CCI|CCI-001762

Title

The organization disables organization-defined functions, ports, protocols, and services within the information system deemed to be unnecessary and/or nonsecure.

Reference Item Details

Category: 2013

Audit Items

View all Reference Audit Items

NamePluginAudit Name
APPNET0075 - Disable TLS RC4 cipher in .NetWindowsDISA STIG for Microsoft Dot Net Framework 4.0 v2r1
APPNET0075 - Disable TLS RC4 cipher in .Net - Wow6432NodeWindowsDISA STIG for Microsoft Dot Net Framework 4.0 v2r1
AS24-U1-000780 - The Apache web server must prohibit or restrict the use of nonsecure or unnecessary ports, protocols, modules, and/or services.UnixDISA STIG Apache Server 2.4 Unix Server v2r5 Middleware
AS24-U1-000780 - The Apache web server must prohibit or restrict the use of nonsecure or unnecessary ports, protocols, modules, and/or services.UnixDISA STIG Apache Server 2.4 Unix Server v2r5
AS24-W2-000780 - The Apache web server must prohibit or restrict the use of nonsecure or unnecessary ports, protocols, modules, and/or services.WindowsDISA STIG Apache Server 2.4 Windows Site v2r1
DB2X-00-008300 - DB2 must disable network functions, ports, protocols, and services deemed by the organization to be nonsecure, in accord with the Ports, Protocols, and Services Management (PPSM) guidance - SSLUnixDISA STIG IBM DB2 v10.5 LUW v1r4 OS Linux
DB2X-00-008300 - DB2 must disable network functions, ports, protocols, and services deemed by the organization to be nonsecure, in accord with the Ports, Protocols, and Services Management (PPSM) guidance - SSLWindowsDISA STIG IBM DB2 v10.5 LUW v1r4 OS Windows
DB2X-00-008300 - DB2 must disable network functions, ports, protocols, and services deemed by the organization to be nonsecure, in accord with the Ports, Protocols, and Services Management (PPSM) guidance - SSL_SVCENAMEUnixDISA STIG IBM DB2 v10.5 LUW v1r4 OS Linux
DB2X-00-008300 - DB2 must disable network functions, ports, protocols, and services deemed by the organization to be nonsecure, in accord with the Ports, Protocols, and Services Management (PPSM) guidance - SSL_SVCENAMEWindowsDISA STIG IBM DB2 v10.5 LUW v1r4 OS Windows
DB2X-00-008300 - DB2 must disable network functions, ports, protocols, and services deemed by the organization to be nonsecure, in accord with the Ports, Protocols, and Services Management (PPSM) guidance - SVCENAMEWindowsDISA STIG IBM DB2 v10.5 LUW v1r4 OS Windows
DB2X-00-008300 - DB2 must disable network functions, ports, protocols, and services deemed by the organization to be nonsecure, in accord with the Ports, Protocols, and Services Management (PPSM) guidance - SVCENAMEUnixDISA STIG IBM DB2 v10.5 LUW v1r4 OS Linux
DKER-EE-001050 - TCP socket binding for all Docker Engine - Enterprise nodes in a Universal Control Plane (UCP) cluster must be disabled.UnixDISA STIG Docker Enterprise 2.x Linux/Unix v2r1
DKER-EE-003560 - Docker Enterprise network ports on all running containers must be limited to what is needed.UnixDISA STIG Docker Enterprise 2.x Linux/Unix v2r1
DTBC-0074 - Use of the QUIC protocol must be disabled.WindowsDISA STIG Google Chrome v2r6
EP11-00-008700 - The EDB Postgres Advanced Server must disable network functions, ports, protocols, and services deemed by the organization to be nonsecure, in accord with the Ports, Protocols, and Services Management (PPSM) guidance.WindowsEDB PostgreSQL Advanced Server v11 Windows OS Audit v2r1
EX13-CA-000130 - Exchange services must be documented and unnecessary services must be removed or disabled.WindowsDISA Microsoft Exchange 2013 Client Access Server STIG v2r1
EX13-EG-000305 - Exchange services must be documented and unnecessary services must be removed or disabled.WindowsDISA Microsoft Exchange 2013 Edge Transport Server STIG v1r5
EX13-MB-000300 - Exchange services must be documented and unnecessary services must be removed or disabled.WindowsDISA Microsoft Exchange 2013 Mailbox Server STIG v2r2
EX16-ED-000610 - Exchange services must be documented and unnecessary services must be removed or disabled.WindowsDISA Microsoft Exchange 2016 Edge Transport Server STIG v2r3
EX16-MB-000600 - Exchange services must be documented and unnecessary services must be removed or disabled.WindowsDISA Microsoft Exchange 2016 Mailbox Server STIG v2r4
IIST-SI-000239 - The IIS 10.0 websites must use ports, protocols, and services according to Ports, Protocols, and Services Management (PPSM) guidelines.WindowsDISA IIS 10.0 Site v2r5
IIST-SV-000148 - The IIS 10.0 web server must not be running on a system providing any other role.WindowsDISA IIS 10.0 Server v2r5
IIST-SV-000149 - The Internet Printing Protocol (IPP) must be disabled on the IIS 10.0 web server - Print ServicesWindowsDISA IIS 10.0 Server v2r5
IIST-SV-000149 - The Internet Printing Protocol (IPP) must be disabled on the IIS 10.0 web server - Web Printers DirectoryWindowsDISA IIS 10.0 Server v2r5
IISW-SI-000239 - The IIS 8.5 websites must utilize ports, protocols, and services according to PPSM guidelines.WindowsDISA IIS 8.5 Site v2r5
IISW-SV-000148 - The IIS 8.5 web server must not be running on a system providing any other role.WindowsDISA IIS 8.5 Server v2r3
IISW-SV-000149 - The Internet Printing Protocol (IPP) must be disabled on the IIS 8.5 web server - Print ServicesWindowsDISA IIS 8.5 Server v2r3
IISW-SV-000149 - The Internet Printing Protocol (IPP) must be disabled on the IIS 8.5 web server - Web Printers DirectoryWindowsDISA IIS 8.5 Server v2r3
PPS9-00-008700 - The EDB Postgres Advanced Server must disable network functions, ports, protocols, and services deemed by the organization to be nonsecure, in accord with the Ports, Protocols, and Services Management (PPSM) guidance - PortUnixEDB PostgreSQL Advanced Server OS Linux Audit v2r1
PPS9-00-008700 - The EDB Postgres Advanced Server must disable network functions, ports, protocols, and services deemed by the organization to be nonsecure, in accord with the Ports, Protocols, and Services Management (PPSM) guidance - SSLUnixEDB PostgreSQL Advanced Server OS Linux Audit v2r1
SQL4-00-034200 - SQL Server must disable communication protocols not required for operation.WindowsDISA STIG SQL Server 2014 Instance OS Audit v2r2
VCEM-67-000029 - ESX Agent Manager must be configured with the appropriate ports.UnixDISA STIG VMware vSphere 6.7 EAM Tomcat v1r2
VCFL-67-000028 - vSphere Client must be configured with the appropriate ports.UnixDISA STIG VMware vSphere 6.7 Virgo Client v1r1
VCPF-67-000028 - Performance Charts must be configured with the appropriate ports - httpUnixDISA STIG VMware vSphere 6.7 Perfcharts Tomcat v1r2
VCPF-67-000028 - Performance Charts must be configured with the appropriate ports - httpsUnixDISA STIG VMware vSphere 6.7 Perfcharts Tomcat v1r2
VCST-67-000028 - The Security Token Service must be configured with the appropriate ports - httpUnixDISA STIG VMware vSphere 6.7 STS Tomcat v1r2
VCST-67-000028 - The Security Token Service must be configured with the appropriate ports - httpsUnixDISA STIG VMware vSphere 6.7 STS Tomcat v1r2
VCST-67-000028 - The Security Token Service must be configured with the appropriate ports - localhost.httpsUnixDISA STIG VMware vSphere 6.7 STS Tomcat v1r2
VCUI-67-000028 - vSphere UI must be configured with the appropriate ports - httpUnixDISA STIG VMware vSphere 6.7 UI Tomcat v1r2
VCUI-67-000028 - vSphere UI must be configured with the appropriate ports - httpsUnixDISA STIG VMware vSphere 6.7 UI Tomcat v1r2
VCUI-67-000028 - vSphere UI must be configured with the appropriate ports - proxyUnixDISA STIG VMware vSphere 6.7 UI Tomcat v1r2