CCI|CCI-001494

Title

Protect audit tools from unauthorized modification.

Reference Item Details

Category: 2024

Audit Items

View all Reference Audit Items

NamePluginAudit Name
1.13 APPL-14-000030UnixCIS Apple macOS 14 (Sonoma) STIG v1.0.0 CAT II
1.14 APPL-14-000031UnixCIS Apple macOS 14 (Sonoma) STIG v1.0.0 CAT II
1.24 UBTU-22-232035UnixCIS Ubuntu Linux 22.04 LTS STIG v1.0.0 CAT II
1.34 APPL-14-001003UnixCIS Apple macOS 14 (Sonoma) STIG v1.0.0 CAT II
1.36 APPL-14-001012UnixCIS Apple macOS 14 (Sonoma) STIG v1.0.0 CAT II
1.37 APPL-14-001013UnixCIS Apple macOS 14 (Sonoma) STIG v1.0.0 CAT II
1.38 APPL-14-001014UnixCIS Apple macOS 14 (Sonoma) STIG v1.0.0 CAT II
1.39 APPL-14-001015UnixCIS Apple macOS 14 (Sonoma) STIG v1.0.0 CAT II
1.39 UBTU-22-232110UnixCIS Ubuntu Linux 22.04 LTS STIG v1.0.0 CAT II
1.40 APPL-14-001016UnixCIS Apple macOS 14 (Sonoma) STIG v1.0.0 CAT II
1.41 APPL-14-001017UnixCIS Apple macOS 14 (Sonoma) STIG v1.0.0 CAT II
1.42 APPL-14-001020UnixCIS Apple macOS 14 (Sonoma) STIG v1.0.0 CAT II
1.43 APPL-14-001021UnixCIS Apple macOS 14 (Sonoma) STIG v1.0.0 CAT II
1.53 APPL-14-001110UnixCIS Apple macOS 14 (Sonoma) STIG v1.0.0 CAT II
1.54 APPL-14-001120UnixCIS Apple macOS 14 (Sonoma) STIG v1.0.0 CAT II
1.55 APPL-14-001130UnixCIS Apple macOS 14 (Sonoma) STIG v1.0.0 CAT II
1.56 APPL-14-001140UnixCIS Apple macOS 14 (Sonoma) STIG v1.0.0 CAT II
1.139 APPL-14-005001UnixCIS Apple macOS 14 (Sonoma) STIG v1.0.0 CAT I
1.178 UBTU-24-901230UnixCIS Ubuntu Linux 24.04 LTS STIG v1.0.0 CAT II
1.179 UBTU-24-901240UnixCIS Ubuntu Linux 24.04 LTS STIG v1.0.0 CAT II
1.180 UBTU-24-901250UnixCIS Ubuntu Linux 24.04 LTS STIG v1.0.0 CAT II
1.272 OL08-00-030630UnixCIS Oracle Linux 8 STIG v1.0.0 CAT II
1.273 OL08-00-030640UnixCIS Oracle Linux 8 STIG v1.0.0 CAT II
1.354 RHEL-09-651025UnixCIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT II
6.1.15 Ensure the file permissions ownership and group membership of system files and commands match the vendor valuesUnixCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
AIX7-00-002025 - AIX audit tools must be owned by root.UnixDISA STIG AIX 7.x v3r1
AIX7-00-002026 - AIX audit tools must be group-owned by audit.UnixDISA STIG AIX 7.x v3r1
AIX7-00-002027 - AIX audit tools must be set to 4550 or less permissive.UnixDISA STIG AIX 7.x v3r1
ALMA-09-056890 - AlmaLinux OS 9 must use cryptographic mechanisms to protect the integrity of audit tools.UnixDISA CloudLinux AlmaLinux OS 9 STIG v1r3
AOSX-13-000240 - The macOS system must enable System Integrity Protection.UnixDISA STIG Apple Mac OSX 10.13 v2r5
AOSX-14-005001 - The macOS system must enable System Integrity Protection.UnixDISA STIG Apple Mac OSX 10.14 v2r6
AOSX-15-005001 - The macOS system must enable System Integrity Protection.UnixDISA STIG Apple Mac OSX 10.15 v1r10
APPL-11-005001 - The macOS system must enable System Integrity Protection.UnixDISA STIG Apple macOS 11 v1r8
APPL-11-005001 - The macOS system must enable System Integrity Protection.UnixDISA STIG Apple macOS 11 v1r5
APPL-12-005001 - The macOS system must enable System Integrity Protection.UnixDISA STIG Apple macOS 12 v1r9
APPL-13-005001 - The macOS system must enable System Integrity Protection.UnixDISA STIG Apple macOS 13 v1r5
APPL-14-000030 - The macOS system must configure audit log files to not contain access control lists.UnixDISA Apple macOS 14 (Sonoma) STIG v2r3
APPL-14-000031 - The macOS system must configure audit log folders to not contain access control lists.UnixDISA Apple macOS 14 (Sonoma) STIG v2r3
APPL-14-001003 - The macOS system must enable security auditing.UnixDISA Apple macOS 14 (Sonoma) STIG v2r3
APPL-14-001012 - The macOS system must configure audit log files to be owned by root.UnixDISA Apple macOS 14 (Sonoma) STIG v2r3
APPL-14-001013 - The macOS system must configure audit log folders to be owned by root.UnixDISA Apple macOS 14 (Sonoma) STIG v2r3
APPL-14-001014 - The macOS system must configure audit log files group to wheel.UnixDISA Apple macOS 14 (Sonoma) STIG v2r3
APPL-14-001015 - The macOS system must configure audit log folders group to wheel.UnixDISA Apple macOS 14 (Sonoma) STIG v2r3
APPL-14-001016 - The macOS system must configure audit log files to mode 440 or less permissive.UnixDISA Apple macOS 14 (Sonoma) STIG v2r3
APPL-14-001017 - The macOS system must configure audit log folders to mode 700 or less permissive.UnixDISA Apple macOS 14 (Sonoma) STIG v2r3
APPL-14-001020 - The macOS system must be configured to audit all deletions of object attributes.UnixDISA Apple macOS 14 (Sonoma) STIG v2r3
APPL-14-001021 - The macOS system must be configured to audit all changes of object attributes.UnixDISA Apple macOS 14 (Sonoma) STIG v2r3
APPL-14-001110 - The macOS system must configure audit_control group to wheel.UnixDISA Apple macOS 14 (Sonoma) STIG v2r3
APPL-14-001120 - The macOS system must configure audit_control owner to root.UnixDISA Apple macOS 14 (Sonoma) STIG v2r3
APPL-14-001130 - The macOS system must configure audit_control to mode 440 or less permissive.UnixDISA Apple macOS 14 (Sonoma) STIG v2r3