Item Search

NameAudit NamePluginCategory
1.6.1.9 Ensure non-privileged users are prevented from executing privileged functionsCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

ACCESS CONTROL

AIOS-16-014800 - Apple iOS/iPadOS 16 must be configured to disable Auto Unlock of the iPhone by an Apple Watch.AirWatch - DISA Apple iOS/iPadOS 16 v2r1MDM

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

DB2X-00-007000 - DB2 must prevent non-privileged users from executing privileged functions, to include disabling, circumventing, or altering implemented security safeguards/countermeasuresDISA STIG IBM DB2 v10.5 LUW v2r1 DatabaseIBM_DB2DB

ACCESS CONTROL

DTOO201 - Connection verification of permissions must be enforced.DISA STIG Microsoft Office System 2013 v2r2Windows

ACCESS CONTROL

DTOO201 - Connection verification of permissions must be enforced.DISA STIG Microsoft Office System 2016 v2r3Windows

ACCESS CONTROL

EX19-ED-000174 Role-Based Access Control must be defined for privileged and nonprivileged users.DISA Microsoft Exchange 2019 Edge Server STIG v2r1Windows

ACCESS CONTROL

EX19-MB-000173 Role-Based Access Control must be defined for privileged and nonprivileged users.DISA Microsoft Exchange 2019 Mailbox Server STIG v2r1Windows

ACCESS CONTROL

GOOG-14-012200 - Google Android 14 must be configured to disable all data signaling over [assignment: list of externally accessible hardware ports (for example, USB)] - for example, USB].AirWatch - DISA Google Android 14 COPE v2r1MDM

ACCESS CONTROL

IISW-SV-000144 - IIS 8.5 web server system files must conform to minimum file permission requirements.DISA IIS 8.5 Server v2r7Windows

ACCESS CONTROL

MSFT-11-002000 - Microsoft Android 11 must be configured to enable encryption for data at rest on removable storage media or alternately, the use of removable storage media must be disabled.AirWatch - DISA Microsoft Android 11 COBO v1r2MDM

ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION

MSFT-11-002000 - Microsoft Android 11 must be configured to enable encryption for data at rest on removable storage media or alternately, the use of removable storage media must be disabled.AirWatch - DISA Microsoft Android 11 COPE v1r2MDM

ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION

MSFT-11-002000 - Microsoft Android 11 must be configured to enable encryption for data at rest on removable storage media or alternately, the use of removable storage media must be disabled.MobileIron - DISA Microsoft Android 11 COBO v1r2MDM

ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION

MSFT-11-002000 - Microsoft Android 11 must be configured to enable encryption for data at rest on removable storage media or alternately, the use of removable storage media must be disabled.MobileIron - DISA Microsoft Android 11 COPE v1r2MDM

ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION

RHEL-07-020022 - The Red Hat Enterprise Linux operating system must not allow privileged accounts to utilize SSH.DISA Red Hat Enterprise Linux 7 STIG v3r15Unix

ACCESS CONTROL

RHEL-09-211045 - The systemd Ctrl-Alt-Delete burst key sequence in RHEL 9 must be disabled.DISA Red Hat Enterprise Linux 9 STIG v2r2Unix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

RHEL-09-211050 - The x86 Ctrl-Alt-Delete key sequence must be disabled on RHEL 9.DISA Red Hat Enterprise Linux 9 STIG v2r2Unix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

RHEL-09-211055 - RHEL 9 debug-shell systemd service must be disabled.DISA Red Hat Enterprise Linux 9 STIG v2r2Unix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

SOL-11.1-040200 - The system must restrict the ability of users to assume excessive privileges to members of a defined group and prevent unauthorized users from accessing administrative tools.DISA STIG Solaris 11 X86 v3r1Unix

ACCESS CONTROL

SQL4-00-032500 - SQL Server must prevent non-privileged users from executing privileged functionality, to include disabling, circumventing, or altering implemented security safeguards/countermeasures.DISA STIG SQL Server 2014 Instance DB Audit v2r4MS_SQLDB

ACCESS CONTROL

TCAT-AS-001060 - Tomcat user account must be a non-privileged user.DISA STIG Apache Tomcat Application Server 9 v3r1 MiddlewareUnix

ACCESS CONTROL

WN10-UR-000120 - The Load and unload device drivers user right must only be assigned to the Administrators group.DISA Windows 10 STIG v3r2Windows

ACCESS CONTROL

WN10-UR-000140 - The Modify firmware environment values user right must only be assigned to the Administrators group.DISA Windows 10 STIG v3r2Windows

ACCESS CONTROL

WN10-UR-000165 - The Take ownership of files or other objects user right must only be assigned to the Administrators group.DISA Windows 10 STIG v3r2Windows

ACCESS CONTROL

WN11-UR-000065 - The 'Debug programs' user right must only be assigned to the Administrators group.DISA Windows 11 STIG v2r2Windows

ACCESS CONTROL

WN11-UR-000095 - The 'Enable computer and user accounts to be trusted for delegation' user right must not be assigned to any groups or accounts.DISA Windows 11 STIG v2r2Windows

ACCESS CONTROL

WN11-UR-000100 - The 'Force shutdown from a remote system' user right must only be assigned to the Administrators group.DISA Windows 11 STIG v2r2Windows

ACCESS CONTROL

WN11-UR-000125 - The 'Lock pages in memory' user right must not be assigned to any groups or accounts.DISA Windows 11 STIG v2r2Windows

ACCESS CONTROL

WN12-RG-000001 - Standard user accounts must only have Read permissions to the Winlogon registry key.DISA Windows Server 2012 and 2012 R2 DC STIG v3r7Windows

ACCESS CONTROL

WN12-RG-000002 - Standard user accounts must only have Read permissions to the Active Setup\Installed Components registry key - compatabilityDISA Windows Server 2012 and 2012 R2 DC STIG v3r7Windows

ACCESS CONTROL

WN12-RG-000002 - Standard user accounts must only have Read permissions to the Active Setup\Installed Components registry key - compatabilityDISA Windows Server 2012 and 2012 R2 MS STIG v3r7Windows

ACCESS CONTROL

WN12-RG-000004 - Anonymous access to the registry must be restrictedDISA Windows Server 2012 and 2012 R2 MS STIG v3r7Windows

ACCESS CONTROL

WN12-UR-000015 - The Create symbolic links user right must only be assigned to the Administrators group.DISA Windows Server 2012 and 2012 R2 MS STIG v3r7Windows

ACCESS CONTROL

WN12-UR-000028 - The Load and unload device drivers user right must only be assigned to the Administrators group.DISA Windows Server 2012 and 2012 R2 DC STIG v3r7Windows

ACCESS CONTROL

WN12-UR-000028 - The Load and unload device drivers user right must only be assigned to the Administrators group.DISA Windows Server 2012 and 2012 R2 MS STIG v3r7Windows

ACCESS CONTROL

WN16-DC-000010 - Only administrators responsible for the domain controller must have Administrator rights on the system.DISA Windows Server 2016 STIG v2r9Windows

ACCESS CONTROL

WN16-DC-000080 - The Active Directory SYSVOL directory must have the proper access control permissions.DISA Windows Server 2016 STIG v2r9Windows

ACCESS CONTROL

WN16-DC-000350 - The Add workstations to domain user right must only be assigned to the Administrators group.DISA Windows Server 2016 STIG v2r9Windows

ACCESS CONTROL

WN16-UR-000010 - The Access Credential Manager as a trusted caller user right must not be assigned to any groups or accounts.DISA Windows Server 2016 STIG v2r9Windows

ACCESS CONTROL

WN16-UR-000120 - The Create symbolic links user right must only be assigned to the Administrators group.DISA Windows Server 2016 STIG v2r9Windows

ACCESS CONTROL

WN16-UR-000210 - The Generate security audits user right must only be assigned to Local Service and Network Service.DISA Windows Server 2016 STIG v2r9Windows

ACCESS CONTROL

WN16-UR-000220 - The Impersonate a client after authentication user right must only be assigned to Administrators, Service, Local Service, and Network Service.DISA Windows Server 2016 STIG v2r9Windows

ACCESS CONTROL

WN16-UR-000230 - The Increase scheduling priority user right must only be assigned to the Administrators group.DISA Windows Server 2016 STIG v2r9Windows

ACCESS CONTROL

WN16-UR-000280 - The Perform volume maintenance tasks user right must only be assigned to the Administrators group.DISA Windows Server 2016 STIG v2r9Windows

ACCESS CONTROL

WN19-DC-000420 - Windows Server 2019 Enable computer and user accounts to be trusted for delegation user right must only be assigned to the Administrators group on domain controllers.DISA Windows Server 2019 STIG v3r2Windows

ACCESS CONTROL

WN19-UR-000020 - Windows Server 2019 Act as part of the operating system user right must not be assigned to any groups or accounts.DISA Windows Server 2019 STIG v3r2Windows

ACCESS CONTROL

WN19-UR-000140 - Windows Server 2019 Increase scheduling priority: user right must only be assigned to the Administrators group.DISA Windows Server 2019 STIG v3r2Windows

ACCESS CONTROL

WN19-UR-000190 - Windows Server 2019 Perform volume maintenance tasks user right must only be assigned to the Administrators group.DISA Windows Server 2019 STIG v3r2Windows

ACCESS CONTROL

WN19-UR-000220 - Windows Server 2019 Take ownership of files or other objects user right must only be assigned to the Administrators group.DISA Windows Server 2019 STIG v3r2Windows

ACCESS CONTROL

WN22-DC-000070 - Windows Server 2022 permissions on the Active Directory data files must only allow System and Administrators access.DISA Windows Server 2022 STIG v2r2Windows

ACCESS CONTROL, SYSTEM AND INFORMATION INTEGRITY

WN22-UR-000160 - Windows Server 2022 lock pages in memory user right must not be assigned to any groups or accounts.DISA Windows Server 2022 STIG v2r2Windows

ACCESS CONTROL, SYSTEM AND INFORMATION INTEGRITY