Item Search

NameAudit NamePluginCategory
AMLS-NM-200825 - The Arista Multilayer Switch must use FIPS-compliant mechanisms for authentication to a cryptographic module - entropy sourceDISA STIG Arista MLS DCS-7000 Series NDM v1r3Arista

SYSTEM AND COMMUNICATIONS PROTECTION

CISC-L2-000030 - The Cisco switch must authenticate all VLAN Trunk Protocol (VTP) messages with a hash function using the most secured cryptographic algorithm available.DISA STIG Cisco IOS Switch L2S v2r3Cisco
CISC-L2-000030 - The Cisco switch must authenticate all VLAN Trunk Protocol (VTP) messages with a hash function using the most secured cryptographic algorithm available.DISA STIG Cisco IOS XE Switch L2S v2r4Cisco
CISC-RT-000040 - The Cisco router must be configured to use encryption for routing protocol authentication - OSPFDISA STIG Cisco IOS-XR Router RTR v2r3Cisco
CISC-RT-000040 - The Cisco router must be configured to use encryption for routing protocol authentication - OSPFDISA STIG Cisco IOS Router RTR v2r4Cisco
CISC-RT-000040 - The Cisco router must be configured to use encryption for routing protocol authentication - OSPFDISA STIG Cisco IOS XE Router RTR v2r6Cisco
CISC-RT-000040 - The Cisco router must be configured to use encryption for routing protocol authentication - RIPDISA STIG Cisco IOS Router RTR v2r1Cisco
CISC-RT-000040 - The Cisco router must be configured to use encryption for routing protocol authentication - RIPDISA STIG Cisco IOS Router RTR v2r4Cisco
CISC-RT-000040 - The Cisco switch must be configured to use encryption for routing protocol authentication - bgpDISA STIG Cisco IOS XE Switch RTR v2r1Cisco
CISC-RT-000040 - The Cisco switch must be configured to use encryption for routing protocol authentication - is-isDISA STIG Cisco IOS XE Switch RTR v2r1Cisco
CISC-RT-000040 - The Cisco switch must be configured to use encryption for routing protocol authentication.DISA STIG Cisco NX-OS Switch RTR v2r3Cisco
CISC-RT-000040 - The Cisco switch must be configured to use encryption for routing protocol authentication.DISA STIG Cisco IOS Switch RTR v2r4Cisco
CISC-RT-000050 - The Cisco router must be configured to authenticate all routing protocol messages using NIST-validated FIPS 198-1 message authentication code algorithm.DISA STIG Cisco IOS XE Router RTR v2r4Cisco
CISC-RT-000050 - The Cisco router must be configured to authenticate all routing protocol messages using NIST-validated FIPS 198-1 message authentication code algorithm.DISA STIG Cisco IOS XE Router RTR v2r8Cisco
CISC-RT-000050 - The Cisco switch must be configured to authenticate all routing protocol messages using NIST-validated FIPS 198-1 message authentication code algorithm.DISA STIG Cisco IOS Switch RTR v2r2Cisco
CISC-RT-000050 - The Cisco switch must be configured to authenticate all routing protocol messages using NIST-validated FIPS 198-1 message authentication code algorithm.DISA STIG Cisco IOS XE Switch RTR v2r2Cisco
EP11-00-013200 - The EDB Postgres Advanced Server must be configured on a platform that has a NIST certified FIPS 140-2 or 140-3 installation of OpenSSL - fips_modeEDB PostgreSQL Advanced Server v11 Windows OS Audit v2r2Windows
JUNI-RT-000040 - The Juniper router must be configured to use encryption for routing protocol authentication - BGPDISA STIG Juniper Router RTR v2r4Juniper
JUNI-RT-000050 - The Juniper router must be configured to authenticate all routing protocol messages using NIST-validated FIPS 140-2 message authentication code algorithm - BGPDISA STIG Juniper Router RTR v2r3Juniper
JUNI-RT-000050 - The Juniper router must be configured to authenticate all routing protocol messages using NIST-validated FIPS 140-2 message authentication code algorithm - OSPFDISA STIG Juniper Router RTR v2r4Juniper
O121-C2-016600 - The DBMS must implement required cryptographic protections using cryptographic modules complying with applicable federal laws, Executive Orders, directives, policies, regulations, standards, and guidance - PatchesDISA STIG Oracle 12c v2r6 DatabaseOracleDB
O121-C2-016600 - The DBMS must implement required cryptographic protections using cryptographic modules complying with applicable federal laws, Executive Orders, directives, policies, regulations, standards, and guidance - sslfipsDISA STIG Oracle 12c v2r6 WindowsWindows
O365-CO-000015 - Consistent MIME handling must be enabled for all Office 365 ProPlus programs - onenote.exeDISA STIG Microsoft Office 365 ProPlus v2r10Windows
O365-CO-000015 - Consistent MIME handling must be enabled for all Office 365 ProPlus programs - spdesign.exeDISA STIG Microsoft Office 365 ProPlus v2r10Windows
O365-CO-000015 - Consistent MIME handling must be enabled for all Office 365 ProPlus programs - winproj.exeDISA STIG Microsoft Office 365 ProPlus v2r8Windows
O365-CO-000019 - The MIME Sniffing safety feature must be enabled in all Office programs - msaccess.exeDISA STIG Microsoft Office 365 ProPlus v2r5Windows
O365-CO-000019 - The MIME Sniffing safety feature must be enabled in all Office programs - msaccess.exeDISA STIG Microsoft Office 365 ProPlus v2r8Windows
O365-CO-000019 - The MIME Sniffing safety feature must be enabled in all Office programs - mse7.exeDISA STIG Microsoft Office 365 ProPlus v2r8Windows
O365-CO-000019 - The MIME Sniffing safety feature must be enabled in all Office programs - onenote.exeDISA STIG Microsoft Office 365 ProPlus v2r8Windows
O365-CO-000019 - The MIME Sniffing safety feature must be enabled in all Office programs - outlook.exeDISA STIG Microsoft Office 365 ProPlus v2r8Windows
O365-CO-000019 - The MIME Sniffing safety feature must be enabled in all Office programs - spdesign.exeDISA STIG Microsoft Office 365 ProPlus v2r5Windows
O365-CO-000019 - The MIME Sniffing safety feature must be enabled in all Office programs.DISA STIG Microsoft Office 365 ProPlus v2r12Windows
O365-CO-000021 - Object Caching Protection must be enabled in all Office programs - msaccess.exeDISA STIG Microsoft Office 365 ProPlus v2r5Windows
O365-CO-000021 - Object Caching Protection must be enabled in all Office programs - mse7.exeDISA STIG Microsoft Office 365 ProPlus v2r5Windows
O365-CO-000021 - Object Caching Protection must be enabled in all Office programs - outlook.exeDISA STIG Microsoft Office 365 ProPlus v2r8Windows
O365-CO-000021 - Object Caching Protection must be enabled in all Office programs - winword.exeDISA STIG Microsoft Office 365 ProPlus v2r8Windows
OH12-1X-000259 - OHS must have the SSLEngine, SSLProtocol, and SSLWallet directives enabled and configured to meet the requirements of applicable federal laws, Executive Orders, directives, policies, regulations, standards, and guidance for such authentication - SSLEngineDISA STIG Oracle HTTP Server 12.1.3 v2r1Unix
OH12-1X-000259 - OHS must have the SSLEngine, SSLProtocol, and SSLWallet directives enabled and configured to meet the requirements of applicable federal laws, Executive Orders, directives, policies, regulations, standards, and guidance for such authentication - SSLWalletDISA STIG Oracle HTTP Server 12.1.3 v2r1Unix
OH12-1X-000260 - OHS must have the SSLCipherSuite directive enabled to meet the requirements of applicable federal laws, Executive Orders, directives, policies, regulations, standards, and guidance for such authentication.DISA STIG Oracle HTTP Server 12.1.3 v2r1Unix
OL6-00-000062 - The system must use a FIPS 140-2-approved cryptographic hashing algorithm for generating account password hashes (system-auth).DISA STIG Oracle Linux 6 v2r6Unix
PPS9-00-013200 - The EDB Postgres Advanced Server must be configured on a platform that has a NIST certified FIPS 140-2 ior 140-3 nstallation of OpenSSL.EDB PostgreSQL Advanced Server OS Linux Audit v2r2Unix
SLES-12-010210 - The SUSE operating system must employ FIPS 140-2 approved cryptographic hashing algorithm for system authentication (login.defs).DISA SLES 12 STIG v2r11Unix
SOL-11.1-060010 - The operating system must use mechanisms for authentication to a cryptographic module meeting the requirements of applicable federal laws, Executive orders, directives, policies, regulations, standards, and guidance for such authentication.DISA STIG Solaris 11 SPARC v2r8Unix
SPLK-CL-000050 - Splunk Enterprise must use TLS 1.2 and SHA-2 or higher cryptographic algorithms.DISA STIG Splunk Enterprise 7.x for Windows v2r3 REST APISplunk
SQL6-D0-008700 - SQL Server must use NIST FIPS 140-2 or 140-3 validated cryptographic modules for cryptographic operations.DISA STIG SQL Server 2016 Instance OS Audit v2r10Windows
UBTU-18-010110 - The Ubuntu operating system must employ a FIPS 140-2 approved cryptographic hashing algorithms for all created and stored passwords.DISA STIG Ubuntu 18.04 LTS v2r14Unix
WN10-CC-000052 - Windows 10 must be configured to prioritize ECC Curves with longer key lengths first.DISA Windows 10 STIG v2r8Windows
WN12-SO-000064 - Kerberos encryption types must be configured to prevent the use of DES and RC4 encryption suites.DISA Windows Server 2012 and 2012 R2 DC STIG v3r5Windows
WN16-SO-000350 - Kerberos encryption types must be configured to prevent the use of DES and RC4 encryption suites.DISA Windows Server 2016 STIG v2r6Windows
WN19-SO-000290 - Windows Server 2019 Kerberos encryption types must be configured to prevent the use of DES and RC4 encryption suites.DISA Windows Server 2019 STIG v2r8Windows