Item Search

NameAudit NamePluginCategory
ADBP-XI-000955 - Adobe Acrobat Pro XI FIPS mode must be enabled.DISA Adobe Acrobat Pro XI STIG v1r2Windows

CONFIGURATION MANAGEMENT

AIX7-00-002092 - The inetd.conf file on AIX must be group owned by the 'system' group.DISA STIG AIX 7.x v3r1Unix

CONFIGURATION MANAGEMENT

AIX7-00-002140 - The AIX /etc/hosts file must be owned by root.DISA STIG AIX 7.x v3r1Unix

CONFIGURATION MANAGEMENT

AIX7-00-002148 - The AIX /var/spool/cron/atjobs directory must be group-owned by cron.DISA STIG AIX 7.x v3r1Unix

CONFIGURATION MANAGEMENT

AIX7-00-002150 - The AIX cron and crontab directories must be group-owned by cron.DISA STIG AIX 7.x v3r1Unix

CONFIGURATION MANAGEMENT

AOSX-15-005051 - The macOS system must restrict the ability to utilize external writable media devices.DISA STIG Apple Mac OSX 10.15 v1r10Unix

CONFIGURATION MANAGEMENT

AZLX-23-001015 - Amazon Linux 2023 must require users to reauthenticate for privilege escalation.DISA Amazon Linux 2023 STIG v1r2Unix

IDENTIFICATION AND AUTHENTICATION

AZLX-23-002190 - Amazon Linux 2023 audit tools must have a mode of "0755" or less permissive.DISA Amazon Linux 2023 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

AZLX-23-002240 - Amazon Linux 2023 must allow only the information system security manager (ISSM) (or individuals or roles appointed by the ISSM) to select which auditable events are to be audited.DISA Amazon Linux 2023 STIG v1r2Unix

AUDIT AND ACCOUNTABILITY

AZLX-23-002315 - Amazon Linux 2023 must ensure the /var/log directory have mode "0755" or less permissive.DISA Amazon Linux 2023 STIG v1r2Unix

SYSTEM AND INFORMATION INTEGRITY

AZLX-23-002340 - Amazon Linux 2023 must ensure the /var/log/messages file be owned by root.DISA Amazon Linux 2023 STIG v1r2Unix

SYSTEM AND INFORMATION INTEGRITY

AZLX-23-002420 - Amazon Linux 2023 must automatically lock an account when three unsuccessful logon attempts occur.DISA Amazon Linux 2023 STIG v1r2Unix

ACCESS CONTROL

AZLX-23-002500 - Amazon Linux 2023 must ensure a sticky bit be set on all public directories.DISA Amazon Linux 2023 STIG v1r2Unix

SYSTEM AND COMMUNICATIONS PROTECTION

AZLX-23-002605 - Amazon Linux 2023 must protect against or limit the effects of denial-of-service (DoS) attacks by ensuring rate-limiting measures are configured on impacted network interfaces.DISA Amazon Linux 2023 STIG v1r2Unix

SYSTEM AND COMMUNICATIONS PROTECTION

GEN001830 - All skeleton files (typically in /etc/skel) must be group-owned by security - '/etc/security/.profile'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN001860 - All local initialization files must be owned by the user or root.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN001870 - Local initialization files must be group-owned by the user's primary group or root - '~/.env'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN001870 - Local initialization files must be group-owned by the user's primary group or root - '~/.profile'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN001880 - All local initialization files must have mode 0740 or less permissive - '~/.bash_profile'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN001880 - All local initialization files must have mode 0740 or less permissive - '~/.cshrc'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN001880 - All local initialization files must have mode 0740 or less permissive - '~/.login'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN001880 - All local initialization files must have mode 0740 or less permissive - '~/.logout'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN002060 - All .rhosts, .shosts, .netrc, or hosts.equiv files must be accessible by only root or the owner - '~/.rhosts' - userDISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN002120 - The /etc/shells (or equivalent) file must exist - '/etc/shells file exists'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN002320 - Audio devices must have mode 0660 or less permissive.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN002340 - Audio devices must be owned by root.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN003760 - The services file must be owned by root or bin.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN003815 - The portmap or rpcbind service must not be installed unless needed.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN003960 - The traceroute command owner must be root.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN004380 - The alias file must have mode 0644 or less permissive.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN004580 - The system must not use .forward files.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN004920 - The ftpusers file must be owned by root.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN004930 - The ftpusers file must be group-owned by bin, sys, or system.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN005160 - Any X Windows host must write .Xauthority files.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN005180 - All .Xauthority files must have mode 0600 or less permissive.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN005280 - The system must not have the UUCP service active.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN005320 - The snmpd.conf file must have mode 0600 or less permissive - '/etc/snmpd.conf'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN005320 - The snmpd.conf file must have mode 0600 or less permissive - '/etc/snmpdv3.conf'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN005365 - The snmpd.conf file must be group-owned by bin, sys, or system - '/etc/snmpd.conf'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN006120 - The /usr/lib/smb.conf file must be group-owned by bin, sys, or system.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN006320 - The /etc/news/passwd.nntp file (or equivalent) must have mode 0600 or less permissive.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN006620 - The system's access control program must be configured to grant or deny system access to specific hosts - '/etc/hosts.deny'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN007960 - The ldd command must be disabled unless it protects against the execution of untrusted files.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN008160 - The TLS certificate authority file and/or directory (as appropriate) must be group-owned by root, bin, sys, or systemDISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN009200 - The system must not have the daytime service active.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN009230 - The system must not have the echo service active.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN009300 - The inetd time service must not be active on the system on the inetd daemon.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN009320 - The system must not have the sprayd service active.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

WG250 W22 - Log file access must be restricted to System Administrators, Web Administrators or Auditors.DISA STIG Apache Site 2.2 Windows v1r13Windows

AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT

WG300 W22 - Web server system files must conform to minimum file permission requirements. - 'logs'DISA STIG Apache Server 2.2 Windows v1r13Windows

AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT