Item Search

NameAudit NamePluginCategory
2.3.10.5 Ensure 'Network access: Do not allow anonymous enumeration of SAM accounts and shares' is set to 'Enabled' (STIG DC & MS only)CIS Microsoft Windows Server 2022 STIG v2.0.0 STIG DCWindows

ACCESS CONTROL

5.1 Ensure 'Microsoft FTP Service (FTPSVC)' is set to 'Not Installed' (STIG only)CIS Microsoft Windows Server 2019 STIG v3.0.0 STIG MSWindows

CONFIGURATION MANAGEMENT

5.1 Ensure 'Microsoft FTP Service (FTPSVC)' is set to 'Not Installed' (STIG only)CIS Microsoft Windows Server 2019 STIG v3.0.0 STIG DCWindows

CONFIGURATION MANAGEMENT

5.1 Ensure 'Microsoft FTP Service (FTPSVC)' is set to 'Not Installed' (STIG only)CIS Microsoft Windows Server 2022 STIG v2.0.0 STIG DCWindows

CONFIGURATION MANAGEMENT

5.9 (L1) Ensure 'Microsoft FTP Service (FTPSVC)' is set to 'Disabled' or 'Not Installed'CIS Microsoft Windows 8.1 v2.4.1 L1 BitlockerWindows

CONFIGURATION MANAGEMENT

5.9 Ensure 'Microsoft FTP Service (FTPSVC)' is set to 'Disabled' or 'Not Installed'CIS Windows 7 Workstation Level 1 v3.2.0Windows

CONFIGURATION MANAGEMENT

17.7.2 Ensure 'Audit Audit Policy Change' is set to include 'Success and Failure' (STIG only)CIS Microsoft Windows Server 2022 STIG v2.0.0 STIG MSWindows

AUDIT AND ACCOUNTABILITY

17.7.3 Ensure 'Audit Audit Policy Change' is set to include 'Success and Failure' (STIG only)CIS Microsoft Windows Server 2019 STIG v3.0.0 STIG DCWindows

AUDIT AND ACCOUNTABILITY

18.10.86.1 Ensure 'Turn on PowerShell Script Block Logging' is set to 'Enabled'CIS Microsoft Windows Server 2019 STIG v3.0.0 STIG MSWindows

AUDIT AND ACCOUNTABILITY

18.10.86.1 Ensure 'Turn on PowerShell Script Block Logging' is set to 'Enabled'CIS Microsoft Windows Server 2022 STIG v2.0.0 L2 Domain ControllerWindows

AUDIT AND ACCOUNTABILITY

CIS Control 7 (7.7) Use of DNS Filtering ServicesCAS Implementation Group 1 Audit FileUnix

ACCESS CONTROL

CIS Docker Community Edition v1.1.0 L1 Linux Host OSCIS Docker Community Edition v1.1.0 L1 Linux Host OSUnix
CIS_Apple_macOS_10.13_v1.1.0_Level_1.audit from CIS Apple macOS 10.13 Benchmark v1.1.0CIS Apple macOS 10.13 L1 v1.1.0Unix
CIS_Apple_macOS_10.13_v1.1.0_Level_2.audit from CIS Apple macOS 10.13 Benchmark v1.1.0CIS Apple macOS 10.13 L2 v1.1.0Unix
CIS_Apple_macOS_10.14_v2.0.0_L2.audit from CIS Apple macOS 10.14 Benchmark v2.0.0CIS Apple macOS 10.14 v2.0.0 L2Unix
CIS_CentOS_6_v3.0.0_Server_L1.audit from CIS CentOS Linux 6 Benchmark v3.0.0CIS CentOS 6 Server L1 v3.0.0Unix
CIS_CentOS_6_v3.0.0_Server_L2.audit from CIS CentOS Linux 6 Benchmark v3.0.0CIS CentOS 6 Server L2 v3.0.0Unix
CIS_CentOS_8_Workstation_L2_v2.0.0.audit from CIS CentOS Linux 8 Benchmark v2.0.0CIS CentOS Linux 8 Workstation L2 v2.0.0Unix
CIS_Microsoft_Windows_10_Enterprise_v3.0.0_L1_Bitlocker.audit from CIS Microsoft Windows 10 Enterprise Benchmark v3.0.0CIS Microsoft Windows 10 Enterprise v3.0.0 L1 + BLWindows
CIS_Microsoft_Windows_Server_2022_v3.0.0_L1_Member_Server.audit from CIS Microsoft Windows Server 2022 Benchmark v3.0.0CIS Microsoft Windows Server 2022 v3.0.0 L1 Member ServerWindows
CIS_MS_Windows_7_v3.2.0_Bitlocker.audit from CIS Microsoft Windows 7 Workstation Benchmark v3.2.0CIS Windows 7 Workstation Bitlocker v3.2.0Windows
CIS_MS_Windows_7_v3.2.0_Level_1_Bitlocker.audit from CIS Microsoft Windows 7 Workstation Benchmark v3.2.0CIS Windows 7 Workstation Level 1 + Bitlocker v3.2.0Windows
CIS_MySQL_5.6_Enterprise_Benchmark_v2.0.0_LEVEL_1_DB.audit from CIS Oracle MySQL 5.6 Enterprise Edition BenchmarkCIS MySQL 5.6 Enterprise Database L1 v2.0.0MySQLDB
CIS_MySQL_5.7_Community_Benchmark_v2.0.0_Level_1_OS_MS.audit from CIS Oracle MySQL 5.7 Community Edition BenchmarkCIS MySQL 5.7 Community Windows OS L1 v2.0.0Windows
CIS_MySQL_5.7_Enterprise_Benchmark_v2.0.0_Level_1_OS_Linux.audit from CIS Oracle MySQL 5.7 Enterprise Edition BenchmarkCIS MySQL 5.7 Enterprise Linux OS L1 v2.0.0Unix
CIS_MySQL_5.7_Enterprise_Benchmark_v2.0.0_Level_1_OS_MS.audit from CIS Oracle MySQL 5.7 Enterprise Edition BenchmarkCIS MySQL 5.7 Enterprise Windows OS L1 v2.0.0Windows
CIS_MySQL_8.0_Enterprise_Benchmark_v1.3.0_Level_1_OS_Linux.audit from CIS Oracle MySQL 8.0 Enterprise Edition BenchmarkCIS MySQL 8.0 Enterprise Linux OS L1 v1.3.0Unix
CIS_MySQL_8.0_Enterprise_Benchmark_v1.3.0_Level_2_Database.audit from CIS Oracle MySQL 8.0 Enterprise Edition BenchmarkCIS MySQL 8.0 Enterprise Database L2 v1.3.0MySQLDB
CIS_Oracle_Linux_8_Server_L1_v3.0.0.audit from CIS Oracle Linux 8 Benchmark v3.0.0CIS Oracle Linux 8 Server L1 v3.0.0Unix
CIS_Oracle_Linux_8_Server_L2_v3.0.0.audit from CIS Oracle Linux 8 Benchmark v3.0.0CIS Oracle Linux 8 Server L2 v3.0.0Unix
CIS_Oracle_Linux_8_Workstation_L1_v3.0.0.audit from CIS Oracle Linux 8 Benchmark v3.0.0CIS Oracle Linux 8 Workstation L1 v3.0.0Unix
CIS_Oracle_Solaris_11.4_L2_v1.1.0.audit from CIS Oracle Solaris 11.4 Benchmark v1.1.0CIS Oracle Solaris 11.4 L2 v1.1.0Unix
CIS_Ubuntu_18.04_LXD_Host_v1.0.0_L1_LXD.audit from CIS Ubuntu Linux 18.04 LXD Host BenchmarkCIS Ubuntu Linux 18.04 LXD Host L1 LXD v1.0.0Unix
CIS_Ubuntu_18.04_LXD_Host_v1.0.0_L1_Server.audit from CIS Ubuntu Linux 18.04 LXD Host BenchmarkCIS Ubuntu Linux 18.04 LXD Host L1 Server v1.0.0Unix
CIS_Ubuntu_18.04_LXD_Host_v1.0.0_L2_Workstation.audit from CIS Ubuntu Linux 18.04 LXD Host BenchmarkCIS Ubuntu Linux 18.04 LXD Host L2 Workstation v1.0.0Unix
CIS_Ubuntu_Linux_22.04_LTS_v2.0.0_L1_Server.audit from CIS Ubuntu Linux 22.04 LTS Benchmark v2.0.0CIS Ubuntu Linux 22.04 LTS v2.0.0 L1 ServerUnix
CIS_Ubuntu_Linux_22.04_LTS_v2.0.0_L2_Server.audit from CIS Ubuntu Linux 22.04 LTS Benchmark v2.0.0CIS Ubuntu Linux 22.04 LTS v2.0.0 L2 ServerUnix
IIST-SI-000259 - The application pools rapid fail protection settings for each IIS 10.0 website must be managed.DISA IIS 10.0 Site v2r10Windows

CONFIGURATION MANAGEMENT

IIST-SV-000123 - The IIS 10.0 web server must be reviewed on a regular basis to remove any Operating System features, utility programs, plug-ins, and modules not necessary for operation.DISA IIS 10.0 Server v2r10Windows

CONFIGURATION MANAGEMENT

IIST-SV-000130 - Java software installed on a production IIS 10.0 web server must be limited to .class files and the Java Virtual Machine.DISA IIS 10.0 Server v2r10Windows

SYSTEM AND COMMUNICATIONS PROTECTION

IIST-SV-000131 - IIS 10.0 Web server accounts accessing the directory tree, the shell, or other operating system functions and utilities must only be administrative accounts.DISA IIS 10.0 Server v2r10Windows

SYSTEM AND COMMUNICATIONS PROTECTION

IIST-SV-000131 - IIS 10.0 Web server accounts accessing the directory tree, the shell, or other operating system functions and utilities must only be administrative accounts.DISA IIS 10.0 Server v3r2Windows

SYSTEM AND COMMUNICATIONS PROTECTION

IIST-SV-000144 - IIS 10.0 web server system files must conform to minimum file permission requirements.DISA IIS 10.0 Server v3r2Windows

ACCESS CONTROL

IIST-SV-000153 - An IIS 10.0 web server must maintain the confidentiality of controlled information during transmission through the use of an approved Transport Layer Security (TLS) versionDISA IIS 10.0 Server v2r10Windows

SYSTEM AND COMMUNICATIONS PROTECTION

IIST-SV-000210 - HTTPAPI Server version must be removed from the HTTP Response Header information.DISA IIS 10.0 Server v3r2Windows

SYSTEM AND INFORMATION INTEGRITY

IISW-SI-000263 - Backup interactive scripts on the IIS 8.5 server must be removed.DISA IIS 8.5 Site v2r9Windows

CONFIGURATION MANAGEMENT

IISW-SI-000264 - The required DoD banner page must be displayed to authenticated users accessing a DoD private website.DISA IIS 8.5 Site v2r9Windows

CONFIGURATION MANAGEMENT

IISW-SV-000148 - The IIS 8.5 web server must not be running on a system providing any other role.DISA IIS 8.5 Server v2r7Windows

CONFIGURATION MANAGEMENT

WG220 A22 - Web administration tools must be restricted to the web manager and the web manager's designees - AccessConfigDISA STIG Apache Server 2.2 Unix v1r11 MiddlewareUnix
WG220 A22 - Web administration tools must be restricted to the web manager and the web manager's designees - ResourceConfigDISA STIG Apache Server 2.2 Unix v1r11 MiddlewareUnix