3.10.30.1 (L1) Ensure 'Enable RPC Endpoint Mapper Client Authentication' is set to 'Enabled' | CIS Microsoft Intune for Windows 11 v3.0.1 L1 | Windows | CONFIGURATION MANAGEMENT |
aaa auth | DISA STIG Cisco IOS XE Switch NDM v3r2 | Cisco | |
access-class deny | DISA STIG Cisco IOS XE Switch NDM v3r2 | Cisco | |
AMLS-L3-000220 - The Arista Multilayer Switch must enable neighbor router authentication for control plane protocols except RIP - IS-IS auth mode | DISA STIG Arista MLS DCS-7000 Series RTR v1r4 | Arista | ACCESS CONTROL, CONFIGURATION MANAGEMENT |
AMLS-L3-000220 - The Arista Multilayer Switch must enable neighbor router authentication for control plane protocols except RIP - IS-IS md5 key | DISA STIG Arista MLS DCS-7000 Series RTR v1r4 | Arista | ACCESS CONTROL, CONFIGURATION MANAGEMENT |
AMLS-L3-000250 - Check for ipv6 router OSPF | DISA STIG Arista MLS DCS-7000 Series RTR v1r4 | Arista | |
AMLS-L3-000250 - The Arista Multilayer Switch must encrypt all methods of configured authentication for the OSPF routing protocol - ipv6 OSPF checks | DISA STIG Arista MLS DCS-7000 Series RTR v1r4 | Arista | IDENTIFICATION AND AUTHENTICATION |
AMLS-L3-000250 - The Arista Multilayer Switch must encrypt all methods of configured authentication for the OSPF routing protocol - ospf message-digest | DISA STIG Arista MLS DCS-7000 Series RTR v1r4 | Arista | IDENTIFICATION AND AUTHENTICATION |
Check for bpduguard default globally | DISA STIG Cisco NX-OS Switch L2S v3r2 | Cisco | |
Check for limited vty | DISA STIG Cisco IOS XE Switch NDM v3r2 | Cisco | |
Check snmp-server v3 | DISA STIG Cisco IOS XE Switch NDM v3r2 | Cisco | |
CISC-L2-000030 - The Cisco switch must authenticate all VLAN Trunk Protocol (VTP) messages with a hash function using the most secured cryptographic algorithm available. | DISA STIG Cisco NX-OS Switch L2S v3r2 | Cisco | IDENTIFICATION AND AUTHENTICATION |
CISC-L2-000100 - The Cisco switch must have BPDU Guard enabled on all user-facing or untrusted access switch ports. | DISA STIG Cisco NX-OS Switch L2S v3r2 | Cisco | SYSTEM AND COMMUNICATIONS PROTECTION |
CISC-L2-000140 - The Cisco switch must have IP Source Guard enabled on all user-facing or untrusted access switch ports. | DISA STIG Cisco NX-OS Switch L2S v3r2 | Cisco | SYSTEM AND COMMUNICATIONS PROTECTION |
CISC-L2-000160 - The Cisco switch must have Storm Control configured on all host-facing switchports. | DISA STIG Cisco IOS XE Switch L2S v3r1 | Cisco | CONFIGURATION MANAGEMENT |
CISC-L2-000190 - The Cisco switch must enable Unidirectional Link Detection (UDLD) to protect against one-way connections. | DISA STIG Cisco NX-OS Switch L2S v3r2 | Cisco | CONFIGURATION MANAGEMENT |
CISC-L2-000200 - The Cisco switch must have all trunk links enabled statically. | DISA STIG Cisco IOS XE Switch L2S v3r1 | Cisco | CONFIGURATION MANAGEMENT |
CISC-L2-000230 - The Cisco switch must have the default VLAN pruned from all trunk ports that do not require it. | DISA STIG Cisco NX-OS Switch L2S v3r2 | Cisco | SYSTEM AND COMMUNICATIONS PROTECTION |
CISC-L2-000240 - The Cisco switch must not use the default VLAN for management traffic. | DISA STIG Cisco NX-OS Switch L2S v3r2 | Cisco | CONTINGENCY PLANNING |
CISC-ND-000010 - The Cisco switch must be configured to limit the number of concurrent management sessions to an organization-defined number. | DISA STIG Cisco NX-OS Switch NDM v3r2 | Cisco | ACCESS CONTROL |
CISC-ND-000090 - The Cisco switch must be configured to automatically audit account creation. | DISA STIG Cisco NX-OS Switch NDM v3r2 | Cisco | ACCESS CONTROL |
CISC-ND-000210 - The Cisco device must be configured to audit all administrator activity. | DISA STIG Cisco IOS XE Switch NDM v3r2 | Cisco | ACCESS CONTROL, AUDIT AND ACCOUNTABILITY |
CISC-ND-001410 - The Cisco switch must be configured to support organizational requirements to conduct backups of the configuration when changes occur. | DISA STIG Cisco NX-OS Switch NDM v3r2 | Cisco | CONFIGURATION MANAGEMENT, CONTINGENCY PLANNING |
CISC-RT-000320 - The Cisco perimeter switch must be configured to filter traffic destined to the enclave in accordance with the guidelines contained in DoD Instruction 8551.1. | DISA STIG Cisco IOS XE Switch RTR v3r1 | Cisco | SYSTEM AND COMMUNICATIONS PROTECTION |
CISC-RT-000320 - The Cisco perimeter switch must be configured to filter traffic destined to the enclave in accordance with the guidelines contained in DoD Instruction 8551.1. | DISA STIG Cisco NX-OS Switch RTR v3r2 | Cisco | SYSTEM AND COMMUNICATIONS PROTECTION |
deny 10.0.0.0 | DISA STIG Cisco IOS Switch RTR v3r1 | Cisco | |
deny 192.0.0.0 | DISA STIG Cisco IOS Switch RTR v3r1 | Cisco | |
deny 192.18.0.0 | DISA STIG Cisco IOS Switch RTR v3r1 | Cisco | |
deny 198.51.100.0 | DISA STIG Cisco IOS Switch RTR v3r1 | Cisco | |
deny 224.0.0.0 | DISA STIG Cisco IOS Switch RTR v3r1 | Cisco | |
deny ip any | DISA STIG Cisco IOS Switch RTR v3r1 | Cisco | |
deny ipv6 any any | DISA STIG Cisco IOS Switch RTR v3r1 | Cisco | |
deny rule | DISA STIG Cisco IOS Switch RTR v3r1 | Cisco | |
dest-option-type 3 | DISA STIG Cisco IOS Switch RTR v3r1 | Cisco | |
dest-option-type 6 | DISA STIG Cisco IOS Switch RTR v3r1 | Cisco | |
dest-option-type 10 | DISA STIG Cisco IOS Switch RTR v3r1 | Cisco | |
dest-option-type 34 | DISA STIG Cisco IOS Switch RTR v3r1 | Cisco | |
dest-option-type 37 | DISA STIG Cisco IOS Switch RTR v3r1 | Cisco | |
dest-option-type 194 | DISA STIG Cisco IOS Switch RTR v3r1 | Cisco | |
dest-option-type 255 | DISA STIG Cisco IOS Switch RTR v3r1 | Cisco | |
feature udld | DISA STIG Cisco NX-OS Switch L2S v3r2 | Cisco | |
interface dot1x | DISA STIG Cisco IOS XE Switch L2S v3r1 | Cisco | |
interfaces | DISA STIG Cisco NX-OS Switch L2S v3r2 | Cisco | |
ip dhcp snooping vlan | DISA STIG Cisco IOS XE Switch L2S v3r1 | Cisco | |
ipv6 ingress acl | DISA STIG Cisco IOS Switch RTR v3r1 | Cisco | |
line vty | DISA STIG Cisco IOS XE Switch NDM v3r2 | Cisco | |
logging userinfo | DISA STIG Cisco IOS XE Switch NDM v3r2 | Cisco | |
mpls ldp neighbor | DISA STIG Cisco IOS Switch RTR v3r1 | Cisco | |
ntp authenticate | DISA STIG Cisco IOS XE Switch NDM v3r2 | Cisco | |
snmp-server view | DISA STIG Cisco IOS XE Switch NDM v3r2 | Cisco | |