Item Search

NameAudit NamePluginCategory
1.1.7 Ensure noexec option set on /dev/shm partitionCIS Amazon Linux 2 STIG v2.0.0 STIGUnix

CONFIGURATION MANAGEMENT

1.86 RHEL-09-231095CIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT IIUnix

CONFIGURATION MANAGEMENT

1.98 RHEL-09-231155CIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT IIUnix

CONFIGURATION MANAGEMENT

1.100 RHEL-09-231165CIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT IIUnix

CONFIGURATION MANAGEMENT

1.103 RHEL-09-231180CIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT IIUnix

CONFIGURATION MANAGEMENT

1.104 RHEL-09-231185CIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT IIUnix

CONFIGURATION MANAGEMENT

1.309 OL08-00-040122CIS Oracle Linux 8 STIG v1.0.0 CAT IIUnix

CONFIGURATION MANAGEMENT

1.311 OL08-00-040124CIS Oracle Linux 8 STIG v1.0.0 CAT IIUnix

CONFIGURATION MANAGEMENT

1.313 OL08-00-040126CIS Oracle Linux 8 STIG v1.0.0 CAT IIUnix

CONFIGURATION MANAGEMENT

ALMA-09-026530 - AlmaLinux OS 9 must mount /dev/shm with the nodev option.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-027080 - AlmaLinux OS 9 must mount /tmp with the nosuid option.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-027190 - AlmaLinux OS 9 must mount /var/log/audit with the nodev option.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-027740 - AlmaLinux OS 9 must mount /var/log with the nosuid option.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

ALMA-09-028070 - AlmaLinux OS 9 must mount /var/tmp with the noexec option.DISA Cloud Linux AlmaLinux OS 9 STIG v1r6Unix

CONFIGURATION MANAGEMENT

GOOG-13-006600 - Google Android 13 must be configured to enforce an application installation policy by specifying an application allowlist that restricts applications by the following characteristics: [selection: list of digital signatures, cryptographic hash values, names, application version].MobileIron - DISA Google Android 13 COBO STIG v2r3MDM

CONFIGURATION MANAGEMENT

GOOG-13-006600 - Google Android 13 must be configured to enforce an application installation policy by specifying an application allowlist that restricts applications by the following characteristics: [selection: list of digital signatures, cryptographic hash values, names, application version].AirWatch - DISA Google Android 13 COPE STIG v2r3MDM

CONFIGURATION MANAGEMENT

GOOG-13-006600 - Google Android 13 must be configured to enforce an application installation policy by specifying an application allowlist that restricts applications by the following characteristics: [selection: list of digital signatures, cryptographic hash values, names, application version].MobileIron - DISA Google Android 13 COPE STIG v2r3MDM

CONFIGURATION MANAGEMENT

GOOG-14-006600 - Google Android 14 must be configured to enforce an application installation policy by specifying an application allowlist that restricts applications by the following characteristics: [selection: list of digital signatures, cryptographic hash values, names, application version].MobileIron - DISA Google Android 14 COPE STIG v2r3MDM

CONFIGURATION MANAGEMENT

GOOG-16-006600 - Google Android 16 must be configured to enforce an application installation policy by specifying an application allowlist that restricts applications by the following characteristics: [selection: list of digital signatures, cryptographic hash values, names, application version].AirWatch - DISA Google Android 16 COPE STIG v1r1MDM

CONFIGURATION MANAGEMENT

GOOG-16-006600 - Google Android 16 must be configured to enforce an application installation policy by specifying an application allowlist that restricts applications by the following characteristics: [selection: list of digital signatures, cryptographic hash values, names, application version].MobileIron - DISA Google Android 16 COPE STIG v1r1MDM

CONFIGURATION MANAGEMENT

HONW-13-006600 - Honeywell Android 13 must be configured to enforce an application installation policy by specifying an application allowlist that restricts applications by the following characteristics: [selection: list of digital signatures, cryptographic hash values, names, application version].MobileIron - DISA Honeywell Android 13 COPE STIG v1r1MDM

CONFIGURATION MANAGEMENT

MSFT-11-001000 - Microsoft Android 11 must be configured to enforce an application installation policy by specifying an application allow list that restricts applications by the following characteristics: [selection: list of digital signatures, cryptographic hash values, names, application version].MobileIron - DISA Microsoft Android 11 COPE v1r2MDM

CONFIGURATION MANAGEMENT

OL08-00-040120 - OL 8 must mount "/dev/shm" with the "nodev" option.DISA Oracle Linux 8 STIG v2r8Unix

CONFIGURATION MANAGEMENT

OL08-00-040122 - OL 8 must mount "/dev/shm" with the "noexec" option.DISA Oracle Linux 8 STIG v2r8Unix

CONFIGURATION MANAGEMENT

OL09-00-002030 - OL 9 must mount /boot with the nodev option.DISA Oracle Linux 9 STIG v1r5Unix

CONFIGURATION MANAGEMENT

OL09-00-002041 - OL 9 must mount /dev/shm with the noexec option.DISA Oracle Linux 9 STIG v1r5Unix

CONFIGURATION MANAGEMENT

OL09-00-002042 - OL 9 must mount /dev/shm with the nosuid option.DISA Oracle Linux 9 STIG v1r5Unix

CONFIGURATION MANAGEMENT

OL09-00-002051 - OL 9 must mount /tmp with the noexec option.DISA Oracle Linux 9 STIG v1r5Unix

CONFIGURATION MANAGEMENT

OL09-00-002062 - OL 9 must mount /var/log with the noexec option.DISA Oracle Linux 9 STIG v1r5Unix

CONFIGURATION MANAGEMENT

OL09-00-002063 - OL 9 must mount /var/log with the nosuid option.DISA Oracle Linux 9 STIG v1r5Unix

CONFIGURATION MANAGEMENT

OL09-00-002065 - OL 9 must mount /var/log/audit with the noexec option.DISA Oracle Linux 9 STIG v1r5Unix

CONFIGURATION MANAGEMENT

OL09-00-002069 - OL 9 must mount /var/tmp with the nosuid option.DISA Oracle Linux 9 STIG v1r5Unix

CONFIGURATION MANAGEMENT

OL09-00-002071 - OL 9 must prevent files with the setuid and setgid bit set from being executed on file systems that contain user home directories.DISA Oracle Linux 9 STIG v1r5Unix

CONFIGURATION MANAGEMENT

RHEL-08-040128 - RHEL 8 must mount /var/log with the noexec option.DISA Red Hat Enterprise Linux 8 STIG v2r7Unix

CONFIGURATION MANAGEMENT

RHEL-08-040136 - The RHEL 8 fapolicy module must be enabled.DISA Red Hat Enterprise Linux 8 STIG v2r7Unix

CONFIGURATION MANAGEMENT

RHEL-08-040137 - The RHEL 8 fapolicy module must be configured to employ a deny-all, permit-by-exception policy to allow the execution of authorized software programs.DISA Red Hat Enterprise Linux 8 STIG v2r7Unix

CONFIGURATION MANAGEMENT

RHEL-09-231050 - RHEL 9 must prevent files with the setuid and setgid bit set from being executed on file systems that contain user home directories.DISA Red Hat Enterprise Linux 9 STIG v2r8Unix

CONFIGURATION MANAGEMENT

RHEL-09-231110 - RHEL 9 must mount /dev/shm with the nodev option.DISA Red Hat Enterprise Linux 9 STIG v2r8Unix

CONFIGURATION MANAGEMENT

RHEL-09-231125 - RHEL 9 must mount /tmp with the nodev option.DISA Red Hat Enterprise Linux 9 STIG v2r8Unix

CONFIGURATION MANAGEMENT

RHEL-09-231145 - RHEL 9 must mount /var/log with the nodev option.DISA Red Hat Enterprise Linux 9 STIG v2r8Unix

CONFIGURATION MANAGEMENT

RHEL-10-700125 - RHEL 10 must prevent files with the "setuid" and "setgid" bit set from being executed on the "/boot" directory.DISA Red Hat Enterprise Linux 10 STIG v1r1Unix

CONFIGURATION MANAGEMENT

RHEL-10-700135 - RHEL 10 must mount "/dev/shm" with the "nodev" option.DISA Red Hat Enterprise Linux 10 STIG v1r1Unix

CONFIGURATION MANAGEMENT

RHEL-10-700140 - RHEL 10 must mount "/dev/shm" with the "noexec" option.DISA Red Hat Enterprise Linux 10 STIG v1r1Unix

CONFIGURATION MANAGEMENT

RHEL-10-700160 - RHEL 10 must mount "/tmp" with the "nosuid" option.DISA Red Hat Enterprise Linux 10 STIG v1r1Unix

CONFIGURATION MANAGEMENT

RHEL-10-700165 - RHEL 10 must mount "/var" with the "nodev" option.DISA Red Hat Enterprise Linux 10 STIG v1r1Unix

CONFIGURATION MANAGEMENT

RHEL-10-700170 - RHEL 10 must mount "/var/log" with the "nodev" option.DISA Red Hat Enterprise Linux 10 STIG v1r1Unix

CONFIGURATION MANAGEMENT

RHEL-10-700175 - RHEL 10 must mount "/var/log" with the "noexec" option.DISA Red Hat Enterprise Linux 10 STIG v1r1Unix

CONFIGURATION MANAGEMENT

RHEL-10-700190 - RHEL 10 must mount "/var/tmp" with the "noexec" option.DISA Red Hat Enterprise Linux 10 STIG v1r1Unix

CONFIGURATION MANAGEMENT

WN11-CC-000185 - The default autorun behavior must be configured to prevent autorun commands.DISA Microsoft Windows 11 STIG v2r7Windows

CONFIGURATION MANAGEMENT

WN11-CC-000190 - Autoplay must be disabled for all drives.DISA Microsoft Windows 11 STIG v2r7Windows

CONFIGURATION MANAGEMENT