CCI|CCI-001954

Title

Electronically verifies Personal Identity Verification-compliant credentials.

Reference Item Details

Category: 2024

Audit Items

View all Reference Audit Items

NamePluginAudit Name
1.8.8 Ensure users must authenticate users using MFA via a graphical user logonUnixCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
1.10 Ensure required packages for multifactor authentication are installedUnixCIS Amazon Linux 2 STIG v2.0.1 STIG
1.10 Ensure required packages for multifactor authentication are installedUnixCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
1.15 VCSA-80-000080VMwareCIS VMware vSphere 8.0 vCenter STIG v1.0.0 CAT II
1.44 AZLX-23-001130UnixCIS Amazon Linux 2023 STIG v1.0.0 CAT II
1.51 APPL-14-001060UnixCIS Apple macOS 14 Sonoma STIG v1.0.0 CAT II
1.51 APPL-26-001060UnixCIS Apple macOS 26 Tahoe STIG v1.0.0 CAT II
1.56 SLES-15-010460UnixCIS SUSE Linux Enterprise Server 15 STIG v1.0.0 CAT II
1.57 SLES-15-010470UnixCIS SUSE Linux Enterprise Server 15 STIG v1.0.0 CAT II
1.58 OL09-00-000270UnixCIS Oracle Linux 9 STIG v1.0.0 CAT II
1.62 RHEL-09-215075UnixCIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT II
1.68 AZLX-23-001300UnixCIS Amazon Linux 2023 STIG v1.0.0 CAT II
1.71 SLES-15-020030UnixCIS SUSE Linux Enterprise Server 15 STIG v1.0.0 CAT II
1.73 OL08-00-010400UnixCIS Oracle Linux 8 STIG v1.0.0 CAT II
1.76 RHEL-10-200730UnixCIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT II
1.80 UBTU-24-400060UnixCIS Ubuntu Linux 24.04 LTS STIG v1.0.0 CAT II
1.105 UBTU-22-612025UnixCIS Ubuntu Linux 22.04 LTS STIG v1.0.0 CAT II
1.173 OL09-00-000930UnixCIS Oracle Linux 9 STIG v1.0.0 CAT II
1.267 ALMA-09-034010UnixCIS Cloud Linux AlmaLinux OS 9 STIG v1.0.0 CAT II
1.341 RHEL-09-611170UnixCIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT II
1.394 RHEL-10-701230UnixCIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT II
5.4.9 Ensure multifactor authentication for access to privileged accountsUnixCIS Amazon Linux 2 STIG v2.0.1 STIG
5.4.9 Ensure multifactor authentication for access to privileged accounts - PAM.UnixCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
5.4.10 Ensure certificate status checking for PKI authenticationUnixCIS Amazon Linux 2 STIG v2.0.1 STIG
5.4.10 Ensure certificate status checking for PKI authenticationUnixCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
AIX7-00-003205 - The AIX operating system must accept and verify Personal Identity Verification (PIV) credentials.UnixDISA IBM AIX 7.x STIG v3r2
ALMA-09-034010 - AlmaLinux OS 9 must have the openssl-pkcs11 package installed.UnixDISA Cloud Linux AlmaLinux OS 9 STIG v1r6
APPL-14-001060 - The macOS system must set smart card certificate trust to moderate.UnixDISA Apple macOS 14 Sonoma STIG v2r4
APPL-15-001060 - The macOS system must set smart card certificate trust to moderate.UnixDISA Apple macOS 15 Sequoia STIG v1r7
APPL-26-001060 - The macOS system must set smart card certificate trust to moderate.UnixDISA Apple macOS 26 Tahoe STIG v1r2
AZLX-23-001130 - Amazon Linux 2023 must have the openssl-pkcs11 package installed.UnixDISA Amazon Linux 2023 STIG v1r3
AZLX-23-001300 - Amazon Linux 2023 must implement certificate status checking for multifactor authentication.UnixDISA Amazon Linux 2023 STIG v1r3
Big Sur - Set Smartcard Certificate Trust to ModerateUnixNIST macOS Big Sur v1.4.0 - All Profiles
Big Sur - Set Smartcard Certificate Trust to ModerateUnixNIST macOS Big Sur v1.4.0 - 800-53r4 Moderate
Big Sur - Set Smartcard Certificate Trust to ModerateUnixNIST macOS Big Sur v1.4.0 - CNSSI 1253
Big Sur - Set Smartcard Certificate Trust to ModerateUnixNIST macOS Big Sur v1.4.0 - 800-53r5 Moderate
Catalina - Set Smartcard Certificate Trust to ModerateUnixNIST macOS Catalina v1.5.0 - All Profiles
Catalina - Set Smartcard Certificate Trust to ModerateUnixNIST macOS Catalina v1.5.0 - CNSSI 1253
Catalina - Set Smartcard Certificate Trust to ModerateUnixNIST macOS Catalina v1.5.0 - 800-53r4 Moderate
Catalina - Set Smartcard Certificate Trust to ModerateUnixNIST macOS Catalina v1.5.0 - 800-53r5 Moderate
DKER-EE-001100 - LDAP integration in Docker Enterprise must be configured.UnixDISA STIG Docker Enterprise 2.x Linux/Unix UCP v2r2
DKER-EE-002180 - SAML integration must be enabled in Docker Enterprise.UnixDISA STIG Docker Enterprise 2.x Linux/Unix UCP v2r2
DTBI1075-IE11 - Prevent ignoring certificate errors option must be enabled.WindowsDISA STIG IE 11 v2r7
ESXI-06-200040 - The VMM must electronically verify Personal Identity Verification (PIV) credentials.VMwareDISA VMware vSphere ESXi 6.0 STIG v1r5
ESXI-67-000040 - The ESXi host must use multifactor authentication for local DCUI access to privileged accounts.VMwareDISA STIG VMware vSphere 6.7 ESXi v1r3
Monterey - Set Smartcard Certificate Trust to ModerateUnixNIST macOS Monterey v1.0.0 - All Profiles
Monterey - Set Smartcard Certificate Trust to ModerateUnixNIST macOS Monterey v1.0.0 - 800-53r5 Moderate
Monterey - Set Smartcard Certificate Trust to ModerateUnixNIST macOS Monterey v1.0.0 - CNSSI 1253
Monterey - Set Smartcard Certificate Trust to ModerateUnixNIST macOS Monterey v1.0.0 - 800-53r4 Moderate
OL07-00-041001 - The Oracle Linux operating system must have the required packages for multifactor authentication installed.UnixDISA Oracle Linux 7 STIG v3r5