Item Search

NameAudit NamePluginCategory
2.3.1.1 Set 'ntp authenticate'CIS Cisco IOS XE 17.x v2.1.0 L2Cisco

AUDIT AND ACCOUNTABILITY

aaa auth consoleDISA STIG Cisco NX-OS Switch NDM v3r2Cisco
aaa auth defaultDISA STIG Cisco NX-OS Switch NDM v3r2Cisco
aaa authenticationDISA STIG Cisco IOS XE Switch L2S v3r1Cisco
aaa authentication login default fallbackDISA STIG Cisco NX-OS Switch NDM v3r2Cisco
aaa new-modelDISA STIG Cisco IOS XE Switch NDM v3r2Cisco
AMLS-L3-000110 - The Arista Multilayer Switch must disable Protocol Independent Multicast (PIM) on all interfaces that are not required to support multicast routing.DISA STIG Arista MLS DCS-7000 Series RTR v1r4Arista

ACCESS CONTROL

Check for logging persistentDISA STIG Cisco IOS XE Switch NDM v3r2Cisco
CISC-L2-000060 - The Cisco switch must be configured for authorized users to select a user session to capture.DISA STIG Cisco NX-OS Switch L2S v3r2Cisco

AUDIT AND ACCOUNTABILITY

CISC-L2-000070 - The Cisco switch must be configured for authorized users to remotely view, in real time, all content related to an established user session from a component separate from The Cisco switch.DISA STIG Cisco NX-OS Switch L2S v3r2Cisco

AUDIT AND ACCOUNTABILITY

CISC-L2-000140 - The Cisco switch must have IP Source Guard enabled on all user-facing or untrusted access switch ports.DISA STIG Cisco IOS XE Switch L2S v3r1Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

CISC-L2-000150 - The Cisco switch must have Dynamic Address Resolution Protocol (ARP) Inspection (DAI) enabled on all user VLANs.DISA STIG Cisco NX-OS Switch L2S v3r2Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

CISC-L2-000170 - The Cisco switch must have IGMP or MLD Snooping configured on all VLANs.DISA STIG Cisco NX-OS Switch L2S v3r2Cisco

CONFIGURATION MANAGEMENT

CISC-L2-000220 - The Cisco switch must not have the default VLAN assigned to any host-facing switch ports.DISA STIG Cisco IOS XE Switch L2S v3r1Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

CISC-L2-000240 - The Cisco switch must not use the default VLAN for management traffic.DISA STIG Cisco IOS XE Switch L2S v3r1Cisco

CONTINGENCY PLANNING

CISC-ND-000010 - The Cisco switch must be configured to limit the number of concurrent management sessions to an organization-defined number.DISA STIG Cisco IOS XE Switch NDM v3r2Cisco

ACCESS CONTROL

CISC-ND-000120 - The Cisco switch must be configured to automatically audit account removal actions.DISA STIG Cisco IOS XE Switch NDM v3r2Cisco

ACCESS CONTROL

CISC-ND-000380 - The Cisco switch must be configured to protect audit information from unauthorized modification.DISA STIG Cisco IOS XE Switch NDM v3r2Cisco

AUDIT AND ACCOUNTABILITY

CISC-ND-000470 - The Cisco switch must be configured to prohibit the use of all unnecessary and nonsecure functions and services.DISA STIG Cisco IOS XE Switch NDM v3r2Cisco

CONFIGURATION MANAGEMENT

CISC-ND-000490 - The Cisco switch must be configured with only one local account to be used as the account of last resort in the event the authentication server is unavailable.DISA STIG Cisco IOS XE Switch NDM v3r2Cisco

ACCESS CONTROL

CISC-ND-000530 - The Cisco switch must be configured to implement replay-resistant authentication mechanisms for network access to privileged accounts.DISA STIG Cisco NX-OS Switch NDM v3r2Cisco

IDENTIFICATION AND AUTHENTICATION

CISC-ND-000620 - The Cisco switch must only store cryptographic representations of passwords.DISA STIG Cisco IOS XE Switch NDM v3r2Cisco

IDENTIFICATION AND AUTHENTICATION

CISC-ND-000980 - The Cisco switch must be configured to allocate audit record storage capacity in accordance with organization-defined audit record storage requirements.DISA STIG Cisco IOS XE Switch NDM v3r2Cisco

AUDIT AND ACCOUNTABILITY

CISC-ND-001200 - The Cisco switch must be configured to use FIPS-validated Keyed-Hash Message Authentication Code (HMAC) to protect the integrity of remote maintenance sessions.DISA STIG Cisco NX-OS Switch NDM v3r2Cisco

MAINTENANCE

CISC-ND-001370 - The Cisco switch must be configured to use at least two authentication servers for the purpose of authenticating users prior to granting administrative access.DISA STIG Cisco IOS XE Switch NDM v3r2Cisco

CONFIGURATION MANAGEMENT

CISC-ND-001410 - The Cisco switch must be configured to support organizational requirements to conduct backups of the configuration when changes occur.DISA STIG Cisco IOS XE Switch NDM v3r2Cisco

CONFIGURATION MANAGEMENT, CONTINGENCY PLANNING

CISC-ND-001470 - The Cisco switch must be running an IOS release that is currently supported by Cisco Systems.DISA STIG Cisco NX-OS Switch NDM v3r2Cisco

CONFIGURATION MANAGEMENT, SYSTEM AND INFORMATION INTEGRITY

Ensure hmac-sha2-256 is configuredDISA STIG Cisco NX-OS Switch NDM v3r2Cisco
GEN002860 - Audit logs must be rotated daily.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN002860 - Audit logs must be rotated daily.DISA STIG Solaris 10 X86 v2r4Unix

CONFIGURATION MANAGEMENT

GEN002860 - Audit logs must be rotated daily.DISA STIG Solaris 10 SPARC v2r4Unix

CONFIGURATION MANAGEMENT

ip access-listDISA STIG Cisco NX-OS Switch NDM v3r2Cisco
ip boot serverDISA STIG Cisco NX-OS Switch NDM v3r2Cisco
ip http secure-serverDISA STIG Cisco IOS XE Switch NDM v3r2Cisco
ip http timeoutDISA STIG Cisco IOS XE Switch NDM v3r2Cisco
ip igmp snoopingDISA STIG Cisco IOS XE Switch L2S v3r1Cisco
ip igmp snooping vlanDISA STIG Cisco IOS XE Switch L2S v3r1Cisco
ip ssh server algorithm macDISA STIG Cisco IOS XE Switch NDM v3r2Cisco
line vtyDISA STIG Cisco NX-OS Switch NDM v3r2Cisco
logging ipDISA STIG Cisco NX-OS Switch NDM v3r2Cisco
policy-map reviewDISA STIG Cisco NX-OS Switch NDM v3r2Cisco
prefix listDISA STIG Cisco NX-OS Switch RTR v3r2Cisco
radius serverDISA STIG Cisco NX-OS Switch L2S v3r2Cisco
radius-server hostDISA STIG Cisco NX-OS Switch NDM v3r2Cisco
snmp-server groupDISA STIG Cisco IOS XE Switch NDM v3r2Cisco
snmp-server hostDISA STIG Cisco NX-OS Switch NDM v3r2Cisco
snmp-server hostDISA STIG Cisco IOS XE Switch NDM v3r2Cisco
snmp-server user md5DISA STIG Cisco NX-OS Switch NDM v3r2Cisco
snmp-server user shaDISA STIG Cisco NX-OS Switch NDM v3r2Cisco
spanning-tree loopguardDISA STIG Cisco IOS XE Switch L2S v3r1Cisco