Item Search

NameAudit NamePluginCategory
1.18 VCST-80-000130CIS VMware vSphere 8.0 vCenter Appliance Secure Token Service STS STIG v1.0.0 CAT IIUnix

ACCESS CONTROL

1.19 VCLU-80-000129CIS VMware vSphere 8.0 vCenter Appliance Lookup Service STIG v1.0.0 CAT IIUnix

ACCESS CONTROL

1.20 VCUI-80-000130CIS VMware vSphere 8.0 vCenter Appliance User Interface UI STIG v1.0.0 CAT IIUnix

ACCESS CONTROL

1.87 RHEL-10-400000CIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT IIUnix

ACCESS CONTROL

1.97 RHEL-10-400050CIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT IIUnix

ACCESS CONTROL

1.140 RHEL-10-400265CIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT IIUnix

ACCESS CONTROL

1.142 RHEL-10-400275CIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT IIUnix

ACCESS CONTROL

1.150 RHEL-10-400315CIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT IIUnix

ACCESS CONTROL

1.156 RHEL-10-400345CIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT IIUnix

ACCESS CONTROL

1.183 WN16-DC-000390CIS Microsoft Windows Server 2016 STIG v4.0.0 DC CAT IIWindows

ACCESS CONTROL

1.183 WN22-DC-000380CIS Microsoft Windows Server 2022 STIG v3.0.0 DC CAT IIWindows

ACCESS CONTROL

1.200 WN22-MS-000100CIS Microsoft Windows Server 2022 STIG v3.0.0 MS CAT IIWindows

ACCESS CONTROL

1.254 WN16-UR-000050CIS Microsoft Windows Server 2016 STIG v4.0.0 DC CAT IIWindows

ACCESS CONTROL

1.256 WN22-UR-000030CIS Microsoft Windows Server 2022 STIG v3.0.0 DC CAT IIWindows

ACCESS CONTROL

APPL-14-002050 - The macOS system must disable Screen Sharing and Apple Remote Desktop.DISA Apple macOS 14 Sonoma STIG v2r4Unix

ACCESS CONTROL

APPL-14-005070 - The macOS system must enable Authenticated Root.DISA Apple macOS 14 Sonoma STIG v2r4Unix

ACCESS CONTROL

APPL-15-002001 - The macOS system must disable Server Message Block (SMB) sharing.DISA Apple macOS 15 Sequoia STIG v1r7Unix

ACCESS CONTROL

APPL-15-002003 - The macOS system must disable Network File System (NFS) service.DISA Apple macOS 15 Sequoia STIG v1r7Unix

ACCESS CONTROL

APPL-15-002006 - The macOS system must disable Unix-to-Unix Copy Protocol (UUCP) service.DISA Apple macOS 15 Sequoia STIG v1r7Unix

ACCESS CONTROL

APPL-15-002008 - The macOS system must disable the built-in web server.DISA Apple macOS 15 Sequoia STIG v1r7Unix

ACCESS CONTROL

APPL-15-002050 - The macOS system must disable Screen Sharing and Apple Remote Desktop.DISA Apple macOS 15 Sequoia STIG v1r7Unix

ACCESS CONTROL

APPL-15-005070 - The macOS system must enable Authenticated Root.DISA Apple macOS 15 Sequoia STIG v1r7Unix

ACCESS CONTROL

APPL-26-005070 - The macOS system must enable Authenticated Root.DISA Apple macOS 26 Tahoe STIG v1r2Unix

ACCESS CONTROL

CNTR-K8-000300 - The Kubernetes Scheduler must have secure binding.DISA Kubernetes STIG v2r6Unix

ACCESS CONTROL

CNTR-K8-000330 - The Kubernetes Kubelet must have the "readOnlyPort" flag disabled.DISA Kubernetes STIG v2r6Unix

ACCESS CONTROL

CNTR-K8-000410 - Kubernetes Worker Nodes must not have the sshd service enabled.DISA Kubernetes STIG v2r6Unix

ACCESS CONTROL

CNTR-R2-000130 - The Kubernetes Kubelet must have the read-only port flag disabled.DISA Rancher Government Solutions RKE2 STIG v2r7Unix

ACCESS CONTROL

EX19-MB-000020 - Exchange must have authenticated access set to integrated Windows authentication only.DISA Microsoft Exchange 2019 Mailbox Server STIG v2r3Windows

ACCESS CONTROL

OL07-00-010483 - Oracle Linux operating systems version 7.2 or newer booted with a BIOS must have a unique name for the grub superusers account when booting into single-user and maintenance modes.DISA Oracle Linux 7 STIG v3r5Unix

ACCESS CONTROL

OL08-00-020262 - The OL 8 lastlog command must have a mode of "0750" or less permissive.DISA Oracle Linux 8 STIG v2r9Unix

ACCESS CONTROL

RHEL-07-010483 - Red Hat Enterprise Linux operating systems version 7.2 or newer booted with a BIOS must have a unique name for the grub superusers account when booting into single-user and maintenance modes.DISA Red Hat Enterprise Linux 7 STIG v3r15Unix

ACCESS CONTROL

RHEL-10-400000 - RHEL 10 must be configured so that the "/etc/group" file is owned by root.DISA Red Hat Enterprise Linux 10 STIG v1r2Unix

ACCESS CONTROL

RHEL-10-400015 - RHEL 10 must be configured so that the "/etc/group-" file is group-owned by "root".DISA Red Hat Enterprise Linux 10 STIG v1r2Unix

ACCESS CONTROL

RHEL-10-400065 - RHEL 10 must be configured so that the "/etc/shadow" file is group-owned by "root".DISA Red Hat Enterprise Linux 10 STIG v1r2Unix

ACCESS CONTROL

RHEL-10-400135 - RHEL 10 must be configured so that cron configuration files directories are group-owned by root.DISA Red Hat Enterprise Linux 10 STIG v1r2Unix

ACCESS CONTROL

RHEL-10-400250 - RHEL 10 must enforce mode "0644" or less permissive for the "/etc/group-" file to prevent unauthorized access.DISA Red Hat Enterprise Linux 10 STIG v1r2Unix

ACCESS CONTROL

RHEL-10-400255 - RHEL 10 must enforce mode "0000" or less permissive for the "/etc/gshadow" file to prevent unauthorized access.DISA Red Hat Enterprise Linux 10 STIG v1r2Unix

ACCESS CONTROL

RHEL-10-400335 - RHEL 10 must enforce that all local initialization files configured by systemd-tmpfiles have mode "0600" or less permissive.DISA Red Hat Enterprise Linux 10 STIG v1r2Unix

ACCESS CONTROL

RHEL-10-500005 - RHEL 10 must enable auditing of processes that start prior to the audit daemon.DISA Red Hat Enterprise Linux 10 STIG v1r2Unix

ACCESS CONTROL

SYMP-AG-000060 - Symantec ProxySG must implement security policies that enforce approved authorizations for logical access to information and system resources by employing identity-based, role-based, and/or attribute-based security policies.DISA Symantec ProxySG Benchmark ALG v1r3BlueCoat

ACCESS CONTROL

SYMP-NM-000030 - Symantec ProxySG must configure Web Management Console access restrictions to authorized IP address/ranges.DISA Symantec ProxySG Benchmark NDM v1r2BlueCoat

ACCESS CONTROL

VCLU-80-000130 The vCenter Lookup service DefaultServlet must be set to 'readonly' for 'PUT' and 'DELETE' commands.DISA VMware vSphere 8.0 vCenter Appliance Lookup Service STIG v2r1Unix

ACCESS CONTROL

VCST-80-000129 The vCenter STS service cookies must have 'http-only' flag set.DISA VMware vSphere 8.0 vCenter Appliance Secure Token Service (STS) STIG v2r1Unix

ACCESS CONTROL

VCUI-80-000005 The vCenter UI service cookies must have secure flag set.DISA VMware vSphere 8.0 vCenter Appliance User Interface (UI) STIG v2r1Unix

ACCESS CONTROL

VCUI-80-000129 The vCenter UI service cookies must have 'http-only' flag set.DISA VMware vSphere 8.0 vCenter Appliance User Interface (UI) STIG v2r1Unix

ACCESS CONTROL

WN11-00-000050 - Local volumes must be formatted using NTFS.DISA Microsoft Windows 11 STIG v2r7Windows

ACCESS CONTROL

WN11-UR-000080 - The 'Deny log on as a service' user right on Windows 11 domain-joined workstations must be configured to prevent access from highly privileged domain accounts.DISA Microsoft Windows 11 STIG v2r7Windows

ACCESS CONTROL

WN22-MS-000090 - Windows Server 2022 Deny log on as a batch job user right on domain-joined member servers must be configured to prevent access from highly privileged domain accounts and from unauthenticated access on all systems.DISA Microsoft Windows Server 2022 STIG v2r8Windows

ACCESS CONTROL

WN25-DC-000370 - The Windows Server 2025 'Deny access to this computer from the network' user right on domain controllers must be configured to prevent unauthenticated access.DISA Microsoft Windows Server 2025 STIG v1r1Windows

ACCESS CONTROL

WN25-MS-000100 - The Windows Server 2025 'Deny log on as a service' user right on domain-joined member servers must be configured to prevent access from highly privileged domain accounts. No other groups or accounts must be assigned this right.DISA Microsoft Windows Server 2025 STIG v1r1Windows

ACCESS CONTROL