Item Search

NameAudit NamePluginCategory
1.1.10 Ensure separate partition exists for /varCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

CONFIGURATION MANAGEMENT

2.2.25 Ensure unrestricted mail relaying is preventedCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

CONFIGURATION MANAGEMENT

3.3.6 Ensure broadcast ICMP requests are ignored - sysctlCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

CONFIGURATION MANAGEMENT

4.010 - User rights assignments must meet minimum requirements. - Create a token objectDISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

4.010 - User rights assignments must meet minimum requirements. - Enable computer and user accounts to be trusted for delegationDISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

4.010 - User rights assignments must meet minimum requirements. - Lock pages in memoryDISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

4.010 - User rights assignments must meet minimum requirements. - Perform volume maintenance tasksDISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

4.043 - The maximum age for machine account passwords is not set to requirements.DISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

5.102 - This check verifies that Windows is configured to have password protection take effect within a limited time frame.DISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

5.135 - Hide mechanism for removing Zone information from file attachments.DISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

5.140 - The HBSS McAfee Agent is not installed. - FrameworkServiceDISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

5.223 - The classic logon screen must be required for user logons.DISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

5.240 - Windows Explorer - Shell Protocol Protected ModeDISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

6.2.19 Ensure all local interactive user home directories are group-ownedCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

CONFIGURATION MANAGEMENT

DTOO137 - Access - Prompts to convert older databases must be enforced.DISA STIG Office 2010 Access v1r11Windows

CONFIGURATION MANAGEMENT

DTOO182 - Office System - The Help Improve Proofing Tools feature for Office must be configured.DISA STIG Office System 2010 v1r13Windows

CONFIGURATION MANAGEMENT

DTOO219 - Outlook - Access restriction settings for published calendars must be configured.DISA STIG Office 2010 Outlook v1r14Windows

CONFIGURATION MANAGEMENT

DTOO239 - Outlook - Outlook Security Mode must be configured to use Group Policy settings.DISA STIG Office 2010 Outlook v1r14Windows

CONFIGURATION MANAGEMENT

DTOO272 - Outlook - Permit download of content from safe zones must be configured.DISA STIG Office 2010 Outlook v1r14Windows

CONFIGURATION MANAGEMENT

DTOO278 - Outlook - Automatically configure user profile based on Active Directory primary SMTP address must be enforced.DISA STIG Office 2010 Outlook v1r14Windows

CONFIGURATION MANAGEMENT

DTOO283 - Outlook - Disabling download full text of articles as HTML must be configured.DISA STIG Office 2010 Outlook v1r14Windows

CONFIGURATION MANAGEMENT

DTOO309 - InfoPath - The InfoPath APTCA Assembly Allowable List must be enforced.DISA STIG Office 2010 InfoPath v1r12Windows

CONFIGURATION MANAGEMENT

DTOO315 - Outlook - Outlook must be configured not to prompt users to choose security settings if default settings fail.DISA STIG Office 2010 Outlook v1r14Windows

CONFIGURATION MANAGEMENT

GEN000360 - Group Identifiers (GIDs) reserved for system accounts must not be assigned to non-system groups.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN000880 - The root account must be the only account having an UID of 0.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN001160 - All files and directories must have a valid owner.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN001610 - Run control scripts' lists of preloaded libraries must contain only absolute paths.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN001780 - Global initialization files must contain the mesg -n or mesg n commands. - '/etc/bashrc'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN001840 - All global initialization files' executable search paths must contain only absolute paths - '/etc/csh.cshrc'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN001850 - Global initialization files' lists of preloaded libraries must contain only absolute paths - '/etc/security/environ'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN001900 - All local initialization files' executable search paths must contain only absolute paths.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN001980 - The .rhosts file must not contain a plus (+) without defining entries for NIS+ netgroups - '~/.rhosts'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN001980 - The /etc/passwd file must not contain a plus (+) without defining entries for NIS+ netgroups - '/etc/passwd'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN002040 - There must be no .rhosts, .shosts, hosts.equiv, or shosts.equiv files on the system - '.rhosts'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN002120 - The /etc/shells (or equivalent) file must exist - '/etc/shells file exists'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN002140 - All shells referenced in /etc/passwd must be listed in the /etc/shells file, except shells specified for preventing loginsDISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN002500 - The sticky bit must be set on all public directories.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN003510 - Kernel core dumps must be disabled unless needed - 'primary dump device'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN003540 - The system must implement non-executable program stacks.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN003601 - TCP backlog queue sizes must be set appropriately.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN004440 - Sendmail logging must not be set to less than nine in the sendmail.cf file.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN004660 - The SMTP service must not have the EXPN feature active.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN004700 - The Sendmail service must not have the wizard backdoor active.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN005480 - The syslog daemon must not accept remote messages unless it is a syslog server documented using site-defined procedures.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN005526 - The SSH daemon must not permit Kerberos authentication unless needed.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN006620 - The system's access control program must be configured to grant or deny system access to specific hosts - 'hosts.deny ALL:ALL'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN008420 - The system must use available memory address randomization techniques.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN008440 - Automated file system mounting tools must not be enabled unless needed.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN008460 - The system must have USB disabled unless needed - 'lsdev'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN008600 - The system must be configured to only boot from the system boot device.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT