Item Search

NameAudit NamePluginCategory
ALMA-09-039290 - AlmaLinux 9 cryptographic policy must not be overridden.DISA Cloud Linux AlmaLinux OS 9 STIG v1r7Unix

SYSTEM AND COMMUNICATIONS PROTECTION

AZLX-23-001255 - Amazon Linux 2023 must enable the Pluggable Authentication Module (PAM) interface for SSHD.DISA Amazon Linux 2023 STIG v1r4Unix

MAINTENANCE

AZLX-23-001286 - Amazon Linux 2023 must implement DOD-approved encryption in the bind package.DISA Amazon Linux 2023 STIG v1r4Unix

SYSTEM AND COMMUNICATIONS PROTECTION

CASA-FW-000010 - The Cisco ASA must be configured to filter outbound traffic, allowing only authorized ports and services - ingress ACLDISA STIG Cisco ASA FW v2r1Cisco

ACCESS CONTROL

CASA-ND-000690 - The Cisco ASA must be configured to terminate all network connections associated with a device management session at the end of the session, or the session must be terminated after five minutes of inactivity except to fulfill documented and validated mission requirements.DISA STIG Cisco ASA NDM v2r5Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

CD16-00-000300 - PostgreSQL must enforce approved authorizations for logical access to information and system resources in accordance with applicable access control policies.DISA Crunchy Data Postgres 16 STIG v1r3 PostgreSQLDBPostgreSQLDB

ACCESS CONTROL

CNTR-R2-000150 - The Kubernetes kubelet must enable explicit authorization.DISA Rancher Government Solutions RKE2 STIG v2r7Unix

ACCESS CONTROL

Configuring cookie encryption within the HTTP profileTenable F5 BIG-IP Best Practice AuditF5

SYSTEM AND COMMUNICATIONS PROTECTION

ESXI-65-000999 - The version of ESXi running on the system must be a supported version.DISA STIG VMware vSphere ESXi 6.5 v2r4VMware

CONFIGURATION MANAGEMENT

ESXI-67-000999 - The version of ESXi running on the server must be a supported version.DISA STIG VMware vSphere 6.7 ESXi v1r3VMware

CONFIGURATION MANAGEMENT

ESXI-70-000072 - The ESXi host must have all security patches and updates installed.DISA VMware vSphere 7.0 ESXi STIG v1r4 VMwareVMware

CONFIGURATION MANAGEMENT

ESXI-80-000217 - The ESXi host must configure virtual switch security policies to reject Media Access Control (MAC) address changes.DISA VMware vSphere 8.0 ESXi STIG v2r3 VMwareVMware

CONFIGURATION MANAGEMENT

FFOX-00-000001 - The installed version of Firefox must be supported.DISA STIG Mozilla Firefox Linux v6r7Unix

SYSTEM AND INFORMATION INTEGRITY

FFOX-00-000001 - The installed version of Firefox must be supported.DISA STIG Mozilla Firefox MacOS v6r7Unix

SYSTEM AND INFORMATION INTEGRITY

KNOX-07-018900 - The Samsung Android 7 with Knox must use a NIAP certified container for work data and applications.MobileIron - DISA Samsung Android 7 with Knox 2.x v1r1MDM

CONFIGURATION MANAGEMENT

MD7X-00-000300 - MongoDB must enforce approved authorizations for logical access to information and system resources in accordance with applicable access control policies.DISA MongoDB Enterprise Advanced 7.x STIG v1r2 MongoDBMongoDB

ACCESS CONTROL

OL08-00-010140 - OL 8 operating systems booted with United Extensible Firmware Interface (UEFI) must require authentication upon booting into single-user mode and maintenance.DISA Oracle Linux 8 STIG v2r9Unix

ACCESS CONTROL

OL09-00-000050 - OL 9 must require a unique superuser's name upon booting into single-user and maintenance modes.DISA Oracle Linux 9 STIG v1r6Unix

ACCESS CONTROL

OL09-00-001110 - OL 9 must not allow blank or null passwords.DISA Oracle Linux 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

OL09-00-002420 - OL 9 file systems must not contain .shosts files.DISA Oracle Linux 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

PHTN-40-000208 - The Photon operating system must configure Secure Shell (SSH) to disable user environment processing.DISA VMware vSphere 8.0 vCenter Appliance Photon OS 4.0 STIG v2r1Unix

CONFIGURATION MANAGEMENT

PHTN-67-000999 - The version of the Photon OS running on the server must be a supported version.DISA STIG VMware vSphere 6.7 Photon OS v1r6Unix

CONFIGURATION MANAGEMENT

RHEL-08-010820 - Unattended or automatic logon via the RHEL 8 graphical user interface must not be allowed.DISA Red Hat Enterprise Linux 8 STIG v2r8Unix

CONFIGURATION MANAGEMENT

RHEL-08-020330 - RHEL 8 must not allow accounts configured with blank or null passwords.DISA Red Hat Enterprise Linux 8 STIG v2r8Unix

CONFIGURATION MANAGEMENT

RHEL-08-040171 - The x86 Ctrl-Alt-Delete key sequence in RHEL 8 must be disabled if a graphical user interface is installed.DISA Red Hat Enterprise Linux 8 STIG v2r8Unix

CONFIGURATION MANAGEMENT

RHEL-08-040200 - The root account must be the only account having unrestricted access to the RHEL 8 system.DISA Red Hat Enterprise Linux 8 STIG v2r8Unix

CONFIGURATION MANAGEMENT

RHEL-09-252070 - There must be no shosts.equiv files on RHEL 9.DISA Red Hat Enterprise Linux 9 STIG v2r9Unix

CONFIGURATION MANAGEMENT

RHEL-09-252075 - There must be no .shosts files on RHEL 9.DISA Red Hat Enterprise Linux 9 STIG v2r9Unix

CONFIGURATION MANAGEMENT

RHEL-10-200020 - RHEL 10 must not have the "telnet-server" package installed.DISA Red Hat Enterprise Linux 10 STIG v1r2Unix

CONFIGURATION MANAGEMENT

RHEL-10-700640 - RHEL 10 must not allow users to override Secure Shell (SSH) environment variables.DISA Red Hat Enterprise Linux 10 STIG v1r2Unix

CONFIGURATION MANAGEMENT

SLES-15-010000 - The SUSE operating system must be a vendor-supported release.DISA SUSE Linux Enterprise Server 15 STIG v2r8Unix

SYSTEM AND INFORMATION INTEGRITY

SLES-15-040020 - There must be no .shosts files on the SUSE operating system.DISA SUSE Linux Enterprise Server 15 STIG v2r8Unix

CONFIGURATION MANAGEMENT

SLES-15-040030 - There must be no shosts.equiv files on the SUSE operating system.DISA SUSE Linux Enterprise Server 15 STIG v2r8Unix

CONFIGURATION MANAGEMENT

SYMP-AG-000320 - Symantec ProxySG must uniquely identify and authenticate organizational users (or processes acting on behalf of organizational users) - Domain ExistsDISA Symantec ProxySG Benchmark ALG v1r3BlueCoat

IDENTIFICATION AND AUTHENTICATION

UBTU-18-010523 - The Ubuntu operating system must not allow accounts configured with blank or null passwords.DISA STIG Ubuntu 18.04 LTS v2r15Unix

CONFIGURATION MANAGEMENT

UBTU-22-255040 - Ubuntu 22.04 LTS must be configured so that remote X connections are disabled, unless to fulfill documented and validated mission requirements.DISA Canonical Ubuntu 22.04 LTS STIG v2r9Unix

CONFIGURATION MANAGEMENT

UBTU-22-611065 - Ubuntu 22.04 LTS must not have accounts configured with blank or null passwords.DISA Canonical Ubuntu 22.04 LTS STIG v2r9Unix

CONFIGURATION MANAGEMENT

UBTU-24-102000 - Ubuntu 24.04 LTS when booted must require authentication upon booting into single-user and maintenance modes.DISA Canonical Ubuntu 24.04 LTS STIG v1r6Unix

ACCESS CONTROL

UBTU-24-300026 - Ubuntu 24.04 LTS must disable the x86 Ctrl-Alt-Delete key sequence.DISA Canonical Ubuntu 24.04 LTS STIG v1r6Unix

CONFIGURATION MANAGEMENT

UBTU-24-300031 - Ubuntu 24.04 LTS must not allow unattended or automatic login via SSH.DISA Canonical Ubuntu 24.04 LTS STIG v1r6Unix

CONFIGURATION MANAGEMENT

UBTU-24-700400 - Ubuntu 24.04 LTS must be a vendor-supported release.DISA Canonical Ubuntu 24.04 LTS STIG v1r6Unix

CONFIGURATION MANAGEMENT

VCEM-67-000999 - The version of EAM running on the system must be a supported version.DISA STIG VMware vSphere 6.7 EAM Tomcat v1r4Unix

SYSTEM AND INFORMATION INTEGRITY

VCFL-67-000999 - The version of Virgo-Client running on the system must be a supported version.DISA STIG VMware vSphere 6.7 Virgo Client v1r2Unix

SYSTEM AND INFORMATION INTEGRITY

VCLD-67-000034 - VAMI must implement TLS1.2 exclusively - sslv2DISA STIG VMware vSphere 6.7 VAMI-lighttpd v1r3Unix

SYSTEM AND COMMUNICATIONS PROTECTION

VCPF-67-000999 - The version of Perfcharts running on the system must be a supported version.DISA STIG VMware vSphere 6.7 Perfcharts Tomcat v1r3Unix

SYSTEM AND INFORMATION INTEGRITY

VCST-67-000999 - The version of STS Tomcat running on the system must be a supported version.DISA STIG VMware vSphere 6.7 STS Tomcat v1r3Unix

SYSTEM AND INFORMATION INTEGRITY

WN11-00-000050 - Local volumes must be formatted using NTFS.DISA Microsoft Windows 11 STIG v2r8Windows

ACCESS CONTROL

WN11-CC-000075 - Credential Guard must be running on Windows 11 systems.DISA Microsoft Windows 11 STIG v2r8Windows

CONFIGURATION MANAGEMENT

ZEBR-10-010800 - Zebra Android 10 devices must have the latest available Zebra Android 10 operating system installed.AirWatch - DISA Zebra Android 10 COPE v1r2MDM

CONFIGURATION MANAGEMENT

ZEBR-10-999999 - All Zebra Android 10 installations must be removed.MobileIron - DISA Zebra Android 10 COBO v1r2MDM

CONFIGURATION MANAGEMENT