Item Search

NameAudit NamePluginCategory
1.1 Ensure packages are obtained from authorized repositoriesCIS PostgreSQL 9.5 OS v1.1.0Unix

CONFIGURATION MANAGEMENT

1.4.6 Ensure version 7.2 or newer booted with UEFI have a unique name for the grub superusers account - UEFI must have a unique name for the grub superusers account when booting into single-user mode and maintenance.CIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

ACCESS CONTROL

ESXi : apply-patchesVMWare vSphere 5.X Hardening GuideVMware
ESXi : config-firewall-access - 'CIM Server allowed'VMWare vSphere 5.X Hardening GuideVMware

SYSTEM AND COMMUNICATIONS PROTECTION

ESXi : config-firewall-access - 'DHCPv6 blocked'VMWare vSphere 5.X Hardening GuideVMware

SYSTEM AND COMMUNICATIONS PROTECTION

ESXi : config-firewall-access - 'DVSSync blocked'VMWare vSphere 5.X Hardening GuideVMware

SYSTEM AND COMMUNICATIONS PROTECTION

ESXi : config-firewall-access - 'NFC allowed'VMWare vSphere 5.X Hardening GuideVMware

SYSTEM AND COMMUNICATIONS PROTECTION

ESXi : config-firewall-access - 'NTP Client blocked'VMWare vSphere 5.X Hardening GuideVMware

SYSTEM AND COMMUNICATIONS PROTECTION

ESXi : config-firewall-access - 'SNMP Server allowed'VMWare vSphere 5.X Hardening GuideVMware

SYSTEM AND COMMUNICATIONS PROTECTION

ESXi : config-firewall-access - 'VM serial port connected over network blocked'VMWare vSphere 5.X Hardening GuideVMware

SYSTEM AND COMMUNICATIONS PROTECTION

ESXi : config-firewall-access - 'vSphere High Availability Agent blocked'VMWare vSphere 5.X Hardening GuideVMware

SYSTEM AND COMMUNICATIONS PROTECTION

ESXi : enable-chap-authVMWare vSphere 5.X Hardening GuideVMware

IDENTIFICATION AND AUTHENTICATION

ESXi : enable-host-profilesVMWare vSphere 5.X Hardening GuideVMware
ESXi : esxi-no-self-signed-certsVMWare vSphere 5.X Hardening GuideVMware
ESXi : set-shell-interactive-timeoutVMWare vSphere 5.X Hardening GuideVMware

ACCESS CONTROL

ESXi : verify-acceptance-level-certifiedVMWare vSphere 5.X Hardening GuideVMware
ESXi : verify-admin-groupVMWare vSphere 5.X Hardening GuideVMware

ACCESS CONTROL

ESXi : verify-config-filesVMWare vSphere 5.X Hardening GuideVMware
ESXi : verify-install-mediaVMWare vSphere 5.X Hardening GuideVMware
GEN005260 - X Window System connections not required must be disabled.DISA STIG for Oracle Linux 5 v2r1Unix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

PGS9-00-008000 - PostgreSQL must implement NIST FIPS 140-2 or 140-3 validated cryptographic modules to generate and validate cryptographic hashes.DISA STIG PostgreSQL 9.x on RHEL OS v2r5Unix

SYSTEM AND COMMUNICATIONS PROTECTION

PGS9-00-008200 - PostgreSQL must implement NIST FIPS 140-2 or 140-3 validated cryptographic modules to protect unclassified information requiring confidentiality and cryptographic protection, in accordance with the data owners requirements.DISA STIG PostgreSQL 9.x on RHEL OS v2r5Unix

SYSTEM AND COMMUNICATIONS PROTECTION

SOL-11.1-020530 - X displays must not be exported to the world.DISA STIG Solaris 11 X86 v3r1Unix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

SOL-11.1-020540 - .Xauthority or X*.hosts (or equivalent) file(s) must be used to restrict access to the X server.DISA STIG Solaris 11 X86 v3r1Unix

CONFIGURATION MANAGEMENT

SSO : config-ntpVMWare vSphere 5.X Hardening GuideVMware
vCenter : config-ntpVMWare vSphere 5.X Hardening GuideVMware

AUDIT AND ACCOUNTABILITY

vCenter : limit-user-loginVMWare vSphere 5.X Hardening GuideVMware
vCenter : monitor-certificate-accessVMWare vSphere 5.X Hardening GuideVMware
vCenter : remove-expired-certificatesVMWare vSphere 5.X Hardening GuideVMware
vCenter : remove-failed-install-logsVMWare vSphere 5.X Hardening GuideVMware
vCenter : secure-vco-file-accessVMWare vSphere 5.X Hardening GuideVMware
vCenter : verify-client-pluginsVMWare vSphere 5.X Hardening GuideVMware
vCenter : Verify-RDP-encryptionVMWare vSphere 5.X Hardening GuideVMware
VCSA : config-ntpVMWare vSphere 5.X Hardening GuideVMware
vNetwork : enable-bpdu-filterVMWare vSphere 5.X Hardening GuideVMware
vNetwork : isolate-mgmt-network-airgapVMWare vSphere 5.X Hardening GuideVMware
vNetwork : isolate-mgmt-network-vlanVMWare vSphere 5.X Hardening GuideVMware
vNetwork : isolate-vmotion-network-airgapVMWare vSphere 5.X Hardening GuideVMware
vNetwork : label-vswitchesVMWare vSphere 5.X Hardening GuideVMware
vNetwork : limit-network-healthcheckVMWare vSphere 5.X Hardening GuideVMware
vNetwork : no-unused-dvportsVMWare vSphere 5.X Hardening GuideVMware
vNetwork : no-vgt-vlan-4095VMWare vSphere 5.X Hardening GuideVMware

CONFIGURATION MANAGEMENT

vNetwork : reject-forged-transmit - 'vSwitch'VMWare vSphere 5.X Hardening GuideVMware

SYSTEM AND COMMUNICATIONS PROTECTION

vNetwork : reject-mac-changes - 'vSwitch'VMWare vSphere 5.X Hardening GuideVMware

SYSTEM AND COMMUNICATIONS PROTECTION

vNetwork : restrict-netflow-usageVMWare vSphere 5.X Hardening GuideVMware
vNetwork : restrict-portmirror-usageVMWare vSphere 5.X Hardening GuideVMware
VUM : audit-vum-loginVMWare vSphere 5.X Hardening GuideVMware
VUM : isolate-vum-proxyVMWare vSphere 5.X Hardening GuideVMware
VUM : no-vum-self-managementVMWare vSphere 5.X Hardening GuideVMware
WebClient : web-client-timeoutVMWare vSphere 5.X Hardening GuideVMware