Item Search

NameAudit NamePluginCategory
1.006 - Users with Administrative privilege are not documented or do not have separate accounts for administrative duties.DISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

2.008 - Local volumes are not formatted using NTFS.DISA Windows Vista STIG v6r41Windows

ACCESS CONTROL

3.018 - Anonymous shares are not restricted. - RestrictAnonymousDISA Windows Vista STIG v6r41Windows

SYSTEM AND COMMUNICATIONS PROTECTION

3.018 - Anonymous shares are not restricted. - RestrictAnonymousSAMDISA Windows Vista STIG v6r41Windows

SYSTEM AND COMMUNICATIONS PROTECTION

3.031 - The Send download LanMan compatible password option is not set to Send NTLMv2 response only\refuse LM.DISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

3.061 - Unencrypted remote access is permitted to system services.DISA Windows Vista STIG v6r41Windows

ACCESS CONTROL

3.062 - Anonymous SID/Name translation is allowed.DISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

3.063 - Unauthorized named pipes are accessible with anonymous credentials.DISA Windows Vista STIG v6r41Windows

SYSTEM AND COMMUNICATIONS PROTECTION

3.068 - Solicited Remote Assistance is allowed.DISA Windows Vista STIG v6r41Windows

SYSTEM AND COMMUNICATIONS PROTECTION

4.005 - Unapproved Users have access to Debug programs.DISA Windows Vista STIG v6r41Windows

ACCESS CONTROL

4.009 - Unauthorized users are granted right to Act as part of the operating system.DISA Windows Vista STIG v6r41Windows

ACCESS CONTROL

4.036 - The use of local accounts with blank passwords is not restricted to console logons only.DISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

5.005 - Installed FTP server is configured to allow access to the system drive.DISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

DG0067-ORACLE11 - Database account passwords should be stored in encoded or encrypted format whether stored in database objects, external host files, environment variables or any other storage locations.DISA STIG Oracle 11 Installation v9r1 LinuxUnix

IDENTIFICATION AND AUTHENTICATION

DG0067-ORACLE11 - Database account passwords should be stored in encoded or encrypted format whether stored in database objects, external host files, environment variables or any other storage locations.DISA STIG Oracle 11 Installation v9r1 WindowsWindows

IDENTIFICATION AND AUTHENTICATION

DTAVSEL-001 - The anti-virus signature file age must not exceed 7 days - avvscan.datMcAfee Virus Scan Enterprise for Linux 1.9x/2.0x Local Client v1r6Unix

SYSTEM AND INFORMATION INTEGRITY

DTOO999 - InfoPath - The version of InfoPath running on the system must be a supported version.DISA STIG Office 2010 InfoPath v1r12Windows

SYSTEM AND INFORMATION INTEGRITY

DTOO999 - PowerPoint - The version of PowerPoint running on the system must be a supported version.DISA STIG Office 2010 PowerPoint v1r11Windows

SYSTEM AND INFORMATION INTEGRITY

DTOO999 - Project - The version of Microsoft Project running on the system must be a supported version.DISA STIG Office 2010 Project v1r10Windows

SYSTEM AND INFORMATION INTEGRITY

DTOO999 - Word - The version of Microsoft Word running on the system must be a supported version.DISA STIG Office 2010 Word v1r12Windows

SYSTEM AND INFORMATION INTEGRITY

DTOO999-Excel13 - The version of Excel running on the system must be a supported version.DISA STIG Microsoft Excel 2013 v1r8Windows

SYSTEM AND INFORMATION INTEGRITY

DTOO999-InfoPath13 - The version of InfoPath running on the system must be a supported version.DISA STIG Microsoft InfoPath 2013 v1r6Windows

SYSTEM AND INFORMATION INTEGRITY

DTOO999-Lync13 - The version of Lync running on the system must be a supported version.DISA STIG Microsoft Lync 2013 v1r5Windows

SYSTEM AND INFORMATION INTEGRITY

DTOO999-Project13 - The version of Microsoft Project running on the system must be a supported version.DISA STIG Microsoft Project 2013 v1r5Windows

SYSTEM AND INFORMATION INTEGRITY

DTOO999-Pub13 - The version of Microsoft Publisher running on the system must be a supported version.DISA STIG Microsoft Publisher 2013 v1r6Windows

SYSTEM AND INFORMATION INTEGRITY

DTOO999-Visio13 - The version of Visio running on the system must be a supported version.DISA STIG Microsoft Visio 2013 v1r5Windows

SYSTEM AND INFORMATION INTEGRITY

GEN000560 - The system must not have accounts configured with blank or null passwords.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN001640 - Run control scripts must not execute world-writable programs or scripts.DISA STIG AIX 5.3 v1r2Unix

ACCESS CONTROL

GEN002040 - There must be no .rhosts, .shosts, hosts.equiv, or shosts.equiv files on the system - '.rhosts'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN003820 - The rsh daemon must not be running.DISA STIG AIX 5.3 v1r2Unix

ACCESS CONTROL

GEN004400 - Files executed through a mail aliases file must be owned by root.DISA STIG AIX 5.3 v1r2Unix

ACCESS CONTROL

GEN004600 - The SMTP service must be an up-to-date version.DISA STIG AIX 5.3 v1r2Unix

SYSTEM AND INFORMATION INTEGRITY

GEN004620 - The Sendmail server must have the debug feature disabled.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN004640 - The SMTP service must not have a uudecode alias active - '/etc/aliases decode alias does not exist'DISA STIG AIX 5.3 v1r2Unix

SYSTEM AND INFORMATION INTEGRITY

GEN004640 - The SMTP service must not have a uudecode alias active - '/etc/aliases uudecode alias does not exist'DISA STIG AIX 5.3 v1r2Unix

SYSTEM AND INFORMATION INTEGRITY

GEN004640 - The SMTP service must not have a uudecode alias active - '/usr/lib/aliases decode alias does not exist'DISA STIG AIX 5.3 v1r2Unix

SYSTEM AND INFORMATION INTEGRITY

GEN004640 - The SMTP service must not have a uudecode alias active - '/usr/lib/aliases uudecode alias does not exist'DISA STIG AIX 5.3 v1r2Unix

SYSTEM AND INFORMATION INTEGRITY

GEN005000 - Anonymous FTP accounts must not have a functional shell.DISA STIG AIX 5.3 v1r2Unix

ACCESS CONTROL

GEN005080 - The TFTP daemon must operate in 'secure mode' which provides access only to a single directory on the host file system.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN005100 - The TFTP daemon must have mode 0755 or less permissive.DISA STIG AIX 5.3 v1r2Unix

ACCESS CONTROL

GEN005140 - Any active TFTP daemon must be authorized and approved in the system accreditation package.DISA STIG AIX 5.3 v1r2Unix

ACCESS CONTROL

GEN005200 - X displays must not be exported to the world.DISA STIG AIX 5.3 v1r2Unix

ACCESS CONTROL

GEN005300 - SNMP communities, users, and passphrases must be changed from the default.DISA STIG AIX 5.3 v1r2Unix

IDENTIFICATION AND AUTHENTICATION

GEN005500 - The SSH daemon must be configured to only use the SSHv2 protocol.DISA STIG AIX 5.3 v1r2Unix

ACCESS CONTROL

GEN008600 - The system must be configured to only boot from the system boot device.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN008640 - The system must not use removable media as the boot loader - 'both'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN008640 - The system must not use removable media as the boot loader - 'normal'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN008640 - The system must not use removable media as the boot loader - 'service'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN008680 - If the system boots from removable media, it must be stored in a safe or similarly secured container.DISA STIG AIX 5.3 v1r2Unix

SYSTEM AND COMMUNICATIONS PROTECTION

WINGE-000100 - EMET v5.5 or later must be installed on the system.DISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT