| 1.1.12 Ensure that the etcd data directory ownership is set to root:root | CIS Red Hat OpenShift Container Platform v1.9.0 L1 | OpenShift | ACCESS CONTROL |
| 1.3 O19C-00-000300 | CIS Oracle Database 19c STIG v1.1.0 CAT II OracleDB | OracleDB | ACCESS CONTROL |
| 1.78 SQLI-22-018100 | CIS Microsoft SQL Server 2022 Instance STIG v1.0.0 CAT I MS_SQLDB | MS_SQLDB | IDENTIFICATION AND AUTHENTICATION |
| 1.160 WN16-DC-000150 | CIS Microsoft Windows Server 2016 STIG v4.0.0 DC CAT I | Windows | CONFIGURATION MANAGEMENT |
| AADC-CL-000280 - Adobe Acrobat Pro DC Classic access to unknown websites must be restricted. | DISA STIG Adobe Acrobat Pro DC Classic Track v2r1 | Windows | CONFIGURATION MANAGEMENT |
| AADC-CL-000295 - The Adobe Acrobat Pro DC Classic Send and Track plugin for Outlook must be disabled. | DISA STIG Adobe Acrobat Pro DC Classic Track v2r1 | Windows | CONFIGURATION MANAGEMENT |
| AADC-CL-001320 - Adobe Acrobat Pro DC Classic Periodic downloading of Adobe certificates must be disabled. | DISA STIG Adobe Acrobat Pro DC Classic Track v2r1 | Windows | SYSTEM AND COMMUNICATIONS PROTECTION |
| CIS_Apple_macOS_14_Sonoma_STIG_v1.0.0_CAT_III.audit from CIS Apple macOS 14 Sonoma STIG v1.0.0 | CIS Apple macOS 14 Sonoma STIG v1.0.0 CAT III | Unix | |
| CIS_Apple_macOS_15_Sequoia_STIG_v1.0.0_CAT_I.audit from CIS Apple macOS 15 Sequoia STIG v1.0.0 | CIS Apple macOS 15 Sequoia STIG v1.0.0 CAT I | Unix | |
| CIS_Apple_macOS_15_Sequoia_STIG_v1.0.0_CAT_III.audit from CIS Apple macOS 15 Sequoia STIG v1.0.0 | CIS Apple macOS 15 Sequoia STIG v1.0.0 CAT III | Unix | |
| CIS_Apple_macOS_26_Tahoe_STIG_v1.0.0_CAT_III.audit from CIS Apple macOS 26 Tahoe STIG v1.0.0 | CIS Apple macOS 26 Tahoe STIG v1.0.0 CAT III | Unix | |
| CIS_Cisco_IOS_XE_Switch_RTR_STIG_v1.1.0_CAT_II.audit from CIS Cisco IOS XE Switch RTR STIG v1.1.0 | CIS Cisco IOS XE Switch RTR STIG v1.1.0 CAT II | Cisco | |
| CIS_IBM_WebSphere_Liberty_Server_STIG_v1.0.0_CAT_I.audit from CIS IBM WebSphere Liberty Server STIG v1.0.0 | CIS IBM WebSphere Liberty Server STIG v1.0.0 CAT I | Unix | |
| CIS_MariaDB_Enterprise_10.x_STIG_v1.1.0_CAT_II_Unix.audit from CIS MariaDB Enterprise 10.x STIG v1.1.0 | CIS MariaDB Enterprise 10.x STIG v1.1.0 CAT II Unix | Unix | |
| CIS_Microsoft_IIS_10.0_Site_STIG_v1.0.0_CAT_I.audit from CIS Microsoft IIS 10.0 Site STIG v1.0.0 | CIS Microsoft IIS 10.0 Site STIG v1.0.0 CAT I | Windows | |
| CIS_Microsoft_Office_365_ProPlus_STIG_v1.1.0_CAT_II.audit from CIS Microsoft Office 365 ProPlus STIG v1.1.0 | CIS Microsoft Office 365 ProPlus STIG v1.1.0 CAT II | Windows | |
| CIS_Microsoft_Windows_Server_2016_STIG_v4.0.0_DC_CAT_I.audit from CIS Microsoft Windows Server 2016 STIG v4.0.0 | CIS Microsoft Windows Server 2016 STIG v4.0.0 DC CAT I | Windows | |
| CIS_Microsoft_Windows_Server_2016_STIG_v4.0.0_MS_CAT_III.audit from CIS Microsoft Windows Server 2016 STIG v4.0.0 | CIS Microsoft Windows Server 2016 STIG v4.0.0 MS CAT III | Windows | |
| CIS_Microsoft_Windows_Server_2019_STIG_v4.0.0_DC_CAT_I.audit from CIS Microsoft Windows Server 2019 STIG v4.0.0 | CIS Microsoft Windows Server 2019 STIG v4.0.0 DC CAT I | Windows | |
| CIS_Microsoft_Windows_Server_2019_STIG_v4.0.0_DC_CAT_II.audit from CIS Microsoft Windows Server 2019 STIG v4.0.0 | CIS Microsoft Windows Server 2019 STIG v4.0.0 DC CAT II | Windows | |
| CIS_Microsoft_Windows_Server_2019_STIG_v4.0.0_DC_CAT_III.audit from CIS Microsoft Windows Server 2019 STIG v4.0.0 | CIS Microsoft Windows Server 2019 STIG v4.0.0 DC CAT III | Windows | |
| CIS_Microsoft_Windows_Server_2019_STIG_v4.0.0_MS_CAT_II.audit from CIS Microsoft Windows Server 2019 STIG v4.0.0 | CIS Microsoft Windows Server 2019 STIG v4.0.0 MS CAT II | Windows | |
| CIS_Microsoft_Windows_Server_2022_STIG_v3.0.0_DC_CAT_I.audit from CIS Microsoft Windows Server 2022 STIG v3.0.0 | CIS Microsoft Windows Server 2022 STIG v3.0.0 DC CAT I | Windows | |
| CIS_Microsoft_Windows_Server_2022_STIG_v3.0.0_DC_CAT_II.audit from CIS Microsoft Windows Server 2022 STIG v3.0.0 | CIS Microsoft Windows Server 2022 STIG v3.0.0 DC CAT II | Windows | |
| CIS_Microsoft_Windows_Server_2022_STIG_v3.0.0_DC_CAT_III.audit from CIS Microsoft Windows Server 2022 STIG v3.0.0 | CIS Microsoft Windows Server 2022 STIG v3.0.0 DC CAT III | Windows | |
| CIS_Red_Hat_EL7_STIG_v2.0.0_L2_Workstation.audit from CIS Red Hat Enterprise Linux 7 STIG v2.0.0 | CIS Red Hat Enterprise Linux 7 STIG v2.0.0 L2 Workstation | Unix | |
| CIS_Red_Hat_EL7_STIG_v2.0.0_STIG.audit from CIS Red Hat Enterprise Linux 7 STIG v2.0.0 | CIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG | Unix | |
| CIS_Red_Hat_Enterprise_Linux_8_STIG_v2.0.0_L1_Server.audit from CIS Red Hat Enterprise Linux 8 STIG v2.0.0 | CIS Red Hat Enterprise Linux 8 STIG v2.0.0 L1 Server | Unix | |
| CIS_Ubuntu_Linux_22.04_LTS_STIG_v1.0.0_CAT_II.audit from CIS Ubuntu Linux 22.04 LTS STIG v1.0.0 | CIS Ubuntu Linux 22.04 LTS STIG v1.0.0 CAT II | Unix | |
| CIS_Ubuntu_Linux_24.04_LTS_STIG_v1.0.0_CAT_II.audit from CIS Ubuntu Linux 24.04 LTS STIG v1.0.0 | CIS Ubuntu Linux 24.04 LTS STIG v1.0.0 CAT II | Unix | |
| GEN000240 - The system clock must be synchronized to an authoritative DoD time source - 'NTP daemon is running' | DISA AIX 5.3 STIG v1r2 | Unix | AUDIT AND ACCOUNTABILITY |
| GEN000240 - The system clock must be synchronized to an authoritative DoD time source - 'NTP daemon is running' | DISA STIG AIX 6.1 v1r14 | Unix | AUDIT AND ACCOUNTABILITY |
| GEN000240 - The system clock must be synchronized to an authoritative DoD time source - 'NTP daemon is started at boot' | DISA STIG AIX 6.1 v1r14 | Unix | AUDIT AND ACCOUNTABILITY |
| GEN000240 - The system clock must be synchronized to an authoritative DoD time source - 'NTP daemon is started at boot' | DISA AIX 5.3 STIG v1r2 | Unix | AUDIT AND ACCOUNTABILITY |
| GEN000240 - The system clock must be synchronized to an authoritative DoD time source - 'xntpd is started at boot time' | DISA AIX 5.3 STIG v1r2 | Unix | AUDIT AND ACCOUNTABILITY |
| GEN000240 - The system clock must be synchronized to an authoritative DoD time source - 'xntpd is started at boot time' | DISA STIG AIX 6.1 v1r14 | Unix | AUDIT AND ACCOUNTABILITY |
| GEN000240 - The system clock must be synchronized to an authoritative DoD time source - 'xntpd|ntpd is running' | DISA STIG AIX 6.1 v1r14 | Unix | AUDIT AND ACCOUNTABILITY |
| GEN000240 - The system clock must be synchronized to an authoritative DoD time source - 'xntpd|ntpd is running' | DISA AIX 5.3 STIG v1r2 | Unix | AUDIT AND ACCOUNTABILITY |
| GEN000240 - The system clock must be synchronized to an authoritative DoD time source. | DISA STIG for Oracle Linux 5 v2r1 | Unix | AUDIT AND ACCOUNTABILITY |
| GEN000240 - The system clock must be synchronized to an authoritative DoD time source. | DISA STIG for Red Hat Enterprise Linux 5 v1r18 Audit | Unix | AUDIT AND ACCOUNTABILITY |
| GEN000240 - The system clock must be synchronized to an authoritative DoD time source. | DISA STIG Solaris 10 SPARC v2r4 | Unix | AUDIT AND ACCOUNTABILITY |
| GEN000240 - The system clock must be synchronized to an authoritative DoD time source. | DISA STIG Solaris 10 X86 v2r4 | Unix | AUDIT AND ACCOUNTABILITY |
| GOOG-16-006100 - Google Android 16 must be configured to not allow passwords that include more than four repeating or sequential characters - Alphanumeric | MobileIron - DISA Google Android 16 COPE STIG v1r3 | MDM | IDENTIFICATION AND AUTHENTICATION |
| GOOG-16-006100 - Google Android 16 must be configured to not allow passwords that include more than four repeating or sequential characters - Complex Characters | MobileIron - DISA Google Android 16 COBO STIG v1r3 | MDM | IDENTIFICATION AND AUTHENTICATION |
| GOOG-16-006100 - Google Android 16 must be configured to not allow passwords that include more than four repeating or sequential characters - Numbers | AirWatch - DISA Google Android 16 COBO STIG v1r1 | MDM | IDENTIFICATION AND AUTHENTICATION |
| O19C-00-000300 - Oracle Database must automatically terminate a user session after organization-defined conditions or trigger events requiring session disconnect. | DISA Oracle Database 19c STIG v1r5 OracleDB | OracleDB | ACCESS CONTROL |
| PPS9-00-004820 - When using command-line tools such as psql, users must use a logon method that does not expose the password. | EDB PostgreSQL Advanced Server DB Audit v2r3 | PostgreSQLDB | IDENTIFICATION AND AUTHENTICATION |
| SQL2-00-000300 - SQL Server must maintain and support organization-defined security labels on stored information. | DISA STIG SQL Server 2012 Database Audit v1r20 | MS_SQLDB | ACCESS CONTROL |
| WN22-DC-000150 - Windows Server 2022 directory data (outside the root DSE) of a nonpublic directory must be configured to prevent anonymous access. | DISA Microsoft Windows Server 2022 STIG v2r8 | Windows | CONFIGURATION MANAGEMENT |
| WN25-DC-000150 - Windows Server 2025 directory data (outside the root DSE) of a nonpublic directory must be configured to prevent anonymous access. | DISA Microsoft Windows Server 2025 STIG v1r1 | Windows | CONFIGURATION MANAGEMENT |