Item Search

NameAudit NamePluginCategory
1.328 OL08-00-040150CIS Oracle Linux 8 STIG v1.0.0 CAT IIUnix

ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION

3.3.1.18 Ensure net.ipv4.tcp_syncookies is configuredCIS Debian Linux 12 v2.0.0 L1 ServerUnix

SYSTEM AND COMMUNICATIONS PROTECTION

3.3.1.18 Ensure net.ipv4.tcp_syncookies is configuredCIS Debian Linux 13 v1.0.0 L1 ServerUnix

SYSTEM AND COMMUNICATIONS PROTECTION

3.3.1.18 Ensure net.ipv4.tcp_syncookies is configuredCIS Amazon Linux 2 v4.0.0 L1 ServerUnix

SYSTEM AND COMMUNICATIONS PROTECTION

3.3.1.18 Ensure net.ipv4.tcp_syncookies is configuredCIS Ubuntu Linux 24.04 LTS v2.0.0 L1 ServerUnix

SYSTEM AND COMMUNICATIONS PROTECTION

3.3.1.18 Ensure net.ipv4.tcp_syncookies is configuredCIS Ubuntu Linux 24.04 LTS v2.0.0 L1 WorkstationUnix

SYSTEM AND COMMUNICATIONS PROTECTION

3.3.1.18 Ensure net.ipv4.tcp_syncookies is configuredCIS Debian Linux 12 v2.0.0 L1 WorkstationUnix

SYSTEM AND COMMUNICATIONS PROTECTION

3.3.1.18 Ensure net.ipv4.tcp_syncookies is configuredCIS Debian Linux 13 v1.0.0 L1 WorkstationUnix

SYSTEM AND COMMUNICATIONS PROTECTION

3.3.1.18 Ensure net.ipv4.tcp_syncookies is configuredCIS SUSE Linux Enterprise 16 v1.0.0 L1 ServerUnix

SYSTEM AND COMMUNICATIONS PROTECTION

3.3.1.18 Ensure net.ipv4.tcp_syncookies is configuredCIS SUSE Linux Enterprise 16 v1.0.0 L1 WorkstationUnix

SYSTEM AND COMMUNICATIONS PROTECTION

3.3.1.18 Ensure net.ipv4.tcp_syncookies is configuredCIS Rocky Linux 10 v1.0.0 L1 ServerUnix

SYSTEM AND COMMUNICATIONS PROTECTION

3.3.1.18 Ensure net.ipv4.tcp_syncookies is configuredCIS Ubuntu Linux 22.04 LTS v3.0.0 L1 WorkstationUnix

SYSTEM AND COMMUNICATIONS PROTECTION

3.3.1.18 Ensure net.ipv4.tcp_syncookies is configuredCIS Ubuntu Linux 22.04 LTS v3.0.0 L1 ServerUnix

SYSTEM AND COMMUNICATIONS PROTECTION

3.3.1.18 Ensure net.ipv4.tcp_syncookies is configuredCIS Rocky Linux 10 v1.0.0 L1 WorkstationUnix

SYSTEM AND COMMUNICATIONS PROTECTION

AIX7-00-003096 - AIX must set Stack Execution Disable (SED) system wide mode to all.DISA IBM AIX 7.x STIG v3r3Unix

CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

ARST-L2-000030 - The Arista MLS layer 2 switch must be configured for Storm Control to limit the effects of packet flooding types of denial-of-service (DoS) attacks.DISA STIG Arista MLS EOS 4.2x L2S v2r1Arista

SYSTEM AND COMMUNICATIONS PROTECTION

ARST-L2-000030 - The Arista MLS layer 2 switch must be configured for Storm Control to limit the effects of packet flooding types of denial-of-service (DoS) attacks.DISA Arista MLS EOS 4.X L2S STIG v2r3Arista

SYSTEM AND COMMUNICATIONS PROTECTION

CISC-L2-000040 - The Cisco switch must manage excess bandwidth to limit the effects of packet flooding types of denial-of-service (DoS) attacks.DISA Cisco IOS XE Switch L2S STIG v3r2Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

CISC-L2-000040 - The Cisco switch must manage excess bandwidth to limit the effects of packet-flooding types of denial-of-service (DoS) attacks.DISA Cisco IOS Switch L2S STIG v3r2Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

DKER-EE-001170 - A policy set using the built-in role-based access control (RBAC) capabilities in the Universal Control Plane (UCP) component of Docker Enterprise must be configured.DISA STIG Docker Enterprise 2.x Linux/Unix UCP v2r2Unix

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

DKER-EE-001180 - A policy set using the built-in role-based access control (RBAC) capabilities in the Docker Trusted Registry (DTR) component of Docker Enterprise must be set - repositoryAccessDISA STIG Docker Enterprise 2.x Linux/Unix DTR v2r2Unix

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

DKER-EE-001180 - A policy set using the built-in role-based access control (RBAC) capabilities in the Docker Trusted Registry (DTR) component of Docker Enterprise must be set - team member accessDISA STIG Docker Enterprise 2.x Linux/Unix UCP v2r2Unix

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

EX16-ED-000240 - Exchange message size restrictions must be controlled on Send connectors.DISA Microsoft Exchange 2016 Edge Transport Server STIG v2r6Windows

SYSTEM AND COMMUNICATIONS PROTECTION

EX16-MB-000440 - The Exchange global outbound message size must be controlled.DISA Microsoft Exchange 2016 Mailbox Server STIG v2r6Windows

SYSTEM AND COMMUNICATIONS PROTECTION

F5BI-FW-300017 - The F5 BIG-IP appliance must employ filters that prevent or limit the effects of all types of commonly known denial-of-service (DoS) attacks, including flooding, packet sweeps, and unauthorized port scanning.DISA F5 BIG-IP TMOS Firewall STIG v1r1F5

CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION

GEN003612 - The system must be configured to use TCP syncookies when experiencing a TCP SYN flood.DISA STIG for Oracle Linux 5 v2r1Unix

SYSTEM AND COMMUNICATIONS PROTECTION

JUSX-IP-000005 - The Juniper Networks SRX Series Gateway IDPS must block outbound traffic containing known and unknown DoS attacks by ensuring that rules are applied to outbound communications traffic.DISA Juniper SRX Services Gateway IDPS v2r1Juniper

SYSTEM AND COMMUNICATIONS PROTECTION

JUSX-IP-000006 - The Juniper Networks SRX Series Gateway IDPS must block outbound traffic containing known and unknown DoS attacks by ensuring that signature-based objects are applied to outbound communications traffic.DISA Juniper SRX Services Gateway IDPS v2r1Juniper

SYSTEM AND COMMUNICATIONS PROTECTION

OL08-00-040150 - A firewall must be able to protect against or limit the effects of denial-of-service (DoS) attacks by ensuring OL 8 can implement rate-limiting measures on impacted network interfaces.DISA Oracle Linux 8 STIG v2r9Unix

ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION

PANW-IP-000018 - The Palo Alto Networks security platform must have a denial-of-service (DoS) Protection Profile for outbound traffic applied to a policy for traffic originating from the internal zone going to the external zone.DISA Palo Alto Networks IDPS STIG v3r2Palo_Alto

SYSTEM AND COMMUNICATIONS PROTECTION