Item Search

NameAudit NamePluginCategory
1.1.4 Ensure nosuid option set on /tmp partitionCIS Google Container-Optimized OS v1.2.0 L1 ServerUnix

ACCESS CONTROL, MEDIA PROTECTION

1.6.2 Ensure local login warning banner is configured properlyCIS Oracle Linux 7 v4.0.0 L1 WorkstationUnix

ACCESS CONTROL

1.6.2 Ensure local login warning banner is configured properlyCIS Debian Linux 12 v1.1.0 L1 ServerUnix

ACCESS CONTROL

1.6.2 Ensure local login warning banner is configured properlyCIS Ubuntu Linux 22.04 LTS v2.0.0 L1 ServerUnix

ACCESS CONTROL

1.6.2 Ensure local login warning banner is configured properlyCIS Ubuntu Linux 24.04 LTS v1.0.0 L1 ServerUnix

ACCESS CONTROL

1.6.2 Ensure local login warning banner is configured properlyCIS Ubuntu Linux 24.04 LTS v1.0.0 L1 WorkstationUnix

ACCESS CONTROL

1.6.2 Ensure local login warning banner is configured properlyCIS Amazon Linux 2 v3.0.0 L1Unix

ACCESS CONTROL

1.6.2 Ensure local login warning banner is configured properlyCIS CentOS Linux 7 v4.0.0 L1 ServerUnix

ACCESS CONTROL

1.6.2 Ensure local login warning banner is configured properlyCIS CentOS Linux 7 v4.0.0 L1 WorkstationUnix

ACCESS CONTROL

1.6.2 Ensure local login warning banner is configured properlyCIS Oracle Linux 7 v4.0.0 L1 ServerUnix

ACCESS CONTROL

1.6.3 Ensure remote login warning banner is configured properlyCIS Red Hat Enterprise Linux 7 v4.0.0 L1 ServerUnix

ACCESS CONTROL

1.6.3 Ensure remote login warning banner is configured properlyCIS Debian Linux 11 v2.0.0 L1 ServerUnix

ACCESS CONTROL

1.7.1.2 Ensure local login warning banner is configured properlyCIS Debian 9 Workstation L1 v1.0.1Unix

CONFIGURATION MANAGEMENT

1.7.2 Ensure local login warning banner is configured properlyCIS SUSE Linux Enterprise 15 v2.0.0 L1 WorkstationUnix

ACCESS CONTROL

1.7.2 Ensure local login warning banner is configured properlyCIS Oracle Linux 8 Server L1 v3.0.0Unix

ACCESS CONTROL

1.7.2 Ensure local login warning banner is configured properlyCIS Rocky Linux 8 Server L1 v2.0.0Unix

ACCESS CONTROL

1.7.2 Ensure local login warning banner is configured properlyCIS AlmaLinux OS 9 v2.0.0 L1 ServerUnix

ACCESS CONTROL

1.7.3 Ensure remote login warning banner is configured properlyCIS AlmaLinux OS 8 Server L1 v3.0.0Unix

ACCESS CONTROL

1.7.3 Ensure remote login warning banner is configured properlyCIS AlmaLinux OS 9 v2.0.0 L1 ServerUnix

ACCESS CONTROL

1.7.3 Ensure remote login warning banner is configured properlyCIS Oracle Linux 9 v2.0.0 L1 WorkstationUnix

ACCESS CONTROL

2.9 Ensure MariaDB is Bound to an IP AddressCIS MariaDB 10.6 Database L2 v1.1.0MySQLDB

PLANNING, SYSTEM AND SERVICES ACQUISITION

4.5.1 Install TCP WrappersCIS Red Hat Enterprise Linux 5 L1 v2.2.1Unix

SYSTEM AND COMMUNICATIONS PROTECTION

8.4.20 (L2) Ensure memSchedFakeSampleStats is disabledCIS VMware ESXi 7.0 v1.4.0 L2VMware

CONFIGURATION MANAGEMENT

18.9.31.1 (L2) Ensure 'Allow Clipboard synchronization across devices' is set to 'Disabled'CIS Microsoft Windows Server 2019 v3.0.1 L2 DCWindows

CONFIGURATION MANAGEMENT

18.9.31.1 Ensure 'Allow Clipboard synchronization across devices' is set to 'Disabled'CIS Microsoft Windows Server 2019 STIG v3.0.0 L2 MSWindows

CONFIGURATION MANAGEMENT

ALMA-09-008160 - AlmaLinux OS 9 must maintain an account lock until the locked account is manually released by an administrator; and not automatically after a set time.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

ACCESS CONTROL

ALMA-09-023010 - AlmaLinux OS 9 must disable the use of user namespaces.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

CONFIGURATION MANAGEMENT

ALMA-09-035660 - AlmaLinux OS 9 must disable account identifiers (individuals, groups, roles, and devices) after 35 days of inactivity.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-035990 - AlmaLinux OS 9 must ensure the password complexity module in the system-auth file is configured for three retries or less.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

IDENTIFICATION AND AUTHENTICATION

ALMA-09-036760 - AlmaLinux OS 9 must require the change of at least four character classes when passwords are changed.DISA CloudLinux AlmaLinux OS 9 STIG v1r2Unix

IDENTIFICATION AND AUTHENTICATION

APPL-14-001140 The macOS system must configure audit_control to not contain access control lists.DISA Apple macOS 14 (Sonoma) STIG v2r3Unix

AUDIT AND ACCOUNTABILITY

APPL-15-001001 - The macOS system must be configured to audit all administrative action events.DISA Apple macOS 15 (Sequoia) STIG v1r3Unix

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, MAINTENANCE

CD12-00-012800 - The DBMS must be configured on a platform that has a NIST certified FIPS 140-2 or 140-3 installation of OpenSSL.DISA STIG Crunchy Data PostgreSQL OS v3r1Unix

IDENTIFICATION AND AUTHENTICATION

CIS_Apache_Tomcat_10.1_v1.1.0_L1.audit from CIS Apache Tomcat 10.1 Benchmark v1.1.0CIS Apache Tomcat 10.1 v1.1.0 L1Unix
CIS_Apache_Tomcat_10.1_v1.1.0_L2.audit from CIS Apache Tomcat 10.1 Benchmark v1.1.0CIS Apache Tomcat 10.1 v1.1.0 L2Unix
CIS_IBM_AIX_7_v1.0.0_L1.audit from CIS IBM AIX 7 Benchmark v1.0.0CIS IBM AIX 7 v1.0.0 L1Unix
CIS_Microsoft_Windows_10_Enterprise_v4.0.0_NG.audit from CIS Microsoft Windows 10 Enterprise Benchmark v4.0.0CIS Microsoft Windows 10 Enterprise v4.0.0 NGWindows
CIS_Microsoft_Windows_Server_2016_v3.0.0_L2_DC.audit from CIS Microsoft Windows Server 2016 Benchmark v3.0.0CIS Microsoft Windows Server 2016 v3.0.0 L2 DCWindows
CIS_Microsoft_Windows_Server_2016_v3.0.0_L2_MS.audit from CIS Microsoft Windows Server 2016 Benchmark v3.0.0CIS Microsoft Windows Server 2016 v3.0.0 L2 MSWindows
CIS_Microsoft_Windows_Server_2016_v3.0.0_NG_MS.audit from CIS Microsoft Windows Server 2016 Benchmark v3.0.0CIS Microsoft Windows Server 2016 v3.0.0 NG MSWindows
CIS_Microsoft_Windows_Server_2019_v3.0.1_L2_DC.audit from CIS Microsoft Windows Server 2019 Benchmark v3.0.1CIS Microsoft Windows Server 2019 v3.0.1 L2 DCWindows
CIS_Microsoft_Windows_Server_2019_v3.0.1_L2_MS.audit from CIS Microsoft Windows Server 2019 Benchmark v3.0.1CIS Microsoft Windows Server 2019 v3.0.1 L2 MSWindows
CIS_Microsoft_Windows_Server_2022_v4.0.0_L2_MS.audit from CIS Microsoft Windows Server 2022 Benchmark v4.0.0CIS Microsoft Windows Server 2022 v4.0.0 L2 MSWindows
CIS_Microsoft_Windows_Server_2022_v4.0.0_NG_DC.audit from CIS Microsoft Windows Server 2022 Benchmark v4.0.0CIS Microsoft Windows Server 2022 v4.0.0 NG DCWindows
CIS_Ubuntu_Linux_18.04_LTS_v2.2.0_L1_Server.audit from CIS Ubuntu Linux 18.04 LTS Benchmark v2.2.0CIS Ubuntu Linux 18.04 LTS v2.2.0 L1 ServerUnix
EPAS-00-004950 - The EDB Postgres Advanced Server must be configured on a platform that has a NIST-certified FIPS 140-2 or 140-3 installation of OpenSSL.EnterpriseDB PostgreSQL Advanced Server OS Linux v2r1Unix

IDENTIFICATION AND AUTHENTICATION

O112-P2-012800 - The DBMS must uniquely identify and authenticate organizational users (or processes acting on behalf of organizational users).DISA STIG Oracle 11.2g v2r5 DatabaseOracleDB

IDENTIFICATION AND AUTHENTICATION

PPS9-00-013200 - The EDB Postgres Advanced Server must be configured on a platform that has a NIST certified FIPS 140-2 ior 140-3 nstallation of OpenSSL.EDB PostgreSQL Advanced Server OS Linux Audit v2r3Unix

IDENTIFICATION AND AUTHENTICATION

UBTU-22-654130 - Ubuntu 22.04 LTS must generate audit records for all account creations, modifications, disabling, and termination events that affect /etc/group.DISA Canonical Ubuntu 22.04 LTS STIG v2r4Unix

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY

UBTU-24-200280 - Ubuntu 24.04 LTS must generate audit records for all account creations, modifications, disabling, and termination events that affect /etc/passwd.DISA Canonical Ubuntu 24.04 LTS STIG v1r1Unix

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY