Item Search

NameAudit NamePluginCategory
18.9.19.1 (L1) Ensure 'Turn off desktop gadgets' is set to 'Enabled'CIS Microsoft Windows Server 2008 Domain Controller Level 1 v3.3.1Windows

CONFIGURATION MANAGEMENT

18.9.47.11.1 (L2) Ensure 'Enable/Disable PerfTrack' is set to 'Disabled'CIS Microsoft Windows Server 2016 v4.0.0 L2 DCWindows

CONFIGURATION MANAGEMENT

18.9.49.11.1 Ensure 'Enable/Disable PerfTrack' is set to 'Disabled'CIS Microsoft Windows Server 2022 v5.1.0 L2 DCWindows

CONFIGURATION MANAGEMENT

18.9.49.11.1 Ensure 'Enable/Disable PerfTrack' is set to 'Disabled'CIS Microsoft Windows Server 2025 v2.1.0 L2 MSWindows

CONFIGURATION MANAGEMENT

OL07-00-010060 - The Oracle Linux operating system must enable a user session lock until that user re-establishes access using established identification and authentication procedures.DISA Oracle Linux 7 STIG v3r5Unix

ACCESS CONTROL

OL07-00-010081 - The Oracle Linux operating system must prevent a user from overriding the screensaver lock-delay setting for the graphical user interface.DISA Oracle Linux 7 STIG v3r5Unix

ACCESS CONTROL

OL07-00-010120 - The Oracle Linux operating system must be configured so that when passwords are changed or new passwords are established, the new password must contain at least one upper-case character.DISA Oracle Linux 7 STIG v3r5Unix

IDENTIFICATION AND AUTHENTICATION

OL07-00-010160 - The Oracle Linux operating system must be configured so that when passwords are changed a minimum of eight of the total number of characters must be changed.DISA Oracle Linux 7 STIG v3r5Unix

IDENTIFICATION AND AUTHENTICATION

OL07-00-010180 - The Oracle Linux operating system must be configured so that when passwords are changed the number of repeating consecutive characters must not be more than three characters.DISA Oracle Linux 7 STIG v3r5Unix

IDENTIFICATION AND AUTHENTICATION

OL07-00-010190 - The Oracle Linux operating system must be configured so that when passwords are changed the number of repeating characters of the same character class must not be more than four characters.DISA Oracle Linux 7 STIG v3r5Unix

IDENTIFICATION AND AUTHENTICATION

OL07-00-010291 - The Oracle Linux operating system must not have accounts configured with blank or null passwords.DISA Oracle Linux 7 STIG v3r5Unix

CONFIGURATION MANAGEMENT

OL07-00-010340 - The Oracle Linux operating system must be configured so that users must provide a password for privilege escalation.DISA Oracle Linux 7 STIG v3r5Unix

IDENTIFICATION AND AUTHENTICATION

OL07-00-010481 - The Oracle Linux operating system must require authentication upon booting into single-user and maintenance modes.DISA Oracle Linux 7 STIG v3r5Unix

ACCESS CONTROL

OL07-00-010500 - The Oracle Linux operating system must uniquely identify and must authenticate organizational users (or processes acting on behalf of organizational users) using multifactor authentication.DISA Oracle Linux 7 STIG v3r5Unix

IDENTIFICATION AND AUTHENTICATION

OL07-00-020023 - The Oracle Linux operating system must elevate the SELinux context when an administrator calls the sudo command.DISA Oracle Linux 7 STIG v3r5Unix

ACCESS CONTROL

OL07-00-020050 - The Oracle Linux operating system must prevent the installation of software, patches, service packs, device drivers, or operating system components from a repository without verification they have been digitally signed using a certificate that is issued by a Certificate Authority (CA) that is recognized and approved by the organization - CA that is recognized and approved by the organization.DISA Oracle Linux 7 STIG v3r5Unix

CONFIGURATION MANAGEMENT

OL07-00-020250 - The Oracle Linux operating system must be a vendor-supported release.DISA Oracle Linux 7 STIG v3r5Unix

CONFIGURATION MANAGEMENT

OL07-00-020630 - The Oracle Linux operating system must be configured so that all local interactive user home directories have mode 0750 or less permissive.DISA Oracle Linux 7 STIG v3r5Unix

CONFIGURATION MANAGEMENT

OL07-00-020690 - The Oracle Linux operating system must be configured so that all local initialization files for interactive users are owned by the home directory user or root.DISA Oracle Linux 7 STIG v3r5Unix

CONFIGURATION MANAGEMENT

OL07-00-021021 - The Oracle Linux operating system must prevent binary files from being executed on file systems that are being imported via Network File System (NFS) - NFS.DISA Oracle Linux 7 STIG v3r5Unix

CONFIGURATION MANAGEMENT

OL07-00-021100 - The Oracle Linux operating system must have cron logging implemented.DISA Oracle Linux 7 STIG v3r5Unix

CONFIGURATION MANAGEMENT

OL07-00-021300 - The Oracle Linux operating system must disable Kernel core dumps unless needed.DISA Oracle Linux 7 STIG v3r5Unix

CONFIGURATION MANAGEMENT

OL07-00-021350 - The Oracle Linux operating system must implement NIST FIPS-validated cryptography for the following: to provision digital signatures, to generate cryptographic hashes, and to protect data requiring data-at-rest protections in accordance with applicable federal laws, Executive Orders, directives, policies, regulations, and standards.DISA Oracle Linux 7 STIG v3r5Unix

ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION

OL07-00-021610 - The Oracle Linux operating system must be configured so that the file integrity tool is configured to verify extended attributes.DISA Oracle Linux 7 STIG v3r5Unix

CONFIGURATION MANAGEMENT

OL07-00-030000 - The Oracle Linux operating system must be configured so that auditing is configured to produce records containing information to establish what type of events occurred, where the events occurred, the source of the events, and the outcome of the events. These audit records must also identify individual identities of group account users.DISA Oracle Linux 7 STIG v3r5Unix

AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT

OL07-00-030210 - The Oracle Linux operating system must take appropriate action when the remote logging buffer is full.DISA Oracle Linux 7 STIG v3r5Unix

AUDIT AND ACCOUNTABILITY

OL07-00-030310 - The Oracle Linux operating system must encrypt the transfer of audit records off-loaded onto a different system or media from the system being audited.DISA Oracle Linux 7 STIG v3r5Unix

AUDIT AND ACCOUNTABILITY

OL07-00-030410 - The Oracle Linux operating system must audit all uses of the chmod, fchmod, and fchmodat syscalls.DISA Oracle Linux 7 STIG v3r5Unix

AUDIT AND ACCOUNTABILITY

OL07-00-030660 - The Oracle Linux operating system must audit all uses of the chage command.DISA Oracle Linux 7 STIG v3r5Unix

AUDIT AND ACCOUNTABILITY

OL07-00-030680 - The Oracle Linux operating system must audit all uses of the su command.DISA Oracle Linux 7 STIG v3r5Unix

AUDIT AND ACCOUNTABILITY

OL07-00-030690 - The Oracle Linux operating system must audit all uses of the sudo command.DISA Oracle Linux 7 STIG v3r5Unix

AUDIT AND ACCOUNTABILITY

OL07-00-030700 - The Oracle Linux operating system must audit all uses of the sudoers file and all files in the /etc/sudoers.d/ directory.DISA Oracle Linux 7 STIG v3r5Unix

AUDIT AND ACCOUNTABILITY

OL07-00-030770 - The Oracle Linux operating system must audit all uses of the postqueue command.DISA Oracle Linux 7 STIG v3r5Unix

AUDIT AND ACCOUNTABILITY

OL07-00-030780 - The Oracle Linux operating system must audit all uses of the ssh-keysign command.DISA Oracle Linux 7 STIG v3r5Unix

AUDIT AND ACCOUNTABILITY

OL07-00-030830 - The Oracle Linux operating system must audit all uses of the delete_module syscall.DISA Oracle Linux 7 STIG v3r5Unix

AUDIT AND ACCOUNTABILITY

OL07-00-030840 - The Oracle Linux operating system must audit all uses of the kmod command.DISA Oracle Linux 7 STIG v3r5Unix

AUDIT AND ACCOUNTABILITY

OL07-00-030874 - The Oracle Linux operating system must generate audit records for all account creations, modifications, disabling, and termination events that affect /etc/security/opasswd.DISA Oracle Linux 7 STIG v3r5Unix

ACCESS CONTROL

OL07-00-031010 - The Oracle Linux operating system must be configured so that the rsyslog daemon does not accept log messages from other servers unless the server is being used for log aggregation.DISA Oracle Linux 7 STIG v3r5Unix

CONFIGURATION MANAGEMENT

OL07-00-040180 - The Oracle Linux operating system must implement cryptography to protect the integrity of Lightweight Directory Access Protocol (LDAP) authentication communications - LDAP authentication communications.DISA Oracle Linux 7 STIG v3r5Unix

ACCESS CONTROL

OL07-00-040430 - The Oracle Linux operating system must be configured so that the SSH daemon does not permit Generic Security Service Application Program Interface (GSSAPI) authentication unless needed - GSSAPI authentication unless needed.DISA Oracle Linux 7 STIG v3r5Unix

CONFIGURATION MANAGEMENT

OL07-00-040440 - The Oracle Linux operating system must be configured so that the SSH daemon does not permit Kerberos authentication unless needed.DISA Oracle Linux 7 STIG v3r5Unix

CONFIGURATION MANAGEMENT

OL07-00-040460 - The Oracle Linux operating system must be configured so that the SSH daemon uses privilege separation.DISA Oracle Linux 7 STIG v3r5Unix

CONFIGURATION MANAGEMENT

OL07-00-040540 - The Oracle Linux operating system must not contain .shosts files.DISA Oracle Linux 7 STIG v3r5Unix

CONFIGURATION MANAGEMENT

OL07-00-040550 - The Oracle Linux operating system must not contain shosts.equiv files.DISA Oracle Linux 7 STIG v3r5Unix

CONFIGURATION MANAGEMENT

OL07-00-040612 - The Oracle Linux operating system must use a reverse-path filter for IPv4 network traffic when possible by default.DISA Oracle Linux 7 STIG v3r5Unix

CONFIGURATION MANAGEMENT

OL07-00-040620 - The Oracle Linux operating system must not forward Internet Protocol version 4 (IPv4) source-routed packets by default.DISA Oracle Linux 7 STIG v3r5Unix

CONFIGURATION MANAGEMENT

OL07-00-040650 - The Oracle Linux operating system must not allow interfaces to perform Internet Protocol version 4 (IPv4) Internet Control Message Protocol (ICMP) redirects by default.DISA Oracle Linux 7 STIG v3r5Unix

CONFIGURATION MANAGEMENT

OL07-00-040670 - Network interfaces configured on The Oracle Linux operating system must not be in promiscuous mode.DISA Oracle Linux 7 STIG v3r5Unix

CONFIGURATION MANAGEMENT

OL07-00-040680 - The Oracle Linux operating system must be configured to prevent unrestricted mail relaying.DISA Oracle Linux 7 STIG v3r5Unix

CONFIGURATION MANAGEMENT

OL07-00-040740 - The Oracle Linux operating system must not be performing packet forwarding unless the system is a router.DISA Oracle Linux 7 STIG v3r5Unix

CONFIGURATION MANAGEMENT