Item Search

NameAudit NamePluginCategory
AOSX-15-100001 - The macOS system must be a supported release.DISA STIG Apple Mac OSX 10.15 v1r10Unix

CONFIGURATION MANAGEMENT

CNTR-R2-000010 - Rancher RKE2 must protect authenticity of communications sessions with the use of FIPS-validated 140-2 or 140-3 security requirements for cryptographic modules.DISA Rancher Government Solutions RKE2 STIG v2r7Unix

ACCESS CONTROL, CONFIGURATION MANAGEMENT, IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION

CNTR-R2-000030 - RKE2 must use a centralized user management solution to support account management functions.DISA Rancher Government Solutions RKE2 STIG v2r7Unix

ACCESS CONTROL

CNTR-R2-000060 - Rancher RKE2 components must be configured in accordance with the security configuration settings based on DOD security configuration or implementation guidance, including SRGs, STIGs, NSA configuration guides, CTOs, and DTMs.DISA Rancher Government Solutions RKE2 STIG v2r7Unix

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT, MAINTENANCE

CNTR-R2-000100 - The Kubernetes Controller Manager must have secure binding.DISA Rancher Government Solutions RKE2 STIG v2r7Unix

ACCESS CONTROL

CNTR-R2-000110 - The Kubernetes Kubelet must have anonymous authentication disabled.DISA Rancher Government Solutions RKE2 STIG v2r7Unix

ACCESS CONTROL

CNTR-R2-000130 - The Kubernetes Kubelet must have the read-only port flag disabled.DISA Rancher Government Solutions RKE2 STIG v2r7Unix

ACCESS CONTROL

CNTR-R2-000150 - The Kubernetes kubelet must enable explicit authorization.DISA Rancher Government Solutions RKE2 STIG v2r7Unix

ACCESS CONTROL

CNTR-R2-000160 - The Kubernetes API server must have anonymous authentication disabled.DISA Rancher Government Solutions RKE2 STIG v2r7Unix

ACCESS CONTROL

CNTR-R2-000320 - All audit records must identify any containers associated with the event within Rancher RKE2.DISA Rancher Government Solutions RKE2 STIG v2r7Unix

AUDIT AND ACCOUNTABILITY

CNTR-R2-000460 - Rancher RKE2 must be built from verified packages.DISA Rancher Government Solutions RKE2 STIG v2r7Unix

CONFIGURATION MANAGEMENT

CNTR-R2-000520 - Configuration and authentication files for Rancher RKE2 must be protected.DISA Rancher Government Solutions RKE2 STIG v2r7Unix

CONFIGURATION MANAGEMENT

CNTR-R2-000550 - Rancher RKE2 must be configured with only essential configurations.DISA Rancher Government Solutions RKE2 STIG v2r7Unix

CONFIGURATION MANAGEMENT

CNTR-R2-000580 - Rancher RKE2 runtime must enforce ports, protocols, and services that adhere to the PPSM CAL.DISA Rancher Government Solutions RKE2 STIG v2r7Unix

CONFIGURATION MANAGEMENT

CNTR-R2-000800 - Rancher RKE2 must store only cryptographic representations of passwords.DISA Rancher Government Solutions RKE2 STIG v2r7Unix

IDENTIFICATION AND AUTHENTICATION

CNTR-R2-000890 - Rancher RKE2 must terminate all network connections associated with a communications session at the end of the session, or as follows: for in-band management sessions (privileged sessions), the session must be terminated after five minutes of inactivity.DISA Rancher Government Solutions RKE2 STIG v2r7Unix

SYSTEM AND COMMUNICATIONS PROTECTION

CNTR-R2-000940 - Rancher RKE2 runtime must isolate security functions from nonsecurity functions.DISA Rancher Government Solutions RKE2 STIG v2r7Unix

SYSTEM AND COMMUNICATIONS PROTECTION

CNTR-R2-000970 - Rancher RKE2 runtime must maintain separate execution domains for each container by assigning each container a separate address space to prevent unauthorized and unintended information transfer via shared system resources.DISA Rancher Government Solutions RKE2 STIG v2r7Unix

SYSTEM AND COMMUNICATIONS PROTECTION

CNTR-R2-001130 - Rancher RKE2 must prevent nonprivileged users from executing privileged functions to include disabling, circumventing, or altering implemented security safeguards/countermeasures.DISA Rancher Government Solutions RKE2 STIG v2r7Unix

ACCESS CONTROL

CNTR-R2-001270 - Rancher RKE2 must prohibit the installation of patches, updates, and instantiation of container images without explicit privileged status.DISA Rancher Government Solutions RKE2 STIG v2r7Unix

CONFIGURATION MANAGEMENT

CNTR-R2-001580 - Rancher RKE2 must remove old components after updated versions have been installed.DISA Rancher Government Solutions RKE2 STIG v2r7Unix

SYSTEM AND INFORMATION INTEGRITY

CNTR-R2-001620 - Rancher RKE2 registry must contain the latest images with most recent updates and execute within Rancher RKE2 runtime as authorized by IAVM, CTOs, DTMs, and STIGs.DISA Rancher Government Solutions RKE2 STIG v2r7Unix

SYSTEM AND INFORMATION INTEGRITY

DISA_IIS_8.5_Web_Server_v2r7.audit from DISA Microsoft IIS 8.5 Server v2r7 STIGDISA IIS 8.5 Server v2r7Windows
DISA_IIS_8.5_Web_Site_v2r9.audit from DISA Microsoft IIS 8.5 Site v2r9 STIGDISA IIS 8.5 Site v2r9Windows
DISA_Oracle_11g_Installation_v9r1_OS_Linux.audit from DISA Oracle Database 11g Installation STIG v9r1 STIGDISA STIG Oracle 11 Installation v9r1 LinuxUnix
DISA_Oracle_11g_Installation_v9r1_OS_Windows.audit from DISA Oracle Database 11g Installation STIG v9r1 STIGDISA STIG Oracle 11 Installation v9r1 WindowsWindows
DISA_Oracle_11g_Instance_v9r1_OS_Linux.audit from DISA Oracle Database 11g Instance STIG v9r1 STIGDISA STIG Oracle 11 Instance v9r1 OS UnixUnix
DISA_Oracle_11g_Instance_v9r1_OS_Windows.audit from DISA Oracle Database 11g Instance STIG v9r1 STIGDISA STIG Oracle 11 Instance v9r1 OS WindowsWindows
DISA_STIG_Apache_Server-2.4_Windows_v2r3.audit from DISA Apache Server 2.4 Windows Server v2r3 STIGDISA STIG Apache Server 2.4 Windows Server v2r3Windows
DISA_STIG_Apache_Site-2.4_Windows_v2r3.audit from DISA Apache Server 2.4 Windows Site v2r3 STIGDISA Apache Server 2.4 Windows Site STIG v2r3Windows
DISA_STIG_EDB_PostgreSQL_Advanced_Server_v9.6_v2r3_OS_Linux.audit from DISA EDB Postgres Advanced Server v9.6 v2r3 STIGEDB PostgreSQL Advanced Server OS Linux Audit v2r3Unix
DISA_STIG_Kubernetes_v2r6.audit from DISA Kubernetes STIG v2r6DISA Kubernetes STIG v2r6Unix
DISA_STIG_Microsoft_Edge_v2r3.audit from DISA Microsoft Edge v2r3 STIGDISA STIG Edge v2r3Windows
DISA_STIG_Microsoft_Exchange_2013_Mailbox_Server_v2r3.audit from DISA Microsoft Exchange 2013 Mailbox Server v2r3 STIGDISA Microsoft Exchange 2013 Mailbox Server STIG v2r3Windows

SYSTEM AND INFORMATION INTEGRITY

DISA_STIG_Microsoft_Exchange_2019_Mailbox_Server_v2r3.audit from DISA Microsoft Exchange 2019 Mailbox Server STIG v2r3DISA Microsoft Exchange 2019 Mailbox Server STIG v2r3Windows
DISA_STIG_MongoDB_Enterprise_Advanced_3.x_DB_v2r3.audit from DISA MongoDB Enterprise Advanced 3.x v2r3 STIGDISA STIG MongoDB Enterprise Advanced 3.x v2r3 DBMongoDB
DISA_STIG_MongoDB_Enterprise_Advanced_3.x_OS_Linux_v2r3.audit from DISA MongoDB Enterprise Advanced 3.x v2r3 STIGDISA STIG MongoDB Enterprise Advanced 3.x v2r3 OSUnix
DISA_STIG_Mozilla_Firefox_v6r7_Linux.audit from DISA Mozilla Firefox v6r7 STIGDISA STIG Mozilla Firefox Linux v6r7Unix
DISA_STIG_Mozilla_Firefox_v6r7_MacOS.audit from DISA Mozilla Firefox v6r7 STIGDISA STIG Mozilla Firefox MacOS v6r7Unix
DISA_STIG_MSSQL_2012_Database_v1r20.audit from DISA Microsoft SQL Server Instance 2012 v1r20 STIGDISA STIG SQL Server 2012 Database Audit v1r20MS_SQLDB
DISA_STIG_MSSQL_2012_Instance-DB_v1r20.audit from DISA Microsoft SQL Server Instance 2012 v1r20 STIGDISA STIG SQL Server 2012 DB Instance Security v1r20MS_SQLDB
DISA_STIG_MSSQL_2012_Instance-OS_v1r20.audit from DISA Microsoft SQL Server Instance 2012 v1r20 STIGDISA STIG SQL Server 2012 Database OS Audit v1r20Windows
DISA_STIG_Oracle_HTTP_Server_12.1.3_v2r3.audit from DISA Oracle HTTP Server 12.1.3 v2r3 STIGDISA STIG Oracle HTTP Server 12.1.3 v2r3Unix
DISA_STIG_Rancher_Government_Solutions_RKE2_v2r7.audit from DISA Rancher Government Solutions RKE2 STIG v2r7DISA Rancher Government Solutions RKE2 STIG v2r7Unix
DISA_STIG_Splunk_Enterprise_8.x_for_Linux_OS_v2r3.audit from DISA Splunk Enterprise 8.x for Linux v2r3 STIGDISA STIG Splunk Enterprise 8.x for Linux v2r3 STIG OSUnix
DISA_STIG_Splunk_Enterprise_8.x_for_Linux_REST_API_v2r3.audit from DISA Splunk Enterprise 8.x for Linux v2r3 STIGDISA STIG Splunk Enterprise 8.x for Linux v2r3 STIG REST APISplunk
DISA_STIG_Ubuntu_16.04_LTS_v2r3.audit from DISA Canonical Ubuntu 16.04 LTS v2r3 STIGDISA STIG Ubuntu 16.04 LTS v2r3Unix
DISA_STIG_VMware_vSphere_8.0_ESXi_v2r3_Unix.audit from DISA VMware vSphere 8.0 ESXi STIG v2r3DISA VMware vSphere 8.0 ESXi STIG v2r3 UnixUnix
GEN000100 - The operating system must be a supported release.DISA STIG Solaris 10 X86 v2r4Unix

CONFIGURATION MANAGEMENT

OL6-00-000010 - The Oracle Linux operating system must be a vendor-supported release.DISA STIG Oracle Linux 6 v2r7Unix

CONFIGURATION MANAGEMENT