Item Search

NameAudit NamePluginCategory
1.78 MADB-10-009300CIS MariaDB Enterprise 10.x STIG v1.1.0 CAT II UnixUnix

SYSTEM AND INFORMATION INTEGRITY

1.132 ALMA-09-017620CIS Cloud Linux AlmaLinux OS 9 STIG v1.0.0 CAT IIUnix

CONFIGURATION MANAGEMENT

1.256 OL09-00-002301CIS Oracle Linux 9 STIG v1.0.0 CAT IIUnix

CONFIGURATION MANAGEMENT

1.258 OL09-00-002303CIS Oracle Linux 9 STIG v1.0.0 CAT IIUnix

CONFIGURATION MANAGEMENT

ADBP-XI-005000 - An unsupported Adobe Acrobat Pro version must not be installed.DISA Adobe Acrobat Pro XI STIG v1r2Windows

SYSTEM AND INFORMATION INTEGRITY

AIOS-02-080017 - Apple iOS must implement the management setting: Encrypt iTunes backups.AirWatch - DISA Apple iOS 10 v1r3MDM

CONFIGURATION MANAGEMENT

AIOS-02-090103 - Apple iOS device must have the latest available iOS operating system installed.AirWatch - DISA Apple iOS 10 v1r3MDM

CONFIGURATION MANAGEMENT

AIOS-02-090103 - Apple iOS device must have the latest available iOS operating system installed.MobileIron - DISA Apple iOS 10 v1r3MDM

CONFIGURATION MANAGEMENT

AIOS-14-008800 - Apple iOS/iPadOS must require a valid password be successfully entered before the mobile device data is unencrypted.MobileIron - DISA Apple iOS/iPadOS 14 v1r3MDM

SYSTEM AND COMMUNICATIONS PROTECTION

AIOS-16-999999 - All Apple iOS/iPadOS 16 installations must be removed.AirWatch - DISA Apple iOS-iPadOS 16 STIG v2r2MDM

CONFIGURATION MANAGEMENT

AIOS-17-010400 - Apple iOS/iPadOS 17 must require a valid password be successfully entered before the mobile device data is unencrypted.AirWatch - DISA Apple iOS/iPadOS 17 v2r2MDM

SYSTEM AND COMMUNICATIONS PROTECTION

AIOS-18-010400 - Apple iOS/iPadOS 18 must require a valid password be successfully entered before the mobile device data is unencrypted.AirWatch - DISA Apple iOS/iPadOS 18 v2r3MDM

SYSTEM AND COMMUNICATIONS PROTECTION

AMLS-L3-000330 - The Arista MLS RTR must be using a version supported by the vendor.DISA STIG Arista MLS DCS-7000 Series RTR v1r4Arista

CONFIGURATION MANAGEMENT

APPL-12-004021 - The macOS system must be configured with the sudoers file configured to authenticate users on a per -tty basis.DISA STIG Apple macOS 12 v1r9Unix

CONFIGURATION MANAGEMENT

ARBA-ND-000212 - AOS must be configured to assign appropriate user roles or access levels to authenticated users.DISA HPE Aruba Networking AOS NDM STIG v1r1ArubaOS

ACCESS CONTROL

ARST-ND-000470 - The Arista network device must use FIPS 140-2 approved algorithms for authentication to a cryptographic module.DISA STIG Arista MLS EOS 4.2x NDM v2r1Arista

IDENTIFICATION AND AUTHENTICATION

ARST-RT-000730 - The PE router must be configured to have each Virtual Routing and Forwarding (VRF) instance bound to the appropriate physical or logical interfaces to maintain traffic separation between all MPLS L3VPNs.DISA Arista MLS EOS 4.X Router STIG v2r2Arista

CONTINGENCY PLANNING

ARST-RT-000730 - The PE router must be configured to have each Virtual Routing and Forwarding (VRF) instance bound to the appropriate physical or logical interfaces to maintain traffic separation between all MPLS L3VPNs.DISA STIG Arista MLS EOS 4.2x Router v2r1Arista

CONTINGENCY PLANNING

CD12-00-008200 - PostgreSQL must implement NIST FIPS 140-2 or 140-3 validated cryptographic modules to protect unclassified information requiring confidentiality and cryptographic protection, in accordance with the data owner's requirements.DISA STIG Crunchy Data PostgreSQL OS v3r1Unix

SYSTEM AND COMMUNICATIONS PROTECTION

CD16-00-008300 - PostgreSQL must use NSA-approved cryptography to protect classified information in accordance with the data owner's requirements.DISA Crunchy Data Postgres 16 STIG v1r2 PostgreSQLDBPostgreSQLDB

SYSTEM AND COMMUNICATIONS PROTECTION

CD16-00-009300 - PostgreSQL products must be a version supported by the vendor.DISA Crunchy Data Postgres 16 STIG v1r2 PostgreSQLDBPostgreSQLDB

SYSTEM AND SERVICES ACQUISITION

DKER-EE-999999 - The version of Docker Enterprise Edition running on the system must be a supported version.DISA STIG Docker Enterprise 2.x Linux/Unix v2r2Unix

SYSTEM AND INFORMATION INTEGRITY

F5BI-AS-999999 - The version of F5 BIG-IP must be a supported version.DISA F5 BIG-IP Application Security Manager STIG v2r2F5

SYSTEM AND INFORMATION INTEGRITY

F5BI-LT-999999 - The version of F5 BIG-IP must be a supported version.DISA F5 BIG-IP Local Traffic Manager STIG v2r4F5

SYSTEM AND INFORMATION INTEGRITY

GEN002040 - There must be no .rhosts, .shosts, hosts.equiv, or shosts.equiv files on the system - '.rhosts'DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN003820 - The rsh daemon must not be running.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN003840 - The rexec daemon must not be running.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GEN005100 - The TFTP daemon must have mode 0755 or less permissive.DISA AIX 5.3 STIG v1r2Unix

CONFIGURATION MANAGEMENT

GOOG-14-010800 - Android 14 devices must have the latest available Google Android 14 operating system installed.MobileIron - DISA Google Android 14 COPE STIG v2r5MDM

CONFIGURATION MANAGEMENT

GOOG-15-010800 - Android 15 devices must have the latest available Google Android 15 operating system installed.MobileIron - DISA Google Android 15 COPE STIG v1r5MDM

CONFIGURATION MANAGEMENT

GOOG-16-010800 - Android 16 devices must have the latest available Google Android 16 operating system installed.AirWatch - DISA Google Android 16 COBO STIG v1r3MDM

CONFIGURATION MANAGEMENT

GOOG-16-010800 - Android 16 devices must have the latest available Google Android 16 operating system installed.MobileIron - DISA Google Android 16 COBO STIG v1r3MDM

CONFIGURATION MANAGEMENT

GOOG-16-010800 - Android 16 devices must have the latest available Google Android 16 operating system installed.AirWatch - DISA Google Android 16 COPE STIG v1r3MDM

CONFIGURATION MANAGEMENT

IISW-SI-009999 - The version of IIS running on the system must be a supported version.DISA IIS 8.5 Site v2r9Windows

SYSTEM AND INFORMATION INTEGRITY

MADB-10-000300 - MariaDB must enforce approved authorizations for logical access to information and system resources in accordance with applicable access control policies.DISA MariaDB Enterprise 10.x STIG v2r5 MySQLDBMySQLDB

ACCESS CONTROL

MADB-10-008400 - MariaDB must use NSA-approved cryptography to protect classified information in accordance with the data owner's requirements.DISA MariaDB Enterprise 10.x STIG v2r5 MySQLDBMySQLDB

SYSTEM AND COMMUNICATIONS PROTECTION

MD7X-00-000300 MongoDB must enforce approved authorizations for logical access to information and system resources in accordance with applicable access control policies.DISA MongoDB Enterprise Advanced 7.x STIG v1r1MongoDB

ACCESS CONTROL

MD7X-00-004300 MongoDB must obscure feedback of authentication information during the authentication process to protect the information from possible exploitation/use by unauthorized individuals.DISA MongoDB Enterprise Advanced 7.x STIG v1r1Unix

IDENTIFICATION AND AUTHENTICATION

SLES-12-010221 - The SUSE operating system must not have accounts configured with blank or null passwords.DISA SLES 12 STIG v3r5Unix

CONFIGURATION MANAGEMENT

UBTU-20-010009 - Ubuntu operating systems when booted must require authentication upon booting into single-user and maintenance modes.DISA Canonical Ubuntu 20.04 LTS STIG v2r4Unix

ACCESS CONTROL

UBTU-20-010462 - The Ubuntu operating system must not have accounts configured with blank or null passwords.DISA Canonical Ubuntu 20.04 LTS STIG v2r4Unix

CONFIGURATION MANAGEMENT

WN11-00-000040 - Windows 11 systems must be maintained at a supported servicing level.DISA Microsoft Windows 11 STIG v2r7Windows

CONFIGURATION MANAGEMENT

WN11-00-000150 - Structured Exception Handling Overwrite Protection (SEHOP) must be enabled.DISA Microsoft Windows 11 STIG v2r7Windows

SYSTEM AND INFORMATION INTEGRITY

WN11-CC-000075 - Credential Guard must be running on Windows 11 domain-joined systems.DISA Microsoft Windows 11 STIG v2r7Windows

CONFIGURATION MANAGEMENT

WN11-CC-000155 - Solicited Remote Assistance must not be allowed.DISA Microsoft Windows 11 STIG v2r7Windows

SYSTEM AND COMMUNICATIONS PROTECTION

WN16-DC-000401 - Windows Server 2016 must be configured for name-based strong mappings for certificates.DISA Microsoft Windows Server 2016 STIG v2r10Windows

ACCESS CONTROL

WN25-00-000130 - Windows Server 2025 local volumes must use a format that supports New Technology File System (NTFS) attributes.DISA Microsoft Windows Server 2025 STIG v1r1Windows

ACCESS CONTROL

WN25-CC-000470 - Windows Server 2025 Windows Remote Management (WinRM) client must not use Basic authentication.DISA Microsoft Windows Server 2025 STIG v1r1Windows

MAINTENANCE

WN25-SO-000250 - Windows Server 2025 must restrict anonymous access to Named Pipes and Shares.DISA Microsoft Windows Server 2025 STIG v1r1Windows

SYSTEM AND COMMUNICATIONS PROTECTION

ZEBR-14-010800 - Zebra Android 14 devices must have the latest available Zebra Android 14 operating system installed.AirWatch - DISA Zebra Android 14 COBO STIG v1r2MDM

CONFIGURATION MANAGEMENT