Item Search

NameAudit NamePluginCategory
DTAVSEL-100 - The McAfee VirusScan Enterprise for Linux 1.9.x/2.0.x must be configured to run a scheduled On-Demand scan at least once a week.McAfee Virus Scan Enterprise for Linux 1.9x/2.0x Managed Client v1r5Unix

SYSTEM AND INFORMATION INTEGRITY

DTAVSEL-102 - The McAfee VirusScan Enterprise for Linux 1.9.x/2.0.x On-Demand scanner must be configured to find unknown program viruses.McAfee Virus Scan Enterprise for Linux 1.9x/2.0x Managed Client v1r5Unix

SYSTEM AND INFORMATION INTEGRITY

DTAVSEL-105 - The McAfee VirusScan Enterprise for Linux 1.9.x/2.0.x On-Demand scanner must be configured to scan all file types.McAfee Virus Scan Enterprise for Linux 1.9x/2.0x Managed Client v1r5Unix

SYSTEM AND INFORMATION INTEGRITY

DTAVSEL-106 - The McAfee VirusScan Enterprise for Linux 1.9.x/2.0.x On-Demand scanner must be configured to Clean infected files automatically as first action when a virus or Trojan is detected.McAfee Virus Scan Enterprise for Linux 1.9x/2.0x Managed Client v1r5Unix

SYSTEM AND INFORMATION INTEGRITY

DTAVSEL-202 - The nails user and nailsgroup group must be restricted to the least privilege access required for the intended role - groupMcAfee Virus Scan Enterprise for Linux 1.9x/2.0x Local Client v1r6Unix

ACCESS CONTROL

DTAVSEL-202 - The nails user and nailsgroup group must be restricted to the least privilege access required for the intended role - groupMcAfee Virus Scan Enterprise for Linux 1.9x/2.0x Managed Client v1r5Unix

ACCESS CONTROL

DTAVSEL-202 - The nails user and nailsgroup group must be restricted to the least privilege access required for the intended role - userMcAfee Virus Scan Enterprise for Linux 1.9x/2.0x Managed Client v1r5Unix

ACCESS CONTROL

DTOO265 - Outlook - Warning about invalid signatures must be enforced.DISA Microsoft Outlook 2010 STIG v1r14Windows

IDENTIFICATION AND AUTHENTICATION

DTOO267 - Outlook - Retrieving of CRL data must be set for online action.DISA Microsoft Outlook 2010 STIG v1r14Windows

IDENTIFICATION AND AUTHENTICATION

DTOO268 - Outlook - Missing Root Certificates warning must be enforced.DISA Microsoft Outlook 2010 STIG v1r14Windows

IDENTIFICATION AND AUTHENTICATION

EDGE-00-000006 - Background processing must be disabled.DISA STIG Edge v2r3Windows

CONFIGURATION MANAGEMENT

EDGE-00-000020 - Importing of payment info must be disabled.DISA STIG Edge v2r3Windows

CONFIGURATION MANAGEMENT

EDGE-00-000023 - Importing of shortcuts must be disabled.DISA STIG Edge v2r3Windows

CONFIGURATION MANAGEMENT

EDGE-00-000026 - Google Cast must be disabled.DISA STIG Edge v2r3Windows

CONFIGURATION MANAGEMENT

EDGE-00-000033 - Browser history must be saved.DISA STIG Edge v2r3Windows

AUDIT AND ACCOUNTABILITY

EDGE-00-000041 - Extensions installation must be blocklisted by default.DISA STIG Edge v2r3Windows

CONFIGURATION MANAGEMENT

EDGE-00-000051 - Microsoft Defender SmartScreen must be configured to block potentially unwanted apps.DISA STIG Edge v2r3Windows

CONFIGURATION MANAGEMENT

MD4X-00-002800 - MongoDB must uniquely identify and authenticate organizational users (or processes acting on behalf of organizational users).DISA STIG MongoDB Enterprise Advanced 4.x v1r4 OSUnix

IDENTIFICATION AND AUTHENTICATION

MD4X-00-003400 - MongoDB must uniquely identify and authenticate non-organizational users (or processes acting on behalf of non-organizational users).DISA STIG MongoDB Enterprise Advanced 4.x v1r4 DBMongoDB

IDENTIFICATION AND AUTHENTICATION

MD4X-00-004000 - Database contents must be protected from unauthorized and unintended information transfer by enforcement of a data-transfer policy.DISA STIG MongoDB Enterprise Advanced 4.x v1r4 OSUnix

SYSTEM AND COMMUNICATIONS PROTECTION

MD4X-00-004400 - MongoDB must automatically terminate a user session after organization-defined conditions or trigger events requiring session disconnect.DISA STIG MongoDB Enterprise Advanced 4.x v1r4 OSUnix

ACCESS CONTROL

MD4X-00-004900 - MongoDB must allocate audit record storage capacity in accordance with site audit record storage requirements.DISA STIG MongoDB Enterprise Advanced 4.x v1r4 OSUnix

AUDIT AND ACCOUNTABILITY

MOTO-09-002800 - The Motorola Android Pie must be configured to disable developer modes.AirWatch - DISA Motorola Android Pie.x COBO v1r2MDM

CONFIGURATION MANAGEMENT

MOTO-09-002800 - The Motorola Android Pie must be configured to disable developer modes.AirWatch - DISA Motorola Android Pie.x COPE v1r2MDM

CONFIGURATION MANAGEMENT

MOTO-09-008800 - Motorola Android Pie must be configured to enforce that Wi-Fi Sharing is disabled.AirWatch - DISA Motorola Android Pie.x COPE v1r2MDM

CONFIGURATION MANAGEMENT

MSFT-11-000200 - Microsoft Android 11 must be configured to not allow passwords that include more than two repeating or sequential characters - TypeMobileIron - DISA Microsoft Android 11 COBO v1r2MDM

CONFIGURATION MANAGEMENT

MSFT-11-000300 - Microsoft Android 11 must be configured to enable a screen-lock policy that will lock the display after a period of inactivity.MobileIron - DISA Microsoft Android 11 COPE v1r2MDM

ACCESS CONTROL

MSFT-11-000500 - Microsoft Android 11 must be configured to not allow more than 10 consecutive failed authentication attempts.MobileIron - DISA Microsoft Android 11 COBO v1r2MDM

ACCESS CONTROL

MSFT-11-000500 - Microsoft Android 11 must be configured to not allow more than 10 consecutive failed authentication attempts.AirWatch - DISA Microsoft Android 11 COPE v1r2MDM

ACCESS CONTROL

MSFT-11-000800 - Microsoft Android 11 must be configured to enforce an application installation policy by specifying one or more authorized application repositories, including [selection: DOD-approved commercial app repository, EMM server, mobile application store] - Unknown SourcesAirWatch - DISA Microsoft Android 11 COPE v1r2MDM

CONFIGURATION MANAGEMENT

MSFT-11-000800 - Microsoft Android 11 must be configured to enforce an application installation policy by specifying one or more authorized application repositories, including [selection: DOD-approved commercial app repository, EMM server, mobile application store].MobileIron - DISA Microsoft Android 11 COPE v1r2MDM

CONFIGURATION MANAGEMENT

MSFT-11-001100 - Microsoft Android 11 allow list must be configured to not include applications with the following characteristics: - Back up MD data to non-DOD cloud servers (including user and application access to cloud backup services);- Transmit MD diagnostic data to non-DOD servers;- Voice assistant application if available when MD is locked;- Voice dialing application if available when MD is locked;- Allows synchronization of data or applications between devices associated with user; and- Allows unencrypted (or encrypted but not FIPS 140-2/FIPS 140-3 validated) data sharing with other MDs or printers.AirWatch - DISA Microsoft Android 11 COPE v1r2MDM

CONFIGURATION MANAGEMENT

MSFT-11-002800 - Microsoft Android 11 must be configured to disable developer modes.AirWatch - DISA Microsoft Android 11 COBO v1r2MDM

CONFIGURATION MANAGEMENT

MSFT-11-003500 - Microsoft Android 11 must be configured to disable USB mass storage mode.MobileIron - DISA Microsoft Android 11 COBO v1r2MDM

SYSTEM AND COMMUNICATIONS PROTECTION

MSFT-11-003500 - Microsoft Android 11 must be configured to disable USB mass storage mode.AirWatch - DISA Microsoft Android 11 COPE v1r2MDM

SYSTEM AND COMMUNICATIONS PROTECTION

MSFT-11-003500 - Microsoft Android 11 must be configured to disable USB mass storage mode.MobileIron - DISA Microsoft Android 11 COPE v1r2MDM

SYSTEM AND COMMUNICATIONS PROTECTION

MSFT-11-003700 - Microsoft Android 11 must be configured to not allow backup of [all applications, configuration data] to locally connected systems.MobileIron - DISA Microsoft Android 11 COPE v1r2MDM

SYSTEM AND COMMUNICATIONS PROTECTION

MSFT-11-008700 - Microsoft Android 11 users must complete required training.AirWatch - DISA Microsoft Android 11 COBO v1r2MDM

CONFIGURATION MANAGEMENT

MSFT-11-008700 - Microsoft Android 11 users must complete required training.AirWatch - DISA Microsoft Android 11 COPE v1r2MDM

CONFIGURATION MANAGEMENT

MSFT-11-008800 - Microsoft Android 11 must be configured to enforce that Wi-Fi Sharing is disabled.MobileIron - DISA Microsoft Android 11 COPE v1r2MDM

CONFIGURATION MANAGEMENT

MSFT-11-009000 - Microsoft Android 11 must have the DOD root and intermediate PKI certificates installed.AirWatch - DISA Microsoft Android 11 COBO v1r2MDM

CONFIGURATION MANAGEMENT

MSFT-11-009000 - Microsoft Android 11 must have the DOD root and intermediate PKI certificates installed.MobileIron - DISA Microsoft Android 11 COBO v1r2MDM

CONFIGURATION MANAGEMENT

MSFT-11-009400 - Microsoft Android 11 Work Profile must be configured to enforce the system application disable list.AirWatch - DISA Microsoft Android 11 COBO v1r2MDM

CONFIGURATION MANAGEMENT

MSFT-11-009400 - Microsoft Android 11 Work Profile must be configured to enforce the system application disable list.AirWatch - DISA Microsoft Android 11 COPE v1r2MDM

CONFIGURATION MANAGEMENT

MSFT-11-009600 - Microsoft Android 11 must be provisioned as a fully managed device and configured to create a work profile.AirWatch - DISA Microsoft Android 11 COPE v1r2MDM

CONFIGURATION MANAGEMENT

MSFT-11-009800 - Microsoft Android 11 Work Profile must be configured to disable automatic completion of work space internet browser text input.AirWatch - DISA Microsoft Android 11 COPE v1r2MDM

CONFIGURATION MANAGEMENT

MSFT-11-009800 - Microsoft Android 11 Work Profile must be configured to disable automatic completion of work space internet browser text input.MobileIron - DISA Microsoft Android 11 COPE v1r2MDM

CONFIGURATION MANAGEMENT

MSFT-11-010200 - Microsoft Android 11 must be configured to disallow configuration of date and time.MobileIron - DISA Microsoft Android 11 COBO v1r2MDM

CONFIGURATION MANAGEMENT

WN10-AU-000581 - Windows 10 must be configured to audit file system failures.DISA Microsoft Windows 10 STIG v3r6Windows

AUDIT AND ACCOUNTABILITY

WN10-AU-000587 - Windows 10 must be configured to audit sensitive privilege use successes.DISA Microsoft Windows 10 STIG v3r6Windows

AUDIT AND ACCOUNTABILITY