Item Search

NameAudit NamePluginCategory
DISA STIG Java Runtime Environment (JRE) 6 STIG for Windows 7DISA STIG Java JRE 6 Windows 7 v1r4Windows
DISA_STIG_Microsoft_Office_System_2013_v1r9.audit from DISA Microsoft Office System 2013 STIG v1r9 STIGDISA STIG Microsoft Office System 2013 v1r9Windows
NET-TUNL-020 - Teredo is not blocked by filtering UDP port 3544 - 'access-list ([0-9]+) deny udp any eq 3544 any'DISA STIG Cisco Perimeter L3 Switch v8r32Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET-TUNL-034 - L2TPv3 sessions are not authenticated - encapsulation checkDISA STIG Cisco Perimeter L3 Switch v8r32Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET-VLAN-007 - Ensure trunking is disabled on all access ports.DISA STIG Cisco Perimeter L3 Switch v8r32Cisco
NET0164 - AG router has a routing protocol to the enclave. - 'BGP Enabled'DISA STIG Cisco Perimeter L3 Switch v8r32Cisco

CONFIGURATION MANAGEMENT

NET0166 - AG Network IP addresses are advertised in enclave - 'BGP distribute lists prefix lists'DISA STIG Cisco Perimeter L3 Switch v8r32Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET0400 - Interior routing protocols are not authenticated - 'EIGRP Check'DISA STIG Cisco Perimeter L3 Switch v8r32Cisco
NET0400 - Interior routing protocols are not authenticated - 'IS-IS (Interface Check - isis authentication key-chain)'DISA STIG Cisco Perimeter L3 Switch v8r32Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET0400 - Interior routing protocols are not authenticated - 'IS-IS (Interface Check - isis authentication mode)'DISA STIG Cisco Perimeter L3 Switch v8r32Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET0400 - Interior routing protocols are not authenticated - 'RIPv2 (Key-Chain Check)'DISA STIG Cisco Perimeter L3 Switch v8r32Cisco

IDENTIFICATION AND AUTHENTICATION

NET0410 - BGP sessions are not restricted. 'ACL IP Recieve Access-List (Default Deny)'DISA STIG Cisco Perimeter L3 Switch v8r32Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET0433 - The device is not authenticated using a AAA server - 'aaa authentication login'DISA STIG Cisco Perimeter L3 Switch v8r32Cisco

IDENTIFICATION AND AUTHENTICATION

NET0433 - The device is not authenticated using a AAA server - 'line con - authentication'DISA STIG Cisco Perimeter L3 Switch v8r32Cisco

IDENTIFICATION AND AUTHENTICATION

NET0433 - The device is not authenticated using a AAA server - 'tacacs-server host(s) - more than 2 hosts exist'DISA STIG Cisco Perimeter L3 Switch v8r32Cisco

IDENTIFICATION AND AUTHENTICATION

NET0470 - Unauthorized accounts are configured to access deviceDISA STIG Cisco Perimeter L3 Switch v8r32Cisco
NET0600 - Passwords are viewable when displaying the configDISA STIG Cisco Perimeter L3 Switch v8r32Cisco

IDENTIFICATION AND AUTHENTICATION

NET0710 - Link Layer Discovery Protocols (LLDPs) must be disabled on all external facing interfaces.DISA STIG Cisco Perimeter L3 Switch v8r32Cisco

CONFIGURATION MANAGEMENT

NET0722 - The PAD service is enabledDISA STIG Cisco Perimeter L3 Switch v8r32Cisco

CONFIGURATION MANAGEMENT

NET0730 - The finger service is not disabledDISA STIG Cisco Perimeter L3 Switch v8r32Cisco

CONFIGURATION MANAGEMENT

NET0744 - BSDr commands are not disabled - rcp-enableDISA STIG Cisco Perimeter L3 Switch v8r32Cisco

CONFIGURATION MANAGEMENT

NET0770 - IP Source Routing is not disabled on all routers.DISA STIG Cisco Perimeter L3 Switch v8r32Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET0780 - Proxy ARP must be disabled on external interfaces.DISA STIG Cisco Perimeter L3 Switch v8r32Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET0800 - Filter ICMP on external interface. - 'Null0 - no ip unreachables'DISA STIG Cisco Perimeter L3 Switch v8r32Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET0812 - Two NTP servers are not used to synchronize time - 'ntp broadcast client'DISA STIG Cisco Perimeter L3 Switch v8r32Cisco

CONFIGURATION MANAGEMENT

NET0812 - Two NTP servers are not used to synchronize time - 'ntp update-calendar'DISA STIG Cisco Perimeter L3 Switch v8r32Cisco

AUDIT AND ACCOUNTABILITY

NET0820 - DNS servers must be defined for client resolverDISA STIG Cisco Perimeter L3 Switch v8r32Cisco
NET0900 - SNMP traffic does not use loopbackDISA STIG Cisco Perimeter L3 Switch v8r32Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET0911 - Inbound ICMP messages are not blocked - 'permit icmp any any source-quench'DISA STIG Cisco Perimeter L3 Switch v8r32Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET0912 - Outbound ICMP messages are not blocked - 'deny icmp any any log'DISA STIG Cisco Perimeter L3 Switch v8r32Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET0918 - Outbound ICMP Time Exceed messages must be blocked to prevent network discovery by unauthorized users.DISA STIG Cisco Perimeter L3 Switch v8r32Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET0921 - Bind egress filters to correct interfaceDISA STIG Cisco Perimeter L3 Switch v8r32Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET0927 - RFC1918 addresses are not blocked - '10.0.0.0/8 Network Blocked'DISA STIG Cisco Perimeter L3 Switch v8r32Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET0966 - Control plan protection is not enabled - 'inbound ACL option'DISA STIG Cisco Perimeter L3 Switch v8r32Cisco
NET0966 - Control plan protection is not enabled - 'Step 4: Verify that the CoPP policy is enabled. (service-policy)'DISA STIG Cisco Perimeter L3 Switch v8r32Cisco

CONFIGURATION MANAGEMENT

NET0987 - Managed network has access to OOBM gateway router - 'ip receive acl IP_RECEIVE_ACL'DISA STIG Cisco Perimeter L3 Switch v8r32Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET0989 - Management traffic leaks into the managed network - 'access-list OOBM_INGRESS_ACL permit'DISA STIG Cisco Perimeter L3 Switch v8r32Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET0994 - Management interface is assigned to a user VLAN - 'MGMT VLAN ID'DISA STIG Cisco Perimeter L3 Switch v8r32Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET0995 - Management VLAN has invalid addressesDISA STIG Cisco Perimeter L3 Switch v8r32Cisco
NET1000 - Management traffic is not blocked by egress ACL - 'Egress ACL Configured on Interface'DISA STIG Cisco Perimeter L3 Switch v8r32Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET1003 - Mgmt VLAN does not have correct IP addressDISA STIG Cisco Perimeter L3 Switch v8r32Cisco
NET1623 - Authentication required for console access - 'CON port (login authentication AUTH_LIST)'DISA STIG Cisco Perimeter L3 Switch v8r32Cisco

ACCESS CONTROL

NET1637 - Management connections are not restricted - 'VTY port (access-class ACL_LIST in)'DISA STIG Cisco Perimeter L3 Switch v8r32Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET1637 - Management connections are not restricted - 'VTY port (access-list VTY_ACL deny any log)'DISA STIG Cisco Perimeter L3 Switch v8r32Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET1638 - Management connections must be secured by FIPS 140-2 -'ssh algorithm encryption'DISA STIG Cisco Perimeter L3 Switch v8r32Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET1639 - Management connection does not timeoutDISA STIG Cisco Perimeter L3 Switch v8r32Cisco

ACCESS CONTROL

NET1645 - SSH session timeout is not 60 seconds or lessDISA STIG Cisco Perimeter L3 Switch v8r32Cisco

ACCESS CONTROL

NET1807 - Management traffic is not restricted - 'crypto map OOBM_VPN (match address OOBM_VPN_ACL)'DISA STIG Cisco Perimeter L3 Switch v8r32Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

SNMPv3 CONFIG IF STATEMENTDISA STIG Cisco Perimeter L3 Switch v8r32Cisco
SNMPv3 CONFIG IF STATEMENT With ACLDISA STIG Cisco Perimeter L3 Switch v8r32Cisco