Item Search

NameAudit NamePluginCategory
4.1.3.8 Ensure changes to system administration scope (sudoers) is collected - sudoersCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

4.1.3.8 Ensure changes to system administration scope (sudoers) is collected - sudoers.dCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

4.1.3.10 Ensure use of privileged commands is collectedCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

4.1.3.15 Ensure all uses of the passwd command are audited.CIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

4.1.3.16 Ensure auditing of the unix_chkpwd commandCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

4.1.3.17 Ensure audit of the gpasswd commandCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

4.1.3.18 Ensure audit all uses of chageCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

4.1.3.19 Ensure audit all uses of the chsh command.CIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

4.1.3.23 Ensure audit ssh-keysign command.CIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

4.1.3.36 Ensure audit of the userhelper commandCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

4.1.3.38 Ensure audit of the su commandCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

4.1.3.40 Ensure audit all uses of the newgrp commandCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

ALMA-09-047540 - AlmaLinux OS 9 must generate audit records for all account creations, modifications, disabling, and termination events that affect /var/log/lastlog.DISA CloudLinux AlmaLinux OS 9 STIG v1r1Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

ALMA-09-048090 - AlmaLinux OS 9 must audit all uses of the truncate, ftruncate, creat, open, openat, and open_by_handle_at system calls.DISA CloudLinux AlmaLinux OS 9 STIG v1r1Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

ALMA-09-048750 - AlmaLinux OS 9 must generate audit records for any use of the "chsh" command.DISA CloudLinux AlmaLinux OS 9 STIG v1r1Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

ALMA-09-048970 - AlmaLinux OS 9 must audit all uses of the rename, unlink, rmdir, renameat, and unlinkat system calls.DISA CloudLinux AlmaLinux OS 9 STIG v1r1Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

ALMA-09-049630 - AlmaLinux OS 9 must generate audit records for any use of the "postdrop" command.DISA CloudLinux AlmaLinux OS 9 STIG v1r1Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

ALMA-09-049960 - AlmaLinux OS 9 must generate audit records for any use of the "sudo" command.DISA CloudLinux AlmaLinux OS 9 STIG v1r1Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

ALMA-09-050070 - AlmaLinux OS 9 must generate audit records for any use of the "semanage" command.DISA CloudLinux AlmaLinux OS 9 STIG v1r1Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

OL07-00-030740 - The Oracle Linux operating system must audit all uses of the mount command and syscall.DISA Oracle Linux 7 STIG v3r1Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

OL08-00-020240 - OL 8 duplicate User IDs (UIDs) must not exist for interactive users.DISA Oracle Linux 8 STIG v2r2Unix

AUDIT AND ACCOUNTABILITY, IDENTIFICATION AND AUTHENTICATION

OL08-00-030190 - OL 8 must generate audit records for any use of the 'su' command.DISA Oracle Linux 8 STIG v2r2Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

OL08-00-030260 - OL 8 must generate audit records for any uses of the 'chcon' command.DISA Oracle Linux 8 STIG v2r2Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

OL08-00-030311 - OL 8 must generate audit records for any use of the 'postdrop' command.DISA Oracle Linux 8 STIG v2r2Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

OL08-00-030316 - OL 8 must generate audit records for any use of the 'setsebool' command.DISA Oracle Linux 8 STIG v2r2Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

OL08-00-030317 - OL 8 must generate audit records for any use of the 'unix_chkpwd' command.DISA Oracle Linux 8 STIG v2r2Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

OL08-00-030330 - OL 8 must generate audit records for any use of the 'setfacl' command.DISA Oracle Linux 8 STIG v2r2Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

OL08-00-030490 - OL 8 must generate audit records for any use of the 'chmod', 'fchmod', and 'fchmodat' system calls.DISA Oracle Linux 8 STIG v2r2Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

OL08-00-030580 - OL 8 must generate audit records for any use of the 'kmod' command.DISA Oracle Linux 8 STIG v2r2Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

OL08-00-030590 - OL 8 must generate audit records for any attempted modifications to the 'faillock' log file.DISA Oracle Linux 8 STIG v2r2Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

OL08-00-030600 - OL 8 must generate audit records for any attempted modifications to the 'lastlog' file.DISA Oracle Linux 8 STIG v2r2Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

OL08-00-030601 - OL 8 must enable auditing of processes that start prior to the audit daemon.DISA Oracle Linux 8 STIG v2r2Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

OL08-00-030602 - OL 8 must allocate an 'audit_backlog_limit' of sufficient size to capture processes that start prior to the audit daemon.DISA Oracle Linux 8 STIG v2r2Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

RHEL-07-030630 - The Red Hat Enterprise Linux operating system must audit all uses of the passwd command.DISA Red Hat Enterprise Linux 7 STIG v3r15Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

RHEL-07-030640 - The Red Hat Enterprise Linux operating system must audit all uses of the unix_chkpwd command.DISA Red Hat Enterprise Linux 7 STIG v3r15Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

RHEL-07-030650 - The Red Hat Enterprise Linux operating system must audit all uses of the gpasswd command.DISA Red Hat Enterprise Linux 7 STIG v3r15Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

RHEL-07-030660 - The Red Hat Enterprise Linux operating system must audit all uses of the chage command.DISA Red Hat Enterprise Linux 7 STIG v3r15Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

RHEL-07-030670 - The Red Hat Enterprise Linux operating system must audit all uses of the userhelper command.DISA Red Hat Enterprise Linux 7 STIG v3r15Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

RHEL-07-030740 - The Red Hat Enterprise Linux operating system must audit all uses of the mount command and syscall.DISA Red Hat Enterprise Linux 7 STIG v3r15Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

RHEL-07-030750 - The Red Hat Enterprise Linux operating system must audit all uses of the umount command.DISA Red Hat Enterprise Linux 7 STIG v3r15Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

RHEL-07-030760 - The Red Hat Enterprise Linux operating system must audit all uses of the postdrop command.DISA Red Hat Enterprise Linux 7 STIG v3r15Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

RHEL-07-030770 - The Red Hat Enterprise Linux operating system must audit all uses of the postqueue command.DISA Red Hat Enterprise Linux 7 STIG v3r15Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

RHEL-07-030780 - The Red Hat Enterprise Linux operating system must audit all uses of the ssh-keysign command.DISA Red Hat Enterprise Linux 7 STIG v3r15Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

RHEL-07-030800 - The Red Hat Enterprise Linux operating system must audit all uses of the crontab command.DISA Red Hat Enterprise Linux 7 STIG v3r15Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

RHEL-09-411030 - RHEL 9 duplicate User IDs (UIDs) must not exist for interactive users.DISA Red Hat Enterprise Linux 9 STIG v2r3Unix

AUDIT AND ACCOUNTABILITY, IDENTIFICATION AND AUTHENTICATION

RHEL-09-654015 - RHEL 9 must audit all uses of the chmod, fchmod, and fchmodat system calls.DISA Red Hat Enterprise Linux 9 STIG v2r3Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

RHEL-09-654045 - RHEL 9 must audit all uses of the chcon command.DISA Red Hat Enterprise Linux 9 STIG v2r3Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

RHEL-09-654115 - RHEL 9 must audit all uses of the pam_timestamp_check command.DISA Red Hat Enterprise Linux 9 STIG v2r3Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

RHEL-09-654125 - RHEL 9 must audit all uses of the postdrop command.DISA Red Hat Enterprise Linux 9 STIG v2r3Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

UBTU-16-020390 - Successful/unsuccessful uses of the umount command must generate an audit record.DISA STIG Ubuntu 16.04 LTS v2r3Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE