Item Search

NameAudit NamePluginCategory
ESXI-67-000072 - The ESXi host must have all security patches and updates installed.DISA STIG VMware vSphere 6.7 ESXi v1r3VMware

CONFIGURATION MANAGEMENT

ESXI-70-000060 - All port groups on standard switches must be configured to reject guest Media Access Control (MAC) address changes.DISA VMware vSphere 7.0 ESXi STIG v1r4 VMwareVMware

CONFIGURATION MANAGEMENT

FGFW-ND-000295 - The FortiGate device must be configured to send log data to a central log server for the purpose of forwarding alerts to the administrators and the ISSO.DISA Fortigate Firewall NDM STIG v1r4FortiGate

SYSTEM AND INFORMATION INTEGRITY

GOOG-09-999999 - All Google Android 9 installations must be removed.MobileIron - DISA Google Android 9.x v2r1MDM

CONFIGURATION MANAGEMENT

GOOG-12-010800 - Android 12 devices must have the latest available Google Android 12 operating system installed.MobileIron - DISA Google Android 12 COBO v1r2MDM

CONFIGURATION MANAGEMENT

GOOG-13-710800 - Android 13 devices must have the latest available Google Android 13 operating system installed.AirWatch - DISA Google Android 13 BYOAD v1r3MDM

CONFIGURATION MANAGEMENT

GOOG-16-010500 - The Google Android device must be configured to disable Wi-Fi Aware for Work Profile apps.AirWatch - DISA Google Android 16 COBO STIG v1r1MDM

CONFIGURATION MANAGEMENT

GOOG-16-010600 - Google Android 16 must implement the management setting: disable the Bluetooth radio.AirWatch - DISA Google Android 16 COBO STIG v1r1MDM

CONFIGURATION MANAGEMENT

GOOG-16-010800 - Android 16 devices must have the latest available Google Android 16 operating system installed.MobileIron - DISA Google Android 16 COBO STIG v1r1MDM

CONFIGURATION MANAGEMENT

HONW-09-008400 - On all Honeywell Mobility Edge Android Pie devices, cryptography must be configured to be in FIPS 140-2 validated mode.AirWatch - DISA Honeywell Android 9.x COPE v1r2MDM

CONFIGURATION MANAGEMENT

HONW-09-999999 - All Honeywell Android 9 installations must be removed.MobileIron - DISA Honeywell Android 9.x COPE v1r2MDM

CONFIGURATION MANAGEMENT

HONW-13-010800 - Android 13 devices must have the latest available Honeywell Android 13 operating system installed.MobileIron - DISA Honeywell Android 13 COPE STIG v1r1MDM

CONFIGURATION MANAGEMENT

MD4X-00-003300 - MongoDB must obscure feedback of authentication information during the authentication process to protect the information from possible exploitation/use by unauthorized individuals.DISA STIG MongoDB Enterprise Advanced 4.x v1r4 OSUnix

IDENTIFICATION AND AUTHENTICATION

MD4X-00-003800 - MongoDB must protect the confidentiality and integrity of all information at rest.DISA STIG MongoDB Enterprise Advanced 4.x v1r4 OSUnix

SYSTEM AND COMMUNICATIONS PROTECTION

MOTO-09-010900 - Motorola Android Pie devices must have a NIAP-validated Motorola Android Pie operating system installed.MobileIron - DISA Motorola Android Pie.x COBO v1r2MDM

CONFIGURATION MANAGEMENT

MSFT-11-010800 - Microsoft Android 11 devices must have the latest available Microsoft Android 11 operating system installed.AirWatch - DISA Microsoft Android 11 COPE v1r2MDM

CONFIGURATION MANAGEMENT

MSFT-11-999999 - All Microsoft Android 11 installations must be removed.MobileIron - DISA Microsoft Android 11 COBO v1r2MDM

CONFIGURATION MANAGEMENT

MSFT-11-999999 - All Microsoft Android 11 installations must be removed.AirWatch - DISA Microsoft Android 11 COPE v1r2MDM

CONFIGURATION MANAGEMENT

MYS8-00-005400 - The MySQL Database Server 8.0 must enforce approved authorizations for logical access to information and system resources in accordance with applicable access control policies.DISA Oracle MySQL 8.0 v2r2 DBMySQLDB

ACCESS CONTROL

MYS8-00-007200 - The MySQL Database Server 8.0 must protect the confidentiality and integrity of all information at rest.DISA Oracle MySQL 8.0 v2r2 DBMySQLDB

SYSTEM AND COMMUNICATIONS PROTECTION

O19C-00-015400 - When using command-line tools such as Oracle SQL*Plus, which can accept a plain-text password, users must use an alternative logon method that does not expose the password.DISA Oracle Database 19c STIG v1r3 OracleDBOracleDB

IDENTIFICATION AND AUTHENTICATION

O19C-00-015500 - Oracle Database must use NIST-validated FIPS 140-2/140-3 compliant cryptography for authentication mechanisms.DISA Oracle Database 19c STIG v1r3 UnixUnix

IDENTIFICATION AND AUTHENTICATION

OL6-00-000538 - The Oracle Linux operating system must not have accounts configured with blank or null passwords.DISA STIG Oracle Linux 6 v2r7Unix

CONFIGURATION MANAGEMENT

OL08-00-010000 - OL 8 must be a vendor-supported release.DISA Oracle Linux 8 STIG v2r9Unix

CONFIGURATION MANAGEMENT

OL08-00-010460 - There must be no "shosts.equiv" files on the OL 8 operating system.DISA Oracle Linux 8 STIG v2r9Unix

CONFIGURATION MANAGEMENT

OL08-00-040170 - The x86 Ctrl-Alt-Delete key sequence must be disabled on OL 8.DISA Oracle Linux 8 STIG v2r9Unix

CONFIGURATION MANAGEMENT

OL08-00-040171 - The x86 Ctrl-Alt-Delete key sequence in OL 8 must be disabled if a graphical user interface is installed.DISA Oracle Linux 8 STIG v2r9Unix

CONFIGURATION MANAGEMENT

OL09-00-000010 - OL 9 must be a vendor supported release.DISA Oracle Linux 9 STIG v1r6Unix

SYSTEM AND INFORMATION INTEGRITY

OL09-00-000135 - OL 9 must not have a Trivial File Transfer Protocol (TFTP) server package installed.DISA Oracle Linux 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

OL09-00-002419 - OL 9 file systems must not contain shosts.equiv files.DISA Oracle Linux 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

Overview of the HTTP profileTenable F5 BIG-IP Best Practice AuditF5

SYSTEM AND COMMUNICATIONS PROTECTION

PHTN-40-000182 - The Photon operating system must implement NIST FIPS-validated cryptography for the following: to provision digital signatures, to generate cryptographic hashes, and to protect unclassified information requiring confidentiality and cryptographic protection in accordance with applicable federal laws, Executive Orders, directives, policies, regulations, and standards.DISA VMware vSphere 8.0 vCenter Appliance Photon OS 4.0 STIG v2r1Unix

SYSTEM AND COMMUNICATIONS PROTECTION

PHTN-40-000207 - The Photon operating system must configure Secure Shell (SSH) to disallow authentication with an empty password.DISA VMware vSphere 8.0 vCenter Appliance Photon OS 4.0 STIG v2r1Unix

CONFIGURATION MANAGEMENT

Preserving or modifying HTTP response headers removed by the BIG-IP ASM systemTenable F5 BIG-IP Best Practice AuditF5

SYSTEM AND COMMUNICATIONS PROTECTION

SLES-15-040062 - The SUSE operating system must disable the systemd Ctrl-Alt-Delete burst key sequence.DISA SUSE Linux Enterprise Server 15 STIG v2r6Unix

CONFIGURATION MANAGEMENT

Specifying allowable IP ranges for SSH accessTenable F5 BIG-IP Best Practice AuditF5

SYSTEM AND COMMUNICATIONS PROTECTION

SYMP-AG-000300 - Symantec ProxySG must be configured to prohibit or restrict the use of network services as defined in the PPSM CAL and vulnerability assessments. - DestinationDISA Symantec ProxySG Benchmark ALG v1r3BlueCoat

CONFIGURATION MANAGEMENT

SYMP-AG-000300 - Symantec ProxySG must be configured to prohibit or restrict the use of network services as defined in the PPSM CAL and vulnerability assessments. - SourceDISA Symantec ProxySG Benchmark ALG v1r3BlueCoat

CONFIGURATION MANAGEMENT

SYMP-AG-000340 - Symantec ProxySG providing user authentication intermediary services must restrict user authentication traffic to specific authentication servers - Domain joinedDISA Symantec ProxySG Benchmark ALG v1r3BlueCoat

IDENTIFICATION AND AUTHENTICATION

SYMP-AG-000490 - Symantec ProxySG must use Transport Layer Security (TLS) to protect the authenticity of communications sessions.DISA Symantec ProxySG Benchmark ALG v1r3BlueCoat

SYSTEM AND COMMUNICATIONS PROTECTION

SYMP-NM-000020 - Symantec ProxySG must be configured to enforce user authorization to implement least privilege.DISA Symantec ProxySG Benchmark NDM v1r2BlueCoat

ACCESS CONTROL

The BIG-IP Core implementation must be configured to protect against or limit the effects of known and unknown types of Denial of Service (DoS) attacks by employing pattern recognition pre-processors when providing content filtering to virtual servers.Tenable F5 BIG-IP Best Practice AuditF5

SYSTEM AND COMMUNICATIONS PROTECTION

UBTU-18-010522 - The Ubuntu operating system must not have accounts configured with blank or null passwords.DISA STIG Ubuntu 18.04 LTS v2r15Unix

CONFIGURATION MANAGEMENT

VCLD-67-000034 - VAMI must implement TLS1.2 exclusively - sslv3DISA STIG VMware vSphere 6.7 VAMI-lighttpd v1r3Unix

SYSTEM AND COMMUNICATIONS PROTECTION

VCLD-67-000034 - VAMI must implement TLS1.2 exclusively - tlsv10DISA STIG VMware vSphere 6.7 VAMI-lighttpd v1r3Unix

SYSTEM AND COMMUNICATIONS PROTECTION

VCPG-67-000015 - VMware Postgres must use FIPS 140-2 approved TLS ciphers.DISA STIG VMware vSphere 6.7 PostgreSQL v1r2Unix

IDENTIFICATION AND AUTHENTICATION

VMCH-67-000999 - The version of VMM running on the server must be a supported version.DISA STIG VMware vSphere 6.7 Virtual Machine v1r3VMware

CONFIGURATION MANAGEMENT

WINCC-000001 - The Windows Installer Always install with elevated privileges must be disabled.DISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

WINRG-000001 - Standard user accounts must only have Read permissions to the Active Setup\Installed Components registry key.DISA Windows Vista STIG v6r41Windows

ACCESS CONTROL

ZEBR-10-010800 - Zebra Android 10 devices must have the latest available Zebra Android 10 operating system installed.MobileIron - DISA Zebra Android 10 COBO v1r2MDM

CONFIGURATION MANAGEMENT