Item Search

NameAudit NamePluginCategory
1.2.8 Ensure that the --authorization-mode argument includes RBACCIS Kubernetes Benchmark v1.9.0 L1 MasterUnix

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY

1.6.1 Ensure 'SSH source restriction' is set to an authorized IP addressCIS Cisco ASA 9.x Firewall L1 v1.1.0Cisco

ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

1.11 Do not setup access keys during initial user setup for all IAM users that have a console passwordCIS Amazon Web Services Foundations L1 3.0.0amazon_aws

ACCESS CONTROL, MEDIA PROTECTION

1.18 Ensure IAM instance roles are used for AWS resource access from instancesCIS Amazon Web Services Foundations L2 3.0.0amazon_aws

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY

2.2.30 (L1) Ensure 'Generate security audits' is set to 'LOCAL SERVICE, NETWORK SERVICE'CIS Windows Server 2012 MS L1 v3.0.0Windows

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY

4.8 Ensure Handler is not granted Write and Script/Execute - ApplicationsCIS IIS 10 v1.2.1 Level 1Windows

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY

5.1.1 Ensure that the cluster-admin role is only used where requiredCIS Kubernetes v1.20 Benchmark v1.0.1 L1 MasterUnix

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY

5.1.10 Minimize access to the proxy sub-resource of nodesCIS Kubernetes Benchmark v1.9.0 L1 MasterUnix

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY

5.2.4 Ensure SSH access is limitedCIS SUSE Linux Enterprise 12 v3.1.0 L1 ServerUnix

ACCESS CONTROL, MEDIA PROTECTION

5.2.4 Ensure SSH access is limitedCIS SUSE Linux Enterprise 15 Server L1 v1.1.1Unix

ACCESS CONTROL, MEDIA PROTECTION

5.2.4 Ensure SSH access is limitedCIS SUSE Linux Enterprise 15 Workstation L1 v1.1.1Unix

ACCESS CONTROL, MEDIA PROTECTION

5.2.4 Ensure SSH access is limitedCIS SUSE Linux Enterprise 12 v3.1.0 L1 WorkstationUnix

ACCESS CONTROL, MEDIA PROTECTION

5.2.14 Ensure SSH access is limitedCIS SUSE Linux Enterprise Server 11 L1 v2.1.1Unix

ACCESS CONTROL, MEDIA PROTECTION

5.2.14 Ensure SSH access is limitedCIS SUSE Linux Enterprise Workstation 11 L1 v2.1.1Unix

ACCESS CONTROL, MEDIA PROTECTION

5.3.5 Ensure SSH access is limitedCIS Red Hat 6 Workstation L1 v3.0.0Unix

ACCESS CONTROL, MEDIA PROTECTION

5.3.5 Ensure SSH access is limitedCIS Red Hat 6 Server L1 v3.0.0Unix

ACCESS CONTROL, MEDIA PROTECTION

5.3.6 Ensure SSH access is limitedCIS Red Hat Enterprise Linux 7 STIG v2.0.0 L1 ServerUnix

ACCESS CONTROL, MEDIA PROTECTION

5.3.6 Ensure SSH access is limitedCIS Red Hat Enterprise Linux 7 STIG v2.0.0 L1 WorkstationUnix

ACCESS CONTROL, MEDIA PROTECTION

DTAM144 - McAfee VirusScan Access Protection Rules Common Standard Protection must be set to prevent termination of McAfee processes.DISA McAfee VirusScan 8.8 Local Client STIG v6r1Windows

ACCESS CONTROL

DTAM144 - McAfee VirusScan Access Protection: Common Standard Protection must be set to prevent termination of McAfee processes.DISA McAfee VirusScan 8.8 Managed Client STIG v6r1Windows

ACCESS CONTROL

DTOO199 - Changing permissions on rights managed content for users must be enforced.DISA STIG Microsoft Office System 2013 v2r1Windows

ACCESS CONTROL

DTOO200 - Office must be configured to not allow read with browsers.DISA STIG Microsoft Office System 2013 v2r1Windows

ACCESS CONTROL

DTOO208 - Office client polling of SharePoint servers published links must be disabled.DISA STIG Microsoft Office System 2013 v2r2Windows

ACCESS CONTROL

GEN000020 - The system must require authentication upon booting into single-user and maintenance modes.DISA STIG for Oracle Linux 5 v2r1Unix

ACCESS CONTROL

GEN000020 - The system must require authentication upon booting into single-user and maintenance modes.DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL

GEN000020 - The system must require authentication upon booting into single-user and maintenance modes.DISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN000020 - The system must require authentication upon booting into single-user and maintenance modes.DISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

GEN004820 - Anonymous FTP must not be active on the system unless authorized.DISA STIG Solaris 10 SPARC v2r1Unix

ACCESS CONTROL

GEN004820 - Anonymous FTP must not be active on the system unless authorized.DISA STIG Solaris 10 X86 v2r1Unix

ACCESS CONTROL

GEN004820 - Anonymous FTP must not be active on the system unless authorized.DISA STIG Solaris 10 X86 v2r2Unix

ACCESS CONTROL

GEN004820 - Anonymous FTP must not be active on the system unless authorized.DISA STIG Solaris 10 SPARC v2r2Unix

ACCESS CONTROL

GEN008620 - System BIOS or system controllers supporting password protection must have administrator accounts/passwords configured, and no others.DISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

GEN008620 - System BIOS or system controllers supporting password protection must have administrator accounts/passwords configured, and no others.DISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN008620 - System BIOS or system controllers supporting password protection must have administrator accounts/passwords configured, and no others.DISA STIG for Oracle Linux 5 v2r1Unix

ACCESS CONTROL

GEN008700 - The system boot loader must require authentication - '/boot/grub/grub.conf'DISA STIG for Oracle Linux 5 v2r1Unix

ACCESS CONTROL

GEN008700 - The system boot loader must require authentication - '/boot/grub/menu.lst'DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL

GEN008700 - The system boot loader must require authentication - '/boot/grub/menu.lst'DISA STIG for Oracle Linux 5 v2r1Unix

ACCESS CONTROL

GEN008700 - The system boot loader must require authentication.DISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

GEN008710 - The system boot loader must protect passwords using an MD5 or stronger cryptographic hash.DISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

Monterey - Disable AirDropNIST macOS Monterey v1.0.0 - 800-53r4 LowUnix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

Monterey - Disable AirDropNIST macOS Monterey v1.0.0 - 800-53r4 ModerateUnix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

Monterey - Disable AirDropNIST macOS Monterey v1.0.0 - 800-53r5 LowUnix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

Monterey - Disable AirDropNIST macOS Monterey v1.0.0 - 800-171Unix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

Monterey - Disable AirDropNIST macOS Monterey v1.0.0 - CNSSI 1253Unix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

Monterey - Disable AirDropNIST macOS Monterey v1.0.0 - 800-53r4 HighUnix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

Monterey - Disable AirDropNIST macOS Monterey v1.0.0 - 800-53r5 HighUnix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

Monterey - Disable AirDropNIST macOS Monterey v1.0.0 - 800-53r5 ModerateUnix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

Monterey - Disable AirDropNIST macOS Monterey v1.0.0 - All ProfilesUnix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

SRG-OS-99999-ESXI5-000151 - The system must prevent unintended use of dvfilter network APIsDISA STIG VMWare ESXi Server 5 STIG v1r10VMware

ACCESS CONTROL

SRG-OS-99999-ESXI5-000151 - The system must prevent unintended use of dvfilter network APIsDISA STIG VMWare ESXi Server 5 STIG v1r9VMware

ACCESS CONTROL, CONFIGURATION MANAGEMENT