CCI|CCI-000213

Title

Enforce approved authorizations for logical access to information and system resources in accordance with applicable access control policies.

Reference Item Details

Category: 2024

Audit Items

View all Reference Audit Items

NamePluginAudit Name
1.2 UBTU-22-212010UnixCIS Ubuntu Linux 22.04 LTS STIG v1.0.0 CAT I
1.4.1 Ensure bootloader password is setUnixCIS Amazon Linux 2 STIG v2.0.0 STIG
1.4.1 Ensure bootloader password is set - password efi grubUnixCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
1.4.1 Ensure bootloader password is set - password efi userUnixCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
1.4.1 Ensure bootloader password is set - password grubUnixCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
1.4.1 Ensure bootloader password is set - password userUnixCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
1.4.1 Ensure bootloader password is set - superusers efiUnixCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
1.4.1 Ensure bootloader password is set - superusers grubUnixCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
1.4.3 Ensure authentication required for single user modeUnixCIS Amazon Linux 2 STIG v2.0.0 L1 Server
1.4.3 Ensure authentication required for single user modeUnixCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
1.4.3 Ensure authentication required for single user modeUnixCIS Amazon Linux 2 STIG v2.0.0 STIG
1.4.3 Ensure authentication required for single user modeUnixCIS Amazon Linux 2 STIG v2.0.0 L1 Workstation
1.4.5 Ensure version 7.2 or newer booted with a BIOS have a unique name for the grub superusers accountUnixCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
1.4.5 Ensure version 7.2 or newer booted with a BIOS have a unique name for the grub superusers accountUnixCIS Amazon Linux 2 STIG v2.0.0 STIG
1.4.6 Ensure version 7.2 or newer booted with UEFI have a unique name for the grub superusers accountUnixCIS Amazon Linux 2 STIG v2.0.0 STIG
1.4.6 Ensure version 7.2 or newer booted with UEFI have a unique name for the grub superusers account - UEFI must have a unique name for the grub superusers account when booting into single-user mode and maintenance.UnixCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
1.11 RHEL-09-212010UnixCIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT II
1.13 RHEL-09-212020UnixCIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT I
1.15 APPL-14-000033UnixCIS Apple macOS 14 (Sonoma) STIG v1.0.0 CAT II
1.17 OL08-00-010140UnixCIS Oracle Linux 8 STIG v1.0.0 CAT I
1.18 OL08-00-010141UnixCIS Oracle Linux 8 STIG v1.0.0 CAT II
1.19 OL08-00-010149UnixCIS Oracle Linux 8 STIG v1.0.0 CAT II
1.20 OL08-00-010150UnixCIS Oracle Linux 8 STIG v1.0.0 CAT I
1.21 OL08-00-010151UnixCIS Oracle Linux 8 STIG v1.0.0 CAT II
1.22 OL08-00-010152UnixCIS Oracle Linux 8 STIG v1.0.0 CAT II
1.32 UBTU-24-102000UnixCIS Ubuntu Linux 24.04 LTS STIG v1.0.0 CAT I
1.57 APPL-14-002001UnixCIS Apple macOS 14 (Sonoma) STIG v1.0.0 CAT II
1.58 APPL-14-002003UnixCIS Apple macOS 14 (Sonoma) STIG v1.0.0 CAT II
1.62 APPL-14-002006UnixCIS Apple macOS 14 (Sonoma) STIG v1.0.0 CAT II
1.64 APPL-14-002008UnixCIS Apple macOS 14 (Sonoma) STIG v1.0.0 CAT II
1.65 APPL-14-002009UnixCIS Apple macOS 14 (Sonoma) STIG v1.0.0 CAT II
1.75 APPL-14-002022UnixCIS Apple macOS 14 (Sonoma) STIG v1.0.0 CAT II
1.79 APPL-14-002038UnixCIS Apple macOS 14 (Sonoma) STIG v1.0.0 CAT I
1.85 APPL-14-002050UnixCIS Apple macOS 14 (Sonoma) STIG v1.0.0 CAT II
1.98 APPL-14-002100UnixCIS Apple macOS 14 (Sonoma) STIG v1.0.0 CAT II
1.99 APPL-14-002110UnixCIS Apple macOS 14 (Sonoma) STIG v1.0.0 CAT II
1.139 APPL-14-005001UnixCIS Apple macOS 14 (Sonoma) STIG v1.0.0 CAT I
1.146 APPL-14-005058UnixCIS Apple macOS 14 (Sonoma) STIG v1.0.0 CAT II
1.149 APPL-14-005070UnixCIS Apple macOS 14 (Sonoma) STIG v1.0.0 CAT II
1.346 RHEL-09-611195UnixCIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT II
1.347 RHEL-09-611200UnixCIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT II
2.008 - Local volumes are not formatted using NTFS.WindowsDISA Windows Vista STIG v6r41
3.027 - Printer share permissions are not configured as recommended.WindowsDISA Windows Vista STIG v6r41
ALMA-09-006180 - AlmaLinux OS 9 must require authentication to access emergency mode.UnixDISA CloudLinux AlmaLinux OS 9 STIG v1r3
ALMA-09-006290 - AlmaLinux OS 9 must require a boot loader password.UnixDISA CloudLinux AlmaLinux OS 9 STIG v1r3
ALMA-09-006400 - AlmaLinux OS 9 must require a unique superuser's name upon booting into single-user and maintenance modes.UnixDISA CloudLinux AlmaLinux OS 9 STIG v1r3
ALMA-09-006510 - AlmaLinux OS 9 must require authentication to access single-user mode.UnixDISA CloudLinux AlmaLinux OS 9 STIG v1r3
APPL-14-000033 - The macOS system must disable FileVault automatic log on.UnixDISA Apple macOS 14 (Sonoma) STIG v2r3
APPL-14-002001 - The macOS system must disable Server Message Block sharing.UnixDISA Apple macOS 14 (Sonoma) STIG v2r3
APPL-14-002003 - The macOS system must disable Network File System service.UnixDISA Apple macOS 14 (Sonoma) STIG v2r3