| 1.5.1 Ensure fs.protected_hardlinks is configured | CIS Ubuntu Linux 24.04 LTS v2.0.0 L1 Workstation | Unix | ACCESS CONTROL |
| 1.5.1 Ensure fs.protected_hardlinks is configured | CIS SUSE Linux Enterprise 16 v1.0.0 L1 Workstation | Unix | ACCESS CONTROL |
| 1.5.2 Ensure fs.protected_symlinks is configured | CIS Debian Linux 12 v2.0.0 L2 Server | Unix | ACCESS CONTROL |
| 1.5.2 Ensure fs.protected_symlinks is configured | CIS Ubuntu Linux 24.04 LTS v2.0.0 L2 Server | Unix | ACCESS CONTROL |
| 1.5.2 Ensure fs.protected_symlinks is configured | CIS SUSE Linux Enterprise 16 v1.0.0 L2 Workstation | Unix | ACCESS CONTROL |
| 1.5.2 Ensure fs.protected_symlinks is configured | CIS Debian Linux 12 v2.0.0 L2 Workstation | Unix | ACCESS CONTROL |
| 1.5.3 Ensure fs.protected_symlinks is configured | CIS Amazon Linux 2 v4.0.0 L1 Server | Unix | ACCESS CONTROL |
| 1.25 RHEL-09-213030 | CIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT II | Unix | ACCESS CONTROL |
| 1.274 RHEL-10-600500 | CIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT II | Unix | ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION |
| 1.378 RHEL-10-701070 | CIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT II | Unix | ACCESS CONTROL |
| 1.379 RHEL-10-701080 | CIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT II | Unix | ACCESS CONTROL |
| AIX7-00-003020 - AIX must use Trusted Execution (TE) Check policy. | DISA IBM AIX 7.x STIG v3r3 | Unix | ACCESS CONTROL |
| AIX7-00-003099 - AIX must allow admins to send a message to a user who logged in currently. | DISA IBM AIX 7.x STIG v3r3 | Unix | ACCESS CONTROL |
| AZLX-23-002535 - Amazon Linux 2023 must enable discretionary access control on hardlinks. | DISA Amazon Linux 2023 STIG v1r4 | Unix | ACCESS CONTROL |
| GEN001480 - All users' home directories must have mode 0750 or less permissive. | DISA STIG Solaris 10 X86 v2r4 | Unix | ACCESS CONTROL |
| GEN002520 - All public directories must be owned by root or an application account. | DISA STIG Solaris 10 X86 v2r4 | Unix | ACCESS CONTROL |
| GEN003340 - The at.allow file must have mode 0600 or less permissive. | DISA STIG Solaris 10 X86 v2r4 | Unix | ACCESS CONTROL |
| GEN003440 - 'At' jobs must not set the umask to a value less restrictive than 077 - At jobs must not set the umask to a value less restrictive than 077. | DISA STIG Solaris 10 X86 v2r4 | Unix | ACCESS CONTROL |
| GEN003740 - The inetd.conf file must have mode 0440 or less permissive. | DISA STIG Solaris 10 X86 v2r4 | Unix | ACCESS CONTROL |
| GEN003760 - The services file must be owned by root or bin. | DISA STIG Solaris 10 X86 v2r4 | Unix | ACCESS CONTROL |
| GEN003920 - The hosts.lpd (or equivalent) file must be owned by root - SMB_CONF | DISA STIG Solaris 10 X86 v2r4 | Unix | ACCESS CONTROL |
| GEN003940 - The hosts.lpd (or equivalent) must have mode 0644 or less permissive - printers.conf | DISA STIG Solaris 10 X86 v2r4 | Unix | ACCESS CONTROL |
| GEN003940 - The hosts.lpd (or equivalent) must have mode 0644 or less permissive - SMB_CONF | DISA STIG Solaris 10 X86 v2r4 | Unix | ACCESS CONTROL |
| GEN004480 - The SMTP service log file must be owned by root - MAIL_LOG | DISA STIG Solaris 10 X86 v2r4 | Unix | ACCESS CONTROL |
| GEN004500 - The SMTP service log file must have mode 0644 or less permissive - MAIL_LOG | DISA STIG Solaris 10 X86 v2r4 | Unix | ACCESS CONTROL |
| GEN004940 - The ftpusers file must have mode 0640 or less permissive. | DISA STIG Solaris 10 X86 v2r4 | Unix | ACCESS CONTROL |
| GEN005100 - The TFTP daemon must have mode 0755 or less permissive. | DISA STIG Solaris 10 X86 v2r4 | Unix | ACCESS CONTROL |
| GEN005320 - The snmpd.conf file must have mode 0600 or less permissive - /etc/snmp/conf/snmpd.conf | DISA STIG Solaris 10 X86 v2r4 | Unix | ACCESS CONTROL |
| GEN006300 - The /etc/news/nnrp.access (or equivalent) must have mode 0600 or less permissive. | DISA STIG Solaris 10 X86 v2r4 | Unix | ACCESS CONTROL |
| GEN008720 - The system's boot loader configuration file(s) must have mode 0600 or less permissive. | DISA STIG Solaris 10 X86 v2r4 | Unix | ACCESS CONTROL |
| MD4X-00-001200 - MongoDB must enforce discretionary access control policies, as defined by the data owner, over defined subjects and objects. | DISA STIG MongoDB Enterprise Advanced 4.x v1r4 DB | MongoDB | ACCESS CONTROL |
| O112-C2-003000 - The DBMS must enforce Discretionary Access Control (DAC) policy allowing users to specify and control sharing by named individuals, groups of individuals, or by both, limiting propagation of access rights and includes or excludes access to the granularity of a single user. | DISA STIG Oracle 11.2g v2r5 Database | OracleDB | ACCESS CONTROL |
| O112-C2-006600 - Databases utilizing Discretionary Access Control (DAC) must enforce a policy that limits propagation of access rights. | DISA STIG Oracle 11.2g v2r5 Database | OracleDB | ACCESS CONTROL |
| O121-C2-006600 - Databases utilizing Discretionary Access Control (DAC) must enforce a policy that limits propagation of access rights. | DISA Oracle Database 12c STIG v3r5 OracleDB | OracleDB | ACCESS CONTROL |
| OL07-00-020021 - The Oracle Linux operating system must confine SELinux users to roles that conform to least privilege. | DISA Oracle Linux 7 STIG v3r5 | Unix | ACCESS CONTROL |
| OL07-00-020022 - The Oracle Linux operating system must not allow privileged accounts to utilize SSH. | DISA Oracle Linux 7 STIG v3r5 | Unix | ACCESS CONTROL |
| OL07-00-020220 - The Oracle Linux operating system must enable the SELinux targeted policy. | DISA Oracle Linux 7 STIG v3r5 | Unix | ACCESS CONTROL, SYSTEM AND INFORMATION INTEGRITY |
| OL09-00-002402 - OL 9 must enable kernel parameters to enforce discretionary access control on symlinks. | DISA Oracle Linux 9 STIG v1r6 | Unix | ACCESS CONTROL |
| RHEL-07-020022 - The Red Hat Enterprise Linux operating system must not allow privileged accounts to utilize SSH. | DISA Red Hat Enterprise Linux 7 STIG v3r15 | Unix | ACCESS CONTROL |
| RHEL-09-213035 - RHEL 9 must enable kernel parameters to enforce discretionary access (DAC) control on symlinks. | DISA Red Hat Enterprise Linux 9 STIG v2r9 | Unix | ACCESS CONTROL |
| RHEL-10-600500 - RHEL 10 must restrict the use of the "su" command. | DISA Red Hat Enterprise Linux 10 STIG v1r2 | Unix | ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION |
| RHEL-10-701070 - RHEL 10 must enable kernel parameters to enforce discretionary access control (DAC) on hardlinks. | DISA Red Hat Enterprise Linux 10 STIG v1r2 | Unix | ACCESS CONTROL |
| SLES-12-010690 - All SUSE operating system files and directories must have a valid owner. | DISA SLES 12 STIG v3r5 | Unix | ACCESS CONTROL |
| SLES-12-010700 - All SUSE operating system files and directories must have a valid group owner. | DISA SLES 12 STIG v3r5 | Unix | ACCESS CONTROL |
| UBTU-16-010710 - All files and directories must have a valid group owner. | DISA STIG Ubuntu 16.04 LTS v2r3 | Unix | ACCESS CONTROL |
| WN12-GE-000006 - Permissions for system drive root directory (usually C:\) must conform to minimum requirements. | DISA Windows Server 2012 and 2012 R2 DC STIG v3r7 | Windows | ACCESS CONTROL |
| WN12-GE-000007 - Permissions for program file directories must conform to minimum requirements | DISA Windows Server 2012 and 2012 R2 MS STIG v3r7 | Windows | ACCESS CONTROL |
| WN16-00-000160 - Permissions for the system drive root directory (usually C:\) must conform to minimum requirements. | DISA Microsoft Windows Server 2016 STIG v2r10 | Windows | ACCESS CONTROL |
| WN16-00-000180 - Permissions for the Windows installation directory must conform to minimum requirements. | DISA Microsoft Windows Server 2016 STIG v2r10 | Windows | ACCESS CONTROL |
| WN19-00-000160 - Windows Server 2019 permissions for the Windows installation directory must conform to minimum requirements. | DISA Microsoft Windows Server 2019 STIG v3r8 | Windows | ACCESS CONTROL |