTROL

IBMW-LS-000020 - The WebSphere Liberty Server Quality of Protection (QoP) must be set to use TLSv1.2 or higher.DISA IBM WebSphere Liberty Server STIG v2r4Unix

ACCESS CONTROL

IBMW-LS-000030 - Security cookies must be set to HTTPOnly.DISA IBM WebSphere Liberty Server STIG v2r4Unix

ACCESS CONTROL

IBMW-LS-000030 - Security cookies must be set to HTTPOnly.DISA IBM WebSphere Liberty Server STIG v2r2Unix

ACCESS CONTROL

IBMW-LS-000040 - The WebSphere Liberty Server must log remote session and security activity.DISA IBM WebSphere Liberty Server STIG v2r2Unix

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, SYSTEM AND INFORMATION INTEGRITY

IBMW-LS-000040 - The WebSphere Liberty Server must log remote session and security activity.DISA IBM WebSphere Liberty Server STIG v2r4Unix

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, SYSTEM AND INFORMATION INTEGRITY

IBMW-LS-000381 - Basic Authentication must be disabled.DISA IBM WebSphere Liberty Server STIG v2r4Unix

IDENTIFICATION AND AUTHENTICATION

MYS8-00-011500 - The MySQL Database Server 8.0 must use NSA-approved cryptography to protect classified information in accordance with the data owner's requirements.DISA Oracle MySQL 8.0 v2r2 DBMySQLDB

SYSTEM AND COMMUNICATIONS PROTECTION

MYS8-00-011500 - The MySQL Database Server 8.0 must use NSA-approved cryptography to protect classified information in accordance with the data owner's requirements.DISA Oracle MySQL 8.0 v2r2 OS LinuxUnix

SYSTEM AND COMMUNICATIONS PROTECTION

VM: vm-8.pci-passthroughVMware vSphere Security Configuration and Hardening GuideVMware

CONFIGURATION MANAGEMENT

WN10-EP-000310 - Windows 10 Kernel (Direct Memory Access) DMA Protection must be enabled.DISA Microsoft Windows 10 STIG v3r6Windows

SYSTEM AND COMMUNICATIONS PROTECTION

WN11-00-000010 - Windows 11 systems must have a Trusted Platform Module (TPM) enabled.DISA Microsoft Windows 11 STIG v2r8Windows

SYSTEM AND COMMUNICATIONS PROTECTION

WN11-EP-000310 - Windows 11 Kernel (Direct Memory Access) DMA Protection must be enabled.DISA Microsoft Windows 11 STIG v2r8Windows

AUDIT AND ACCOUNTABILITY

WN16-00-000100 - Windows Server 2016 domain-joined systems must have a Trusted Platform Module (TPM) enabled and ready for use.DISA Microsoft Windows Server 2016 STIG v2r10Windows

CONFIGURATION MANAGEMENT

WN19-00-000090 - Windows Server 2019 domain-joined systems must have a Trusted Platform Module (TPM) enabled and ready for use.DISA Microsoft Windows Server 2019 STIG v3r8Windows

CONFIGURATION MANAGEMENT

WN22-00-000090 - Windows Server 2022 domain-joined systems must have a Trusted Platform Module (TPM) enabled and ready for use.DISA Microsoft Windows Server 2022 STIG v2r8Windows

CONFIGURATION MANAGEMENT

WN25-00-000090 - Windows Server 2025 domain-joined systems must have a Trusted Platform Module (TPM) enabled and ready for use.DISA Microsoft Windows Server 2025 STIG v1r1Windows

CONFIGURATION MANAGEMENT