APPL-12-002069 - The macOS system must prevent nonprivileged users from executing privileged functions to include disabling, circumventing, or altering implemented security safeguards/countermeasures. | DISA STIG Apple macOS 12 v1r9 | Unix | ACCESS CONTROL |
APPL-15-002069 - The macOS system must require an administrator password to modify systemwide preferences. | DISA Apple macOS 15 (Sequoia) STIG v1r1 | Unix | ACCESS CONTROL |
CD12-00-011700 - PostgreSQL must prevent non-privileged users from executing privileged functions, to include disabling, circumventing, or altering implemented security safeguards/countermeasures. | DISA STIG Crunchy Data PostgreSQL DB v3r1 | PostgreSQLDB | ACCESS CONTROL |
GOOG-12-012200 - Google Android 12 must be configured to disable all data signaling over [assignment: list of externally accessible hardware ports (for example, USB)]. | MobileIron - DISA Google Android 12 COBO v1r2 | MDM | ACCESS CONTROL |
GOOG-12-012200 - Google Android 12 must be configured to disable all data signaling over [assignment: list of externally accessible hardware ports (for example, USB)]. | AirWatch - DISA Google Android 12 COPE v1r2 | MDM | ACCESS CONTROL |
GOOG-13-012200 - Google Android 13 must be configured to disable all data signaling over [assignment: list of externally accessible hardware ports (for example, USB)] - for example, USB]. | AirWatch - DISA Google Android 13 COBO v2r1 | MDM | ACCESS CONTROL |
GOOG-13-012200 - Google Android 13 must be configured to disable all data signaling over [assignment: list of externally accessible hardware ports (for example, USB)] - for example, USB]. | MobileIron - DISA Google Android 13 COBO v2r1 | MDM | ACCESS CONTROL |
GOOG-13-012200 - Google Android 13 must be configured to disable all data signaling over [assignment: list of externally accessible hardware ports (for example, USB)] - for example, USB]. | AirWatch - DISA Google Android 13 COPE v2r1 | MDM | ACCESS CONTROL |
GOOG-14-012200 - Google Android 14 must be configured to disable all data signaling over [assignment: list of externally accessible hardware ports (for example, USB)] - for example, USB]. | MobileIron - DISA Google Android 14 COBO v2r1 | MDM | ACCESS CONTROL |
GOOG-14-012200 - Google Android 14 must be configured to disable all data signaling over [assignment: list of externally accessible hardware ports (for example, USB)] - for example, USB]. | MobileIron - DISA Google Android 14 COPE v2r1 | MDM | ACCESS CONTROL |
MADB-10-006800 - MariaDB must prevent nonprivileged users from executing privileged functions, to include disabling, circumventing, or altering implemented security safeguards/countermeasures. | DISA MariaDB Enterprise 10.x v2r1 DB | MySQLDB | ACCESS CONTROL |
MSFT-11-005200 - The mobile operating system must allow only the Administrator (MDM) to perform the following management function: Enable/disable location services - EMM to perform the following management function: Enable/disable location services. | MobileIron - DISA Microsoft Android 11 COBO v1r2 | MDM | ACCESS CONTROL |
MSFT-11-005200 - The mobile operating system must allow only the Administrator (MDM) to perform the following management function: Enable/disable location services. | AirWatch - DISA Microsoft Android 11 COBO v1r2 | MDM | ACCESS CONTROL |
MYS8-00-010700 - The MySQL Database Server 8.0 must prevent non-privileged users from executing privileged functions, to include disabling, circumventing, or altering implemented security safeguards/countermeasures. | DISA Oracle MySQL 8.0 v2r2 DB | MySQLDB | ACCESS CONTROL |
OL08-00-040400 - OL 8 must prevent nonprivileged users from executing privileged functions, including disabling, circumventing, or altering implemented security safeguards/countermeasures. | DISA Oracle Linux 8 STIG v2r2 | Unix | ACCESS CONTROL |
PHTN-40-000105 The Photon operating system must enable symlink access control protection in the kernel. | DISA VMware vSphere 8.0 vCenter Appliance Photon OS 4.0 STIG v2r1 | Unix | ACCESS CONTROL |
WBSP-AS-000240 - The WebSphere Application Server users in a LDAP user registry group must be authorized for that group. | DISA IBM WebSphere Traditional 9 STIG v1r1 | Unix | ACCESS CONTROL |
WBSP-AS-000240 - The WebSphere Application Server users in a LDAP user registry group must be authorized for that group. | DISA IBM WebSphere Traditional 9 STIG v1r1 Middleware | Unix | ACCESS CONTROL |
WBSP-AS-000240 - The WebSphere Application Server users in a LDAP user registry group must be authorized for that group. | DISA IBM WebSphere Traditional 9 Windows STIG v1r1 | Windows | ACCESS CONTROL |
WN11-RG-000005 - Default permissions for the HKEY_LOCAL_MACHINE registry hive must be maintained. | DISA Windows 11 STIG v2r2 | Windows | ACCESS CONTROL |
WN11-UR-000015 - The 'Act as part of the operating system' user right must not be assigned to any groups or accounts. | DISA Windows 11 STIG v2r2 | Windows | ACCESS CONTROL |
WN11-UR-000030 - The 'Back up files and directories' user right must only be assigned to the Administrators group. | DISA Windows 11 STIG v2r2 | Windows | ACCESS CONTROL |
WN11-UR-000035 - The 'Change the system time' user right must only be assigned to Administrators and Local Service. | DISA Windows 11 STIG v2r2 | Windows | ACCESS CONTROL |
WN11-UR-000040 - The 'Create a pagefile' user right must only be assigned to the Administrators group. | DISA Windows 11 STIG v2r2 | Windows | ACCESS CONTROL |
WN11-UR-000050 - The 'Create global objects' user right must only be assigned to Administrators, Service, Local Service, and Network Service. | DISA Windows 11 STIG v2r2 | Windows | ACCESS CONTROL |
WN11-UR-000055 - The 'Create permanent shared objects' user right must not be assigned to any groups or accounts. | DISA Windows 11 STIG v2r2 | Windows | ACCESS CONTROL |
WN11-UR-000060 - The 'Create symbolic links' user right must only be assigned to the Administrators group. | DISA Windows 11 STIG v2r2 | Windows | ACCESS CONTROL |
WN11-UR-000110 - The 'Impersonate a client after authentication' user right must only be assigned to Administrators, Service, Local Service, and Network Service. | DISA Windows 11 STIG v2r2 | Windows | ACCESS CONTROL |
WN11-UR-000120 - The 'Load and unload device drivers' user right must only be assigned to the Administrators group. | DISA Windows 11 STIG v2r2 | Windows | ACCESS CONTROL |
WN11-UR-000140 - The 'Modify firmware environment values' user right must only be assigned to the Administrators group. | DISA Windows 11 STIG v2r2 | Windows | ACCESS CONTROL |
WN11-UR-000150 - The 'Profile single process' user right must only be assigned to the Administrators group. | DISA Windows 11 STIG v2r2 | Windows | ACCESS CONTROL |
WN22-00-000170 - Windows Server 2022 default permissions for the HKEY_LOCAL_MACHINE registry hive must be maintained. | DISA Windows Server 2022 STIG v2r2 | Windows | ACCESS CONTROL |
WN22-DC-000010 - Windows Server 2022 must only allow administrators responsible for the domain controller to have Administrator rights on the system. | DISA Windows Server 2022 STIG v2r2 | Windows | ACCESS CONTROL |
WN22-DC-000100 - Windows Server 2022 Active Directory Domain Controllers Organizational Unit (OU) object must have the proper access control permissions. | DISA Windows Server 2022 STIG v2r2 | Windows | ACCESS CONTROL |
WN22-DC-000110 - Windows Server 2022 organization created Active Directory Organizational Unit (OU) objects must have proper access control permissions. | DISA Windows Server 2022 STIG v2r2 | Windows | ACCESS CONTROL |
WN22-MS-000060 - Windows Server 2022 must restrict remote calls to the Security Account Manager (SAM) to Administrators on domain-joined member servers and standalone or nondomain-joined systems. | DISA Windows Server 2022 STIG v2r2 | Windows | ACCESS CONTROL |
WN22-MS-000130 - Windows Server 2022 Enable computer and user accounts to be trusted for delegation user right must not be assigned to any groups or accounts on domain-joined member servers and standalone or nondomain-joined systems. | DISA Windows Server 2022 STIG v2r2 | Windows | ACCESS CONTROL |
WN22-UR-000010 - Windows Server 2022 Access Credential Manager as a trusted caller user right must not be assigned to any groups or accounts. | DISA Windows Server 2022 STIG v2r2 | Windows | ACCESS CONTROL |
WN22-UR-000040 - Windows Server 2022 back up files and directories user right must only be assigned to the Administrators group. | DISA Windows Server 2022 STIG v2r2 | Windows | ACCESS CONTROL |
WN22-UR-000050 - Windows Server 2022 create a pagefile user right must only be assigned to the Administrators group. | DISA Windows Server 2022 STIG v2r2 | Windows | ACCESS CONTROL |
WN22-UR-000060 - Windows Server 2022 create a token object user right must not be assigned to any groups or accounts. | DISA Windows Server 2022 STIG v2r2 | Windows | ACCESS CONTROL |
WN22-UR-000070 - Windows Server 2022 create global objects user right must only be assigned to Administrators, Service, Local Service, and Network Service. | DISA Windows Server 2022 STIG v2r2 | Windows | ACCESS CONTROL |
WN22-UR-000100 - Windows Server 2022 debug programs user right must only be assigned to the Administrators group. | DISA Windows Server 2022 STIG v2r2 | Windows | ACCESS CONTROL |
WN22-UR-000110 - Windows Server 2022 force shutdown from a remote system user right must only be assigned to the Administrators group. | DISA Windows Server 2022 STIG v2r2 | Windows | ACCESS CONTROL |
WN22-UR-000130 - Windows Server 2022 impersonate a client after authentication user right must only be assigned to Administrators, Service, Local Service, and Network Service. | DISA Windows Server 2022 STIG v2r2 | Windows | ACCESS CONTROL |
WN22-UR-000140 - Windows Server 2022 increase scheduling priority: user right must only be assigned to the Administrators group. | DISA Windows Server 2022 STIG v2r2 | Windows | ACCESS CONTROL |
WN22-UR-000150 - Windows Server 2022 load and unload device drivers user right must only be assigned to the Administrators group. | DISA Windows Server 2022 STIG v2r2 | Windows | ACCESS CONTROL |
WN22-UR-000180 - Windows Server 2022 modify firmware environment values user right must only be assigned to the Administrators group. | DISA Windows Server 2022 STIG v2r2 | Windows | ACCESS CONTROL |
WN22-UR-000200 - Windows Server 2022 profile single process user right must only be assigned to the Administrators group. | DISA Windows Server 2022 STIG v2r2 | Windows | ACCESS CONTROL |
WN22-UR-000220 - Windows Server 2022 take ownership of files or other objects user right must only be assigned to the Administrators group. | DISA Windows Server 2022 STIG v2r2 | Windows | ACCESS CONTROL |