Item Search

NameAudit NamePluginCategory
1.1 EX19-ED-000006CIS Microsoft Exchange 2019 Edge Server STIG v1.0.0 CAT IIWindows

ACCESS CONTROL

1.1 EX19-MB-000006CIS Microsoft Exchange 2019 Mailbox Server STIG v1.0.0 CAT IIWindows

ACCESS CONTROL

1.2 IBMW-LS-000020CIS IBM WebSphere Liberty Server STIG v1.0.0 CAT IIUnix

ACCESS CONTROL

1.3 IIST-SI-000203CIS Microsoft IIS 10.0 Site STIG v1.0.0 CAT IIWindows

ACCESS CONTROL

1.5 ESXI-80-000014CIS VMware vSphere 8.0 ESXi STIG v1.0.0 CAT I UnixUnix

ACCESS CONTROL

1.16 SLES-15-010160CIS SUSE Linux Enterprise Server 15 STIG v1.0.0 CAT IIUnix

ACCESS CONTROL

1.18 ALMA-09-003650CIS Cloud Linux AlmaLinux OS 9 STIG v1.0.0 CAT IIUnix

ACCESS CONTROL

1.18 CISC-ND-001140CIS Cisco IOS XR Router NDM STIG v1.0.0 CAT IICisco

ACCESS CONTROL

1.19 ALMA-09-003870CIS Cloud Linux AlmaLinux OS 9 STIG v1.0.0 CAT IUnix

ACCESS CONTROL

1.27 CISC-ND-001140CIS Cisco NX OS Switch NDM STIG v1.1.0 CAT IICisco

ACCESS CONTROL

1.31 CISC-ND-001140CIS Cisco IOS XE Switch NDM STIG v1.1.0 CAT IICisco

ACCESS CONTROL

1.63 AZLX-23-001275CIS Amazon Linux 2023 STIG v1.0.0 CAT IUnix

ACCESS CONTROL

1.130 WN19-CC-000370CIS Microsoft Windows Server 2019 STIG v4.0.0 MS CAT IIWindows

ACCESS CONTROL

1.130 WN19-CC-000370CIS Microsoft Windows Server 2019 STIG v4.0.0 DC CAT IIWindows

ACCESS CONTROL

1.131 WN19-CC-000380CIS Microsoft Windows Server 2019 STIG v4.0.0 MS CAT IIWindows

ACCESS CONTROL

1.131 WN19-CC-000380CIS Microsoft Windows Server 2019 STIG v4.0.0 DC CAT IIWindows

ACCESS CONTROL

1.147 SOL-11.1-060130CIS Solaris 11 X86 STIG v1.0.0 CAT IIUnix

ACCESS CONTROL

1.149 SOL-11.1-060130CIS Solaris 11 SPARC STIG v1.0.0 CAT IIUnix

ACCESS CONTROL

1.163 WN11-CC-000290CIS Microsoft Windows 11 STIG v1.2.0 CAT IIWindows

ACCESS CONTROL

1.306 OL09-00-002404CIS Oracle Linux 9 STIG v1.0.0 CAT IUnix

ACCESS CONTROL

1.448 RHEL-09-671020CIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT IIUnix

ACCESS CONTROL

3.061 - Unencrypted remote access is permitted to system services.DISA Windows Vista STIG v6r41Windows

ACCESS CONTROL

AIOS-14-001000 - Apple iOS/iPadOS must not include applications with the following characteristics: access to Siri when the device is locked.MobileIron - DISA Apple iOS/iPadOS 14 v1r3MDM

ACCESS CONTROL

AZLX-23-000050 - Amazon Linux 2023 must enable FIPS mode.DISA Amazon Linux 2023 STIG v1r4Unix

ACCESS CONTROL

CASA-VN-000550 - The Cisco ASA remote access VPN server must be configured to use TLS 1.2 or higher to protect the confidentiality of remote access connections.DISA STIG Cisco ASA VPN v2r2Cisco

ACCESS CONTROL

CNTR-K8-000160 - The Kubernetes Scheduler must use TLS 1.2, at a minimum, to protect the confidentiality of sensitive data during electronic dissemination.DISA Kubernetes STIG v2r6Unix

ACCESS CONTROL

CNTR-K8-000170 - The Kubernetes API Server must use TLS 1.2, at a minimum, to protect the confidentiality of sensitive data during electronic dissemination.DISA Kubernetes STIG v2r6Unix

ACCESS CONTROL

CNTR-K8-000190 - The Kubernetes etcd must use TLS to protect the confidentiality of sensitive data during electronic dissemination.DISA Kubernetes STIG v2r6Unix

ACCESS CONTROL

ESXI-67-000010 - The ESXi host SSH daemon must use DoD-approved encryption to protect the confidentiality of remote access sessions.DISA STIG VMware vSphere 6.7 ESXi OS v1r3Unix

ACCESS CONTROL

ESXi: esxi-8.ssh-fipsVMware vSphere Security Configuration and Hardening Guide 8.0 - Bare Metal HostUnix

ACCESS CONTROL

ESXi: esxi-8.tls-profileVMware vSphere Security Configuration and Hardening Guide 8.0 - Bare Metal HostUnix

ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION

EX19-MB-000007 - Exchange must use encryption for Outlook Web App (OWA) access.DISA Microsoft Exchange 2019 Mailbox Server STIG v2r3Windows

ACCESS CONTROL

F5BI-VN-300004 - The F5 BIG-IP appliance must be configured to use a Diffie-Hellman (DH) Group of 16 or greater for Internet Key Exchange (IKE) Phase 1.DISA F5 BIG-IP TMOS VPN STIG v1r1F5

ACCESS CONTROL

F5BI-VN-300005 - The F5 BIG-IP appliance IPsec VPN Gateway must use AES256 or higher encryption for the Internet Key Exchange (IKE) proposal to protect confidentiality of remote access sessions.DISA F5 BIG-IP TMOS VPN STIG v1r1F5

ACCESS CONTROL

GEN003820 - The rsh daemon must not be running.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN003830 - The rlogind service must not be running.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN005505 - The SSH daemon must be configured to only use FIPS 140-2 approved ciphers.DISA AIX 5.3 STIG v1r2Unix

SYSTEM AND COMMUNICATIONS PROTECTION

GEN005510 - The SSH client must be configured to only use FIPS 140-2 approved ciphers.DISA AIX 5.3 STIG v1r2Unix

SYSTEM AND COMMUNICATIONS PROTECTION

KNOX-07-017100 - The VPN client must be configured: 1. Disabled 2. Configured for container use only. 3. Configured for per app use.MobileIron - DISA Samsung Android 7 with Knox 2.x v1r1MDM

ACCESS CONTROL

KNOX-07-017110 - The VPN client must be configured: 1. Disabled 2. Configured for container use only 3. Configured for per app use.MobileIron - DISA Samsung Android 7 with Knox 2.x v1r1MDM

ACCESS CONTROL

KNOX-07-017120 - The VPN client must be configured: 1. Disabled 2. Configured for container use only. 3. Configured for per app use.AirWatch - DISA Samsung Android 7 with Knox 2.x v1r1MDM

ACCESS CONTROL

KNOX-07-017130 - If a third-party VPN client is installed, it must not be configured with a DoD network (work) VPN profile.MobileIron - DISA Samsung Android 7 with Knox 2.x v1r1MDM

ACCESS CONTROL

OL08-00-010186 - OL 8 IP tunnels must use FIPS 140-3-approved cryptographic algorithms.DISA Oracle Linux 8 STIG v2r9Unix

ACCESS CONTROL

OL09-00-002404 - OL 9 IP tunnels must use 140-3 approved cryptographic algorithms.DISA Oracle Linux 9 STIG v1r6Unix

ACCESS CONTROL

RHEL-09-671020 - RHEL 9 IP tunnels must use FIPS 140-3 approved cryptographic algorithms.DISA Red Hat Enterprise Linux 9 STIG v2r9Unix

ACCESS CONTROL

SLES-15-010160 - The SUSE operating system must implement DOD-approved encryption to protect the confidentiality of SSH remote connections.DISA SUSE Linux Enterprise Server 15 STIG v2r6Unix

ACCESS CONTROL

SYMP-AG-000030 - Symantec ProxySG providing forward proxy intermediary services for TLS must be configured to comply with the required TLS settings in NIST SP 800-52 - server.connection.negotiated_cipherDISA Symantec ProxySG Benchmark ALG v1r3BlueCoat

ACCESS CONTROL

SYMP-AG-000050 - Symantec ProxySG storing secret or private keys must use FIPS-approved key management technology and processes in the production and control of private/secret cryptographic keys.DISA Symantec ProxySG Benchmark ALG v1r3BlueCoat

ACCESS CONTROL

UBTU-20-010045 - The Ubuntu operating system SSH server must be configured to use only FIPS-validated key exchange algorithms.DISA Canonical Ubuntu 20.04 LTS STIG v2r4Unix

ACCESS CONTROL

UBTU-22-255060 - Ubuntu 22.04 LTS SSH server must be configured to use only FIPS-validated key exchange algorithms.DISA Canonical Ubuntu 22.04 LTS STIG v2r9Unix

ACCESS CONTROL