Item Search

NameAudit NamePluginCategory
AIX7-00-002061 - AIX must remove NOPASSWD tag from sudo config files.DISA STIG AIX 7.x v3r1Unix

IDENTIFICATION AND AUTHENTICATION

AIX7-00-002062 - AIX must remove !authenticate option from sudo config files.DISA STIG AIX 7.x v3r1Unix

IDENTIFICATION AND AUTHENTICATION

AIX7-00-002108 - If GSSAPI authentication is not required on AIX, the SSH daemon must disable GSSAPI authentication.DISA STIG AIX 7.x v3r1Unix

IDENTIFICATION AND AUTHENTICATION

APPL-14-004022 The macOS system must require users to reauthenticate for privilege escalation when using the "sudo" command.DISA Apple macOS 14 (Sonoma) STIG v2r3Unix

IDENTIFICATION AND AUTHENTICATION

APPL-14-004060 The macOS system must configure sudoers timestamp type.DISA Apple macOS 14 (Sonoma) STIG v2r3Unix

IDENTIFICATION AND AUTHENTICATION

CASA-VN-000350 - The Cisco ASA VPN gateway must be configured to renegotiate the IPsec Security Association after eight hours or less.DISA STIG Cisco ASA VPN v2r2Cisco

IDENTIFICATION AND AUTHENTICATION

CASA-VN-000360 - The Cisco ASA VPN gateway must be configured to renegotiate the IKE security association after 24 hours or less.DISA STIG Cisco ASA VPN v2r2Cisco

IDENTIFICATION AND AUTHENTICATION

CD12-00-010100 - PostgreSQL must require users to reauthenticate when organization-defined circumstances or situations require reauthentication.DISA STIG Crunchy Data PostgreSQL DB v3r1PostgreSQLDB

SYSTEM AND COMMUNICATIONS PROTECTION

EPAS-00-008800 - The EDB Postgres Advanced Server must require users to reauthenticate when organization-defined circumstances or situations require reauthentication.EnterpriseDB PostgreSQL Advanced Server DB v2r1PostgreSQLDB

SYSTEM AND COMMUNICATIONS PROTECTION

MADB-10-008200 - MariaDB must require users to reauthenticate when organization-defined circumstances or situations require reauthentication.DISA MariaDB Enterprise 10.x v2r3 DBMySQLDB

IDENTIFICATION AND AUTHENTICATION

MYS8-00-010400 - The MySQL Database Server 8.0 must require users to reauthenticate when organization-defined circumstances or situations require reauthentication.DISA Oracle MySQL 8.0 v2r2 DBMySQLDB

IDENTIFICATION AND AUTHENTICATION

OL07-00-010340 - The Oracle Linux operating system must be configured so that users must provide a password for privilege escalation.DISA Oracle Linux 7 STIG v3r1Unix

IDENTIFICATION AND AUTHENTICATION

OL07-00-010343 - The Oracle Linux operating system must require re-authentication when using the 'sudo' command - sudo command.DISA Oracle Linux 7 STIG v3r1Unix

IDENTIFICATION AND AUTHENTICATION

OL07-00-010344 - The Oracle Linux operating system must not be configured to bypass password requirements for privilege escalation.DISA Oracle Linux 7 STIG v3r1Unix

IDENTIFICATION AND AUTHENTICATION

OL07-00-010350 - The Oracle Linux operating system must be configured so users must re-authenticate for privilege escalation.DISA Oracle Linux 7 STIG v3r1Unix

IDENTIFICATION AND AUTHENTICATION

OL08-00-010380 - OL 8 must require users to provide a password for privilege escalation.DISA Oracle Linux 8 STIG v2r4Unix

IDENTIFICATION AND AUTHENTICATION

OL08-00-010381 - OL 8 must require users to reauthenticate for privilege escalation and changing roles.DISA Oracle Linux 8 STIG v2r4Unix

IDENTIFICATION AND AUTHENTICATION

OL08-00-010384 - OL 8 must require reauthentication when using the "sudo" command.DISA Oracle Linux 8 STIG v2r4Unix

IDENTIFICATION AND AUTHENTICATION

OL08-00-010385 - The OL 8 operating system must not be configured to bypass password requirements for privilege escalation.DISA Oracle Linux 8 STIG v2r4Unix

IDENTIFICATION AND AUTHENTICATION

PHTN-40-000133 The Photon operating system must require users to reauthenticate for privilege escalation.DISA VMware vSphere 8.0 vCenter Appliance Photon OS 4.0 STIG v2r1Unix

SYSTEM AND COMMUNICATIONS PROTECTION

RHEL-08-010380 - RHEL 8 must require users to provide a password for privilege escalation.DISA Red Hat Enterprise Linux 8 STIG v2r3Unix

IDENTIFICATION AND AUTHENTICATION

RHEL-08-010381 - RHEL 8 must require users to reauthenticate for privilege escalation.DISA Red Hat Enterprise Linux 8 STIG v2r3Unix

IDENTIFICATION AND AUTHENTICATION

RHEL-08-010384 - RHEL 8 must require re-authentication when using the "sudo" command.DISA Red Hat Enterprise Linux 8 STIG v2r3Unix

IDENTIFICATION AND AUTHENTICATION

RHEL-08-010385 - The RHEL 8 operating system must not be configured to bypass password requirements for privilege escalation.DISA Red Hat Enterprise Linux 8 STIG v2r3Unix

IDENTIFICATION AND AUTHENTICATION

RHEL-09-432015 - RHEL 9 must require reauthentication when using the "sudo" command.DISA Red Hat Enterprise Linux 9 STIG v2r4Unix

IDENTIFICATION AND AUTHENTICATION

RHEL-09-432025 - RHEL 9 must require users to reauthenticate for privilege escalation.DISA Red Hat Enterprise Linux 9 STIG v2r4Unix

IDENTIFICATION AND AUTHENTICATION

RHEL-09-432035 - RHEL 9 must restrict the use of the "su" command.DISA Red Hat Enterprise Linux 9 STIG v2r4Unix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

RHEL-09-611085 - RHEL 9 must require users to provide a password for privilege escalation.DISA Red Hat Enterprise Linux 9 STIG v2r4Unix

IDENTIFICATION AND AUTHENTICATION

RHEL-09-611145 - RHEL 9 must not be configured to bypass password requirements for privilege escalation.DISA Red Hat Enterprise Linux 9 STIG v2r4Unix

IDENTIFICATION AND AUTHENTICATION

SLES-12-010110 - The SUSE operating system must reauthenticate users when changing authenticators, roles, or escalating privileges.DISA SLES 12 STIG v3r2Unix

IDENTIFICATION AND AUTHENTICATION

SLES-12-010113 - The SUSE operating system must require re-authentication when using the 'sudo' command - sudo command.DISA SLES 12 STIG v3r2Unix

IDENTIFICATION AND AUTHENTICATION

SLES-12-010114 - The SUSE operating system must not be configured to bypass password requirements for privilege escalation.DISA SLES 12 STIG v3r2Unix

IDENTIFICATION AND AUTHENTICATION

SLES-15-010450 - The SUSE operating system must reauthenticate users when changing authenticators, roles, or escalating privileges.DISA SLES 15 STIG v2r2Unix

IDENTIFICATION AND AUTHENTICATION

SLES-15-020102 - The SUSE operating system must require reauthentication when using the 'sudo' command - sudo command.DISA SLES 15 STIG v2r2Unix

IDENTIFICATION AND AUTHENTICATION

SLES-15-020104 - The SUSE operating system must not be configured to bypass password requirements for privilege escalation.DISA SLES 15 STIG v2r2Unix

IDENTIFICATION AND AUTHENTICATION

SPLK-CL-000010 - Splunk Enterprise idle session timeout must be set to not exceed 15 minutes.DISA STIG Splunk Enterprise 8.x for Linux v2r1 STIG OSUnix

ACCESS CONTROL

SPLK-CL-000180 - Splunk Enterprise idle session timeout must be set to not exceed 15 minutes.DISA STIG Splunk Enterprise 7.x for Windows v3r1 REST APISplunk

SYSTEM AND COMMUNICATIONS PROTECTION

TCAT-AS-000970 - Idle timeout for the management application must be set to 10 minutes.DISA STIG Apache Tomcat Application Server 9 v3r1 MiddlewareUnix

ACCESS CONTROL

UBTU-20-010014 - The Ubuntu operating system must require users to reauthenticate for privilege escalation or when changing roles.DISA STIG Ubuntu 20.04 LTS v2r1Unix

IDENTIFICATION AND AUTHENTICATION

UBTU-22-432010 - Ubuntu 22.04 LTS must require users to reauthenticate for privilege escalation or when changing roles.DISA Canonical Ubuntu 22.04 LTS STIG v2r3Unix

IDENTIFICATION AND AUTHENTICATION

VCLU-80-000070 The vCenter Lookup service must set an inactive timeout for sessions.DISA VMware vSphere 8.0 vCenter Appliance Lookup Service STIG v2r1Unix

ACCESS CONTROL

VCPF-80-000070 The vCenter Perfcharts service must set an inactive timeout for sessions.DISA VMware vSphere 8.0 vCenter Appliance Perfcharts STIG v2r1Unix

ACCESS CONTROL

VCSA-80-000089 - The vCenter Server must terminate vSphere Client sessions after 15 minutes of inactivity.DISA VMware vSphere 8.0 vCenter STIG v2r2VMware

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION

VCST-80-000070 The vCenter STS service must set an inactive timeout for sessions.DISA VMware vSphere 8.0 vCenter Appliance Secure Token Service (STS) STIG v2r1Unix

ACCESS CONTROL

VCUI-80-000070 The vCenter UI service must set an inactive timeout for sessions.DISA VMware vSphere 8.0 vCenter Appliance User Interface (UI) STIG v2r1Unix

ACCESS CONTROL