Item Search

NameAudit NamePluginCategory
GEN001500 - All interactive users' home directories must be owned by their respective users.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN001605 - Run control scripts' library search paths must contain only absolute paths.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN001700 - System start-up files must only execute programs owned by a privileged UID or an application.DISA AIX 5.3 STIG v1r2Unix

ACCESS CONTROL

GEN001720 - All global initialization files must have mode 0644 or less permissive - '/etc/.login'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN001720 - All global initialization files must have mode 0644 or less permissive - '/etc/bashrc'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN001720 - All global initialization files must have mode 0644 or less permissive - '/etc/environment'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN001720 - All global initialization files must have mode 0644 or less permissive - '/etc/profile'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN001720 - All global initialization files must have mode 0644 or less permissive - '/etc/security/.profile'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN001730 - All global initialization files must not have extended ACLs - '/etc/environment'DISA AIX 5.3 STIG v1r2Unix

ACCESS CONTROL

GEN001760 - All global initialization files must be group-owned by sys, bin, system, or security - '/etc/security/.profile'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN001780 - Global initialization files must contain the mesg -n or mesg n commands. - '/etc/profile'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN001870 - Local initialization files must be group-owned by the user's primary group or root - '~/.bash_logout'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN001870 - Local initialization files must be group-owned by the user's primary group or root - '~/.bashrc'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN001870 - Local initialization files must be group-owned by the user's primary group or root - '~/.dispatch'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN001870 - Local initialization files must be group-owned by the user's primary group or root - '~/.logout'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN001880 - All local initialization files must have mode 0740 or less permissive - '~/.exrc'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN001880 - All local initialization files must have mode 0740 or less permissive - '~/.profile'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN001901 - Local initialization files' library search paths must contain only absolute paths - 'LIBPATH'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN001980 - The /etc/group file must not contain a plus (+) without defining entries for NIS+ netgroups - '/etc/group'DISA AIX 5.3 STIG v1r2Unix

IDENTIFICATION AND AUTHENTICATION

GEN001980 - The /etc/passwd file must not contain a plus (+) without defining entries for NIS+ netgroups - '/etc/passwd'DISA AIX 5.3 STIG v1r2Unix

IDENTIFICATION AND AUTHENTICATION

GEN001980 - The shosts.equiv file must not contain a plus (+) without defining entries for NIS+ netgroups - '~/shosts.equiv'DISA AIX 5.3 STIG v1r2Unix

IDENTIFICATION AND AUTHENTICATION

GEN002060 - All .rhosts, .shosts, .netrc, or hosts.equiv files must be accessible by only root or the owner - '~/.rhosts' - permissionsDISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN002060 - All .rhosts, .shosts, .netrc, or hosts.equiv files must be accessible by only root or the owner - '~/shosts.equiv' - userDISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN002220 - All shell files must have mode 0755 or less permissive.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN002230 - All shell files must not have extended ACLs.DISA AIX 5.3 STIG v1r2Unix

ACCESS CONTROL

GEN002400 - The system must be checked weekly for unauthorized setuid files, and unauthorized modification to authorized setuid files.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN002560 - The system and user default umask must be 077 - user initialization filesDISA AIX 5.3 STIG v1r2Unix

ACCESS CONTROL

GEN002660 - Auditing must be implemented.DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002717 - System audit tool executables must have mode 0750 or less permissive - '/usr/sbin/audit' - suidDISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN002717 - System audit tool executables must have mode 0750 or less permissive - '/usr/sbin/auditbin'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN002717 - System audit tool executables must have mode 0750 or less permissive - '/usr/sbin/auditselect'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN002717 - System audit tool executables must have mode 0750 or less permissive - '/usr/sbin/auditstream'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN002718 - System audit tool executables must not have extended ACLs - '/usr/sbin/audit'DISA AIX 5.3 STIG v1r2Unix

ACCESS CONTROL

GEN002718 - System audit tool executables must not have extended ACLs - '/usr/sbin/auditbin'DISA AIX 5.3 STIG v1r2Unix

ACCESS CONTROL

GEN002718 - System audit tool executables must not have extended ACLs - '/usr/sbin/auditpr'DISA AIX 5.3 STIG v1r2Unix

ACCESS CONTROL

GEN002720 - System must be configured to audit failed attempts to access files/programs - '/etc/security/audit/events FILE_Open exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002740 - The audit system must be configured to audit file deletions - '/etc/security/audit/config FILE_Unlink exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002750 - The audit system must be configured to audit account creation - '/etc/security/audit/config USER_Create exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002751 - The audit system must be configured to audit account modification - '/etc/security/audit/config USER_Change exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002751 - The audit system must be configured to audit account modification - '/etc/security/audit/events USER_Change exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002752 - The audit system must be configured to audit account disabling - '/etc/security/audit/events USER_Change exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002753 - The audit system must be configured to audit account termination - '/etc/security/audit/config USER_Remove exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002753 - The audit system must be configured to audit account termination - '/etc/security/audit/events USER_Remove exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002753 - The audit system must be configured to audit account termination - 'User audit class assignments should be reviewed'DISA AIX 5.3 STIG v1r2Unix

ACCESS CONTROL

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/config DEV_Change exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/config FILE_Fchpriv exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/config FILE_Owner exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/config FS_Mount exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/config PROC_Adjtime exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

GEN002760 - System must be configured to audit all admin/privileged/security actions - '/etc/security/audit/events FILE_Mknod exists'DISA AIX 5.3 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY