Item Search

NameAudit NamePluginCategory
EDGE-00-000001 - User control of proxy settings must be disabled.DISA STIG Edge v2r1Windows

ACCESS CONTROL

EDGE-00-000010 - Data Synchronization must be disabled.DISA STIG Edge v2r1Windows

CONFIGURATION MANAGEMENT

EDGE-00-000064 - The list of domains media autoplay allows must be allowlisted if used.DISA STIG Edge v2r1Windows

CONFIGURATION MANAGEMENT

ESXI-67-000003 - The ESXi host must verify the exception users list for Lockdown Mode.DISA STIG VMware vSphere 6.7 ESXi v1r3VMware

CONFIGURATION MANAGEMENT

ESXI-67-000019 - The ESXi host SSH daemon must not permit Kerberos authentication.DISA STIG VMware vSphere 6.7 ESXi OS v1r3Unix

CONFIGURATION MANAGEMENT

ESXI-67-000044 - The ESXi host must enable kernel core dumps.DISA STIG VMware vSphere 6.7 ESXi OS v1r3Unix

SYSTEM AND COMMUNICATIONS PROTECTION

ESXI-67-000058 - The ESXi host must enable BPDU filter on the host to prevent being locked out of physical switch ports with Portfast and BPDU Guard enabled.DISA STIG VMware vSphere 6.7 ESXi v1r3VMware

CONFIGURATION MANAGEMENT

KNOX-07-000200 - The Samsung must be configured to not allow passwords with more than two repeating or sequential characters - CharactersMobileIron - DISA Samsung Android 7 with Knox 2.x v1r1MDM

CONFIGURATION MANAGEMENT

KNOX-07-005900 - The Samsung must be configured to disable automatic transfer of diagnostic data. Disable Report Diagnostic Info.AirWatch - DISA Samsung Android 7 with Knox 2.x v1r1MDM

CONFIGURATION MANAGEMENT

KNOX-07-005900 - The Samsung must be configured to disable automatic transfer of diagnostic data. Disable Report Diagnostic Info.MobileIron - DISA Samsung Android 7 with Knox 2.x v1r1MDM

CONFIGURATION MANAGEMENT

KNOX-07-017800 - The Samsung Android 7 with Knox must be configured to Disable Bixby.MobileIron - DISA Samsung Android 7 with Knox 2.x v1r1MDM

CONFIGURATION MANAGEMENT

KNOX-07-018200 - The Samsung must be configured to Add the MDM Client application to the Battery optimizations modes Whitelist.AirWatch - DISA Samsung Android 7 with Knox 2.x v1r1MDM

CONFIGURATION MANAGEMENT

MOTO-09-000500 - The Motorola Android Pie must be configured to not allow more than 10 consecutive failed authentication attempts.AirWatch - DISA Motorola Android Pie.x COBO v1r2MDM

ACCESS CONTROL

MOTO-09-003400 - The Motorola Android Pie must be configured to display the DoD advisory warning message at startup or each time the user unlocks the device.AirWatch - DISA Motorola Android Pie.x COPE v1r2MDM

ACCESS CONTROL

MOTO-09-006100 - The Motorola Android Pie must be configured to generate audit records for the following auditable events: detected integrity violations.AirWatch - DISA Motorola Android Pie.x COBO v1r2MDM

AUDIT AND ACCOUNTABILITY

MOTS-11-000500 - Motorola Solutions Android 11 must be configured to not allow more than ten consecutive failed authentication attempts.AirWatch - DISA Motorola Solutions Android 11 COBO v1r3MDM

ACCESS CONTROL

MSFT-11-011100 - Microsoft Android 11 devices must be configured to enable Common Criteria Mode (CC Mode).AirWatch - DISA Microsoft Android 11 COPE v1r2MDM

CONFIGURATION MANAGEMENT

MSFT-11-011100 - Microsoft Android 11 devices must be configured to enable Common Criteria Mode (CC Mode).MobileIron - DISA Microsoft Android 11 COPE v1r2MDM

CONFIGURATION MANAGEMENT

OL08-00-010375 - OL 8 must restrict access to the kernel message buffer.DISA Oracle Linux 8 STIG v2r1Unix

SYSTEM AND COMMUNICATIONS PROTECTION

OL08-00-010540 - OL 8 must use a separate file system for '/var'.DISA Oracle Linux 8 STIG v2r1Unix

CONFIGURATION MANAGEMENT

PHTN-40-000007 The Photon operating system must limit the number of concurrent sessions to ten for all accounts and/or account types.DISA VMware vSphere 8.0 vCenter Appliance Photon OS 4.0 STIG v2r1Unix

ACCESS CONTROL

RHEL-08-010376 - RHEL 8 must prevent kernel profiling by unprivileged users.DISA Red Hat Enterprise Linux 8 STIG v2r1Unix

SYSTEM AND COMMUNICATIONS PROTECTION

RHEL-08-010472 - RHEL 8 must have the packages required to use the hardware random number generator entropy gatherer service.DISA Red Hat Enterprise Linux 8 STIG v2r1Unix

CONFIGURATION MANAGEMENT

RHEL-08-030601 - RHEL 8 must enable auditing of processes that start prior to the audit daemon.DISA Red Hat Enterprise Linux 8 STIG v2r1Unix

AUDIT AND ACCOUNTABILITY

RHEL-08-030603 - RHEL 8 must enable Linux audit logging for the USBGuard daemon.DISA Red Hat Enterprise Linux 8 STIG v2r1Unix

AUDIT AND ACCOUNTABILITY

RHEL-08-030742 - RHEL 8 must disable network management of the chrony daemon.DISA Red Hat Enterprise Linux 8 STIG v2r1Unix

CONFIGURATION MANAGEMENT

RHEL-08-040023 - RHEL 8 must disable the stream control transmission protocol (SCTP).DISA Red Hat Enterprise Linux 8 STIG v2r1Unix

CONFIGURATION MANAGEMENT

RHEL-08-040025 - RHEL 8 must disable mounting of cramfs.DISA Red Hat Enterprise Linux 8 STIG v2r1Unix

CONFIGURATION MANAGEMENT

RHEL-08-040300 - The RHEL 8 file integrity tool must be configured to verify extended attributes.DISA Red Hat Enterprise Linux 8 STIG v2r1Unix

CONFIGURATION MANAGEMENT

RHEL-09-211035 - RHEL 9 must enable the hardware random number generator entropy gatherer service.DISA Red Hat Enterprise Linux 9 STIG v2r2Unix

CONFIGURATION MANAGEMENT

RHEL-09-231020 - RHEL 9 must use a separate file system for /var.DISA Red Hat Enterprise Linux 9 STIG v2r2Unix

CONFIGURATION MANAGEMENT

RHEL-09-231025 - RHEL 9 must use a separate file system for /var/log.DISA Red Hat Enterprise Linux 9 STIG v2r2Unix

CONFIGURATION MANAGEMENT

SLES-15-010410 - The SUSE operating system must be configured to use Coordinated Universal Time (UTC) or Greenwich Mean Time (GMT).DISA SLES 15 STIG v2r1Unix

AUDIT AND ACCOUNTABILITY

SLES-15-020020 - The SUSE operating system must limit the number of concurrent sessions to 10 for all accounts and/or account types.DISA SLES 15 STIG v2r1Unix

ACCESS CONTROL

SLES-15-040040 - The SUSE operating system file integrity tool must be configured to verify Access Control Lists (ACLs).DISA SLES 15 STIG v2r1Unix

CONFIGURATION MANAGEMENT

SLES-15-040050 - The SUSE operating system file integrity tool must be configured to verify extended attributes.DISA SLES 15 STIG v2r1Unix

CONFIGURATION MANAGEMENT

UBTU-20-010075 - The Ubuntu operating system must enforce a delay of at least 4 seconds between logon prompts following a failed logon attempt.DISA STIG Ubuntu 20.04 LTS v2r1Unix

CONFIGURATION MANAGEMENT

UBTU-20-010215 - The Ubuntu operating system must allocate audit record storage capacity to store at least one weeks' worth of audit records, when audit records are not immediately sent to a central audit record storage facility.DISA STIG Ubuntu 20.04 LTS v2r1Unix

AUDIT AND ACCOUNTABILITY

VCSA-80-000277 The vCenter Server must be isolated from the public internet but must still allow for patch notification and delivery.DISA VMware vSphere 8.0 vCenter STIG v2r1VMware

CONFIGURATION MANAGEMENT

VMCH-80-000196 Virtual machines (VMs) must limit informational messages from the virtual machine to the VMX file.DISA VMware vSphere 8.0 Virtual Machine STIG v2r1VMware

CONFIGURATION MANAGEMENT

WN11-CC-000175 - The Application Compatibility Program Inventory must be prevented from collecting data and sending the information to Microsoft.DISA Windows 11 STIG v2r2Windows

CONFIGURATION MANAGEMENT

WN11-SO-000050 - The computer account password must not be prevented from being reset.DISA Windows 11 STIG v2r2Windows

CONFIGURATION MANAGEMENT

ZEBR-10-000500 - Zebra Android 10 must be configured to not allow more than 10 consecutive failed authentication attempts.AirWatch - DISA Zebra Android 10 COBO v1r2MDM

ACCESS CONTROL

ZEBR-10-000500 - Zebra Android 10 must be configured to not allow more than 10 consecutive failed authentication attempts.MobileIron - DISA Zebra Android 10 COPE v1r2MDM

ACCESS CONTROL

ZEBR-10-003400 - Zebra Android 10 must be configured to display the DoD advisory warning message at startup or each time the user unlocks the device.AirWatch - DISA Zebra Android 10 COBO v1r2MDM

ACCESS CONTROL

ZEBR-10-006100 - Zebra Android 10 must be configured to generate audit records for the following auditable events: detected integrity violations.AirWatch - DISA Zebra Android 10 COPE v1r2MDM

AUDIT AND ACCOUNTABILITY

ZEBR-10-011000 - Zebra Android 10 devices must be configured to disable the use of third-party keyboards.MobileIron - DISA Zebra Android 10 COBO v1r2MDM

CONFIGURATION MANAGEMENT

ZEBR-10-011000 - Zebra Android 10 devices must be configured to disable the use of third-party keyboards.MobileIron - DISA Zebra Android 10 COPE v1r2MDM

CONFIGURATION MANAGEMENT

ZEBR-11-003400 - Zebra Android 11 must be configured to display the DoD advisory warning message at start-up or each time the user unlocks the device.MobileIron - DISA Zebra Android 11 COBO v1r3MDM

ACCESS CONTROL

ZEBR-11-011100 - Zebra Android 11 devices must be configured to enable Common Criteria Mode (CC Mode).MobileIron - DISA Zebra Android 11 COBO v1r3MDM

CONFIGURATION MANAGEMENT