Item Search

NameAudit NamePluginCategory
2.0.3 Set umask value for DB2 admin user .profile fileCIS IBM DB2 OS L1 v1.2.0Unix

ACCESS CONTROL

2.006 - ACLs for system files and directories do not conform to minimum requirements. - 'C:'DISA Windows Vista STIG v6r41Windows

ACCESS CONTROL

2.006 - ACLS FOR SYSTEM FILES AND DIRECTORIES DO NOT CONFORM TO MINIMUM REQUIREMENTS. - 'C:\Program Files'DISA Windows Vista STIG v6r41Windows

ACCESS CONTROL

2.006 - ACLS FOR SYSTEM FILES AND DIRECTORIES DO NOT CONFORM TO MINIMUM REQUIREMENTS. - 'C:\Windows'DISA Windows Vista STIG v6r41Windows

ACCESS CONTROL

5.4.4 Ensure default user umask is 027 or more restrictive - '/etc/bash.bashrc'CIS Ubuntu Linux 14.04 LTS Server L1 v2.1.0Unix

ACCESS CONTROL

5.4.4 Ensure default user umask is 027 or more restrictive - '/etc/bash.bashrc'CIS Ubuntu Linux 14.04 LTS Workstation L1 v2.1.0Unix

ACCESS CONTROL

5.4.4 Ensure default user umask is 027 or more restrictive - '/etc/profile'CIS Ubuntu Linux 14.04 LTS Workstation L1 v2.1.0Unix

ACCESS CONTROL

5.4.4 Ensure default user umask is 027 or more restrictive - '/etc/profile'CIS Ubuntu Linux 14.04 LTS Server L1 v2.1.0Unix

ACCESS CONTROL

5.4.4 Ensure default user umask is 027 or more restrictive - /etc/bashrcCIS Amazon Linux v2.1.0 L1Unix

ACCESS CONTROL

5.4.4 Ensure default user umask is 027 or more restrictive - /etc/profileCIS Amazon Linux v2.1.0 L1Unix

ACCESS CONTROL

5.4.4 Ensure default user umask is 027 or more restrictive - /etc/profile.d/*.shCIS Amazon Linux v2.1.0 L1Unix

ACCESS CONTROL

5.8 Ensure non-privileged users are prevented from executing privileged functionsCIS Amazon Linux 2 STIG v1.0.0 L3Unix

ACCESS CONTROL

6.1.11 Ensure no unowned files or directories existCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

ACCESS CONTROL

6.1.12 Ensure no ungrouped files or directories existCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

ACCESS CONTROL

7.3 Set Default umask for usersCIS Solaris 11.2 L1 v1.1.0Unix

ACCESS CONTROL

7.3 Set Default umask for users - UMASK = 027CIS Solaris 11.1 L1 v1.0.0Unix

ACCESS CONTROL

7.4 Set Default File Creation Mask for FTP UsersCIS Solaris 11 L1 v1.1.0Unix

ACCESS CONTROL

7.7 Set Default umask for FTP Users - Check if 'defumask' is set to 077.CIS Solaris 10 L1 v5.2Unix

ACCESS CONTROL

8.11 Set default umask for users, Check if 'UMASK' is set to 077.CIS Solaris 9 v1.3Unix

ACCESS CONTROL

8.12 Set default umask for FTP users (Solaris 9)CIS Solaris 9 v1.3Unix

ACCESS CONTROL

10.19 Setting Security Lifecycle Listener (check for umask present in startup)CIS Apache Tomcat 7 L1 v1.1.0 MiddlewareUnix

ACCESS CONTROL

Big Sur - Allow Administrators to Modify Security Settings and System AttributesNIST macOS Big Sur v1.4.0 - All ProfilesUnix

ACCESS CONTROL

Big Sur - Allow Administrators to Promote Other Users to Administrator StatusNIST macOS Big Sur v1.4.0 - All ProfilesUnix

ACCESS CONTROL

Big Sur - Allow Information Transfer with Other Operating SystemsNIST macOS Big Sur v1.4.0 - All ProfilesUnix

ACCESS CONTROL

Catalina - Allow Administrators to Modify Security Settings and System AttributesNIST macOS Catalina v1.5.0 - All ProfilesUnix

ACCESS CONTROL

Catalina - Allow Administrators to Promote Other Users to Administrator StatusNIST macOS Catalina v1.5.0 - All ProfilesUnix

ACCESS CONTROL

Catalina - Allow Information Transfer with Other Operating SystemsNIST macOS Catalina v1.5.0 - All ProfilesUnix

ACCESS CONTROL

CD12-00-002200 - PostgreSQL must enforce discretionary access control policies, as defined by the data owner, over defined subjects and objects.DISA STIG Crunchy Data PostgreSQL OS v3r1Unix

ACCESS CONTROL

DG0009-ORACLE11 - Access to DBMS software files and directories should not be granted to unauthorized users - '/etc/profile umask < 022'DISA STIG Oracle 11 Installation v9r1 LinuxUnix

ACCESS CONTROL

DG0009-ORACLE11 - Access to DBMS software files and directories should not be granted to unauthorized users - 'umask < 0022'DISA STIG Oracle 11 Installation v9r1 LinuxUnix

ACCESS CONTROL

DTOO199 - Office System - Changing permissions on rights managed content for users must be enforced.DISA STIG Office System 2010 v1r13Windows

ACCESS CONTROL

DTOO200 - Office System - Office must be configured to not allow read with browsers.DISA STIG Office System 2010 v1r13Windows

ACCESS CONTROL

EPAS-00-007300 - The EDB Postgres Advanced Server must enforce discretionary access control policies, as defined by the data owner, over defined subjects and objects.EnterpriseDB PostgreSQL Advanced Server OS Linux v2r1Unix

ACCESS CONTROL

MADB-10-006700 - MariaDB must enforce discretionary access control policies, as defined by the data owner, over defined subjects, and objects.DISA MariaDB Enterprise 10.x v2r1 DBMySQLDB

ACCESS CONTROL

Monterey - Allow Administrators to Modify Security Settings and System AttributesNIST macOS Monterey v1.0.0 - All ProfilesUnix

ACCESS CONTROL

Monterey - Allow Administrators to Promote Other Users to Administrator StatusNIST macOS Monterey v1.0.0 - All ProfilesUnix

ACCESS CONTROL

Monterey - Allow Information Transfer with Other Operating SystemsNIST macOS Monterey v1.0.0 - All ProfilesUnix

ACCESS CONTROL

MYS8-00-010500 - The MySQL Database Server 8.0 must enforce discretionary access control policies, as defined by the data owner, over defined subjects and objects.DISA Oracle MySQL 8.0 v2r1 DBMySQLDB

ACCESS CONTROL

OL08-00-010373 - OL 8 must enable kernel parameters to enforce Discretionary Access Control (DAC) on symlinks.DISA Oracle Linux 8 STIG v2r1Unix

ACCESS CONTROL

OL08-00-010374 - OL 8 must enable kernel parameters to enforce Discretionary Access Control (DAC) on hardlinks.DISA Oracle Linux 8 STIG v2r1Unix

ACCESS CONTROL

RHEL-08-010373 - RHEL 8 must enable kernel parameters to enforce discretionary access control on symlinks.DISA Red Hat Enterprise Linux 8 STIG v2r1Unix

ACCESS CONTROL

SQL2-00-008500 - SQL Server must enforce DAC policy allowing users to specify and control sharing by named individuals, groups of individuals, or by both; limiting propagation of access rights; and including or excluding access to the granularity of a single user - 'server permissions'DISA STIG SQL Server 2012 DB Instance Security v1r20MS_SQLDB

ACCESS CONTROL

SQL2-00-008500 - SQL Server must enforce DAC policy allowing users to specify and control sharing by named individuals, groups of individuals, or by both; limiting propagation of access rights; and including or excluding access to the granularity of a single user - 'user defined roles'DISA STIG SQL Server 2012 DB Instance Security v1r20MS_SQLDB

ACCESS CONTROL

SQL2-00-011000 - SQL Server utilizing Discretionary Access Control (DAC) must enforce a policy that limits propagation of access rights.DISA STIG SQL Server 2012 DB Instance Security v1r20MS_SQLDB

ACCESS CONTROL

SQL2-00-011050 - SQL Server utilizing Discretionary Access Control (DAC) must enforce a policy that limits propagation of access rights.DISA STIG SQL Server 2012 Database Audit v1r20MS_SQLDB

ACCESS CONTROL

WN11-00-000070 - Only accounts responsible for the administration of a system must have Administrator rights on the system.DISA Windows 11 STIG v2r2Windows

ACCESS CONTROL

WN11-00-000080 - Only authorized user accounts must be allowed to create or run virtual machines on Windows 11 systems.DISA Windows 11 STIG v2r2Windows

ACCESS CONTROL

WN22-00-000140 - Windows Server 2022 permissions for the system drive root directory (usually C:\) must conform to minimum requirements.DISA Windows Server 2022 STIG v2r2Windows

ACCESS CONTROL

WN22-00-000150 - Windows Server 2022 permissions for program file directories must conform to minimum requirements.DISA Windows Server 2022 STIG v2r2Windows

ACCESS CONTROL

WN22-00-000160 - Windows Server 2022 permissions for the Windows installation directory must conform to minimum requirements.DISA Windows Server 2022 STIG v2r2Windows

ACCESS CONTROL