Item Search

NameAudit NamePluginCategory
AADC-CN-000840 - Adobe Acrobat Pro DC Continuous privileged file and folder locations must be disabled.DISA STIG Adobe Acrobat Pro DC Continuous Track v2r1Windows

CONFIGURATION MANAGEMENT

AADC-CN-001280 - Adobe Acrobat Pro DC Continuous Default Handler changes must be disabled.DISA STIG Adobe Acrobat Pro DC Continuous Track v2r1Windows

CONFIGURATION MANAGEMENT

AOSX-13-000554 - The macOS system must not have a guest account - Guest accountDISA STIG Apple Mac OSX 10.13 v2r5Unix

CONFIGURATION MANAGEMENT

AOSX-13-000710 - The macOS system must allow only applications that have a valid digital signature to run - AllowIdentifiedDevelopersDISA STIG Apple Mac OSX 10.13 v2r5Unix

CONFIGURATION MANAGEMENT

AOSX-14-002063 - The macOS system must disable the guest account.DISA STIG Apple Mac OSX 10.14 v2r6Unix

CONFIGURATION MANAGEMENT

ARDC-CL-000315 - Adobe Reader DC must disable the ability to add Trusted Files and Folders.DISA STIG Adobe Acrobat Reader DC Classic Track v2r1Windows

CONFIGURATION MANAGEMENT

ARDC-CL-000320 - Adobe Reader DC must disable the ability to specify Host-Based Privileged Locations.DISA STIG Adobe Acrobat Reader DC Classic Track v2r1Windows

CONFIGURATION MANAGEMENT

CISC-ND-000460 - The Cisco router must be configured to limit privileges to change the software resident within software libraries.DISA STIG Cisco IOS XE Router NDM v3r2Cisco

CONFIGURATION MANAGEMENT

CISC-ND-000460 - The Cisco switch must be configured to limit privileges to change the software resident within software libraries.DISA STIG Cisco IOS XE Switch NDM v3r2Cisco

CONFIGURATION MANAGEMENT

DKER-EE-001770 - Docker Incs official GPG key must be added to the host using the users operating systems respective package repository management tooling.DISA STIG Docker Enterprise 2.x Linux/Unix v2r2Unix

CONFIGURATION MANAGEMENT

EP11-00-003210 - EDB Postgres Advanced Server software modules, to include stored procedures, functions, and triggers must be monitored to discover unauthorized changes.EDB PostgreSQL Advanced Server v11 DB Audit v2r4PostgreSQLDB

CONFIGURATION MANAGEMENT

EP11-00-003400 - Database software, including EDB Postgres Advanced Server configuration files, must be stored in dedicated directories, separate from the host OS and other applications.EDB PostgreSQL Advanced Server v11 Windows OS Audit v2r4Windows

CONFIGURATION MANAGEMENT

EP11-00-003500 - Database objects (including but not limited to tables, indexes, storage, stored procedures, functions, triggers, links to software external to the EDB Postgres Advanced Server, etc.) must be owned by database/EDB Postgres Advanced Server principals authorized for ownership.EDB PostgreSQL Advanced Server v11 DB Audit v2r4PostgreSQLDB

CONFIGURATION MANAGEMENT

EX13-CA-000090 - Exchange Local machine policy must require signed scripts.DISA Microsoft Exchange 2013 Client Access Server STIG v2r2Windows

CONFIGURATION MANAGEMENT

EX13-CA-000120 - Exchange software baseline copy must exist.DISA Microsoft Exchange 2013 Client Access Server STIG v2r2Windows

CONFIGURATION MANAGEMENT

F5BI-DM-000213 - The BIG-IP appliance must be configured to enforce access restrictions associated with changes to device configuration.DISA F5 BIG-IP Device Management STIG v2r3F5

CONFIGURATION MANAGEMENT

F5BI-DM-000215 - The BIG-IP appliance must be configured to audit the enforcement actions used to restrict access associated with changes to the device.DISA F5 BIG-IP Device Management STIG v2r3F5

CONFIGURATION MANAGEMENT

JBOS-AS-000210 - mgmt-users.properties file permissions must be set to allow access to authorized users only.DISA JBoss EAP 6.3 STIG v2r5Unix

CONFIGURATION MANAGEMENT

JBOS-AS-000555 - Production JBoss servers must log when successful application deployments occur.DISA JBoss EAP 6.3 STIG v2r5Unix

CONFIGURATION MANAGEMENT

Monterey - Configure System to Audit All Failed Change of Object AttributesNIST macOS Monterey v1.0.0 - 800-53r4 HighUnix

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT, MAINTENANCE

O112-C2-003700 - The DBMS must be protected from unauthorized access by developers.DISA STIG Oracle 11.2g v2r5 DatabaseOracleDB

CONFIGURATION MANAGEMENT

O112-C2-011000 - Database objects must be owned by accounts authorized for ownership.DISA STIG Oracle 11.2g v2r5 DatabaseOracleDB

CONFIGURATION MANAGEMENT

O112-C2-019600 - The DBMS must verify there have not been unauthorized changes to the DBMS software and information.DISA STIG Oracle 11.2g v2r5 DatabaseOracleDB

CONFIGURATION MANAGEMENT

O112-OS-011200 - The OS must limit privileges to change the DBMS software resident within software libraries (including privileged programs).DISA STIG Oracle 11.2g v2r5 DatabaseOracleDB

CONFIGURATION MANAGEMENT

O121-C2-004000 - Administrative privileges must be assigned to database accounts via database roles.DISA STIG Oracle 12c v3r1 DatabaseOracleDB

CONFIGURATION MANAGEMENT

O121-OS-010700 - Database software, applications, and configuration files must be monitored to discover unauthorized changes.DISA STIG Oracle 12c v3r1 DatabaseOracleDB

CONFIGURATION MANAGEMENT

O121-OS-011200 - The OS must limit privileges to change the DBMS software resident within software libraries (including privileged programs).DISA STIG Oracle 12c v3r1 WindowsWindows

CONFIGURATION MANAGEMENT

O365-CO-000007 - Trust Bar notifications must be configured to display information in the Message Bar about the content that has been automatically blocked.DISA STIG Microsoft Office 365 ProPlus v3r1Windows

CONFIGURATION MANAGEMENT

O365-PU-000002 - Publisher must automatically disable unsigned add-ins without informing users.DISA STIG Microsoft Office 365 ProPlus v3r1Windows

CONFIGURATION MANAGEMENT

OL6-00-000046 - Library files must be owned by a system account - '/lib'DISA STIG Oracle Linux 6 v2r7Unix

CONFIGURATION MANAGEMENT

OL6-00-000046 - Library files must be owned by a system account - '/lib64'DISA STIG Oracle Linux 6 v2r7Unix

CONFIGURATION MANAGEMENT

OL6-00-000046 - Library files must be owned by a system account - '/usr/lib'DISA STIG Oracle Linux 6 v2r7Unix

CONFIGURATION MANAGEMENT

OL6-00-000047 - All system command files must have mode 755 or less permissive - '/usr/local/sbin'DISA STIG Oracle Linux 6 v2r7Unix

CONFIGURATION MANAGEMENT

OL07-00-020050 - The Oracle Linux operating system must prevent the installation of software, patches, service packs, device drivers, or operating system components from a repository without verification they have been digitally signed using a certificate that is issued by a Certificate Authority (CA) that is recognized and approved by the organization - CA that is recognized and approved by the organization.DISA Oracle Linux 7 STIG v2r14Unix

CONFIGURATION MANAGEMENT

OL07-00-020060 - The Oracle Linux operating system must prevent the installation of software, patches, service packs, device drivers, or operating system components of local packages without verification they have been digitally signed using a certificate that is issued by a Certificate Authority (CA) that is recognized and approved by the organization - CA that is recognized and approved by the organization.DISA Oracle Linux 7 STIG v2r14Unix

CONFIGURATION MANAGEMENT

OL07-00-040430 - The Oracle Linux operating system must be configured so that the SSH daemon does not permit Generic Security Service Application Program Interface (GSSAPI) authentication unless needed - GSSAPI authentication unless needed.DISA Oracle Linux 7 STIG v2r14Unix

CONFIGURATION MANAGEMENT

PGS9-00-003200 - The PostgreSQL software installation account must be restricted to authorized users.DISA STIG PostgreSQL 9.x on RHEL DB v2r5PostgreSQLDB

CONFIGURATION MANAGEMENT

PGS9-00-003300 - Database software, including PostgreSQL configuration files, must be stored in dedicated directories separate from the host OS and other applications.DISA STIG PostgreSQL 9.x on RHEL OS v2r5Unix

CONFIGURATION MANAGEMENT

PGS9-00-009600 - PostgreSQL must enforce access restrictions associated with changes to the configuration of PostgreSQL or database(s).DISA STIG PostgreSQL 9.x on RHEL OS v2r5Unix

CONFIGURATION MANAGEMENT

RHEL-06-000015 - The system package management tool must cryptographically verify the authenticity of all software packages during installation.DISA Red Hat Enterprise Linux 6 STIG v2r2Unix

CONFIGURATION MANAGEMENT

RHEL-06-000045 - Library files must have mode 0755 or less permissive - '/lib/*'.DISA Red Hat Enterprise Linux 6 STIG v2r2Unix

CONFIGURATION MANAGEMENT

RHEL-06-000046 - Library files must be owned by a system account - '/lib/*'.DISA Red Hat Enterprise Linux 6 STIG v2r2Unix

CONFIGURATION MANAGEMENT

RHEL-06-000047 - All system command files must have mode 755 or less permissive - '/usr/bin/*'DISA Red Hat Enterprise Linux 6 STIG v2r2Unix

CONFIGURATION MANAGEMENT

RHEL-06-000048 - All system command files must be owned by root - /bin/*.DISA Red Hat Enterprise Linux 6 STIG v2r2Unix

CONFIGURATION MANAGEMENT

SOL-11.1-020020 - The system must verify that package updates are digitally signed.DISA STIG Solaris 11 SPARC v3r1Unix

CONFIGURATION MANAGEMENT

SQL6-D0-011400 - SQL Server must enforce access restrictions associated with changes to the configuration of the instance.DISA STIG SQL Server 2016 Instance DB Audit v3r1MS_SQLDB

CONFIGURATION MANAGEMENT

SQL6-D0-011800 - SQL Server must produce audit records of its enforcement of access restrictions associated with changes to the configuration of SQL Server or database(s).DISA STIG SQL Server 2016 Instance DB Audit v3r1MS_SQLDB

CONFIGURATION MANAGEMENT

UBTU-16-011010 - Library files must be owned by root.DISA STIG Ubuntu 16.04 LTS v2r3Unix

CONFIGURATION MANAGEMENT

UBTU-18-010144 - The Ubuntu operating system must have directories that contain system commands group-owned by root.DISA STIG Ubuntu 18.04 LTS v2r15Unix

CONFIGURATION MANAGEMENT

WBLC-03-000125 - Oracle WebLogic must limit privileges to change the software resident within software libraries (including privileged programs).Oracle WebLogic Server 12c Linux v2r1 MiddlewareUnix

CONFIGURATION MANAGEMENT