Item Search

NameAudit NamePluginCategory
1.3.1 Ensure 'Minimum Password Complexity' is enabledCIS Palo Alto Firewall 6 Benchmark L1 v1.0.0Palo_Alto

IDENTIFICATION AND AUTHENTICATION

1.9 Ensure the System is Managed by a Mobile Device Management (MDM) SoftwareCIS Apple macOS 11.0 Big Sur v4.0.0 L1Unix

CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION

2.1.4 The Backups Should be Properly SecuredCIS MariaDB 10.6 Database L1 v1.1.0MySQLDB

CONTINGENCY PLANNING, SYSTEM AND COMMUNICATIONS PROTECTION

2.1.7 Backup of Configuration and Related FilesCIS MariaDB 10.6 Database L1 v1.1.0MySQLDB

CONTINGENCY PLANNING

2.2.1 Ensure 'Set time and date automatically' Is EnabledCIS Apple macOS 11.0 Big Sur v4.0.0 L1Unix

AUDIT AND ACCOUNTABILITY

2.2.1.4 Ensure 'Force encrypted backups' is set to 'Enabled'AirWatch - CIS Apple iPadOS 18 v1.0.0 L1 End User OwnedMDM

CONTINGENCY PLANNING, SYSTEM AND COMMUNICATIONS PROTECTION

2.2.1.4 Ensure 'Force encrypted backups' is set to 'Enabled'AirWatch - CIS Apple iOS 17 Benchmark v1.1.0 End User Owned L1MDM

CONTINGENCY PLANNING, SYSTEM AND COMMUNICATIONS PROTECTION

2.2.1.4 Ensure 'Force encrypted backups' is set to 'Enabled'MobileIron - CIS Apple iOS 18 v1.0.0 L1 End User OwnedMDM

CONTINGENCY PLANNING, SYSTEM AND COMMUNICATIONS PROTECTION

2.2.1.4 Ensure 'Force encrypted backups' is set to 'Enabled'MobileIron - CIS Apple iOS 17 v1.1.0 End User Owned L1MDM

CONTINGENCY PLANNING, SYSTEM AND COMMUNICATIONS PROTECTION

2.2.1.4 Ensure 'Force encrypted backups' is set to 'Enabled'MobileIron - CIS Apple iPadOS 17 v1.1.0 End User Owned L1MDM

CONTINGENCY PLANNING, SYSTEM AND COMMUNICATIONS PROTECTION

2.2.1.4 Ensure 'Force encrypted backups' is set to 'Enabled'AirWatch - CIS Apple iOS 14 and iPadOS 14 v1.0.0 End User Owned L1MDM

CONTINGENCY PLANNING

2.2.1.4 Ensure 'Force encrypted backups' is set to 'Enabled'MobileIron - CIS Apple iPadOS 18 v1.0.0 L1 End User OwnedMDM

CONTINGENCY PLANNING, SYSTEM AND COMMUNICATIONS PROTECTION

2.3.7.10 Ensure 'Interactive logon: Smart card removal behavior' is set to 'Lock Workstation' or 'Force Logoff' (STIG DC & MS only)CIS Microsoft Windows Server 2019 STIG v3.0.0 STIG MSWindows

ACCESS CONTROL

2.4 Do Not Reuse UsernamesCIS MariaDB 10.6 Database L1 v1.1.0MySQLDB

ACCESS CONTROL

2.5.6 Ensure Limit Ad Tracking Is EnabledCIS Apple macOS 11.0 Big Sur v4.0.0 L1Unix

CONFIGURATION MANAGEMENT

3.2.1.14 Ensure 'Allow trusting new enterprise app authors' is set to 'Disabled'AirWatch - CIS Apple iOS 17 Institution Owned L1MDM

CONFIGURATION MANAGEMENT

3.2.1.14 Ensure 'Allow trusting new enterprise app authors' is set to 'Disabled'AirWatch - CIS Apple iPadOS 17 Institutionally Owned L1MDM

CONFIGURATION MANAGEMENT

3.2.1.14 Ensure 'Allow trusting new enterprise app authors' is set to 'Disabled'AirWatch - CIS Apple iPadOS 18 v1.0.0 L1 Institutionally OwnedMDM

CONFIGURATION MANAGEMENT

4.1.1 Review Manage Sharing & AccessAirWatch - CIS Apple iOS 17 Benchmark v1.1.0 End User Owned L1MDM

CONFIGURATION MANAGEMENT

4.1.1 Review Manage Sharing & AccessMobileIron - CIS Apple iPadOS 17 Institutionally Owned L1MDM

CONFIGURATION MANAGEMENT

4.1.1 Review Manage Sharing & AccessMobileIron - CIS Apple iPadOS 18 v1.0.0 L1 Institutionally OwnedMDM

CONFIGURATION MANAGEMENT

4.4 Defend against Denial of Service AttacksCIS ISC BIND 9.0/9.5 v2.0.0Unix
4.5 Ensure the latest iOS device architecture is used by high-value targetsMobileIron - CIS Apple iOS 14 and iPadOS 14 v1.0.0 End User Owned L2MDM

SYSTEM AND INFORMATION INTEGRITY

4.6 Ensure Symbolic Links are DisabledCIS MariaDB 10.6 Database L1 v1.1.0MySQLDB

PLANNING, SYSTEM AND SERVICES ACQUISITION

5.1 Ensure Only Administrative Users Have Full Database AccessCIS MariaDB 10.6 Database L1 v1.1.0MySQLDB

ACCESS CONTROL

5.4 Ensure 'SUPER' is Not Granted to Non-Administrative UsersCIS MariaDB 10.6 Database L1 v1.1.0MySQLDB

ACCESS CONTROL

5.7.3 Apply Security Context to Your Pods and ContainersCIS Kubernetes v1.23 Benchmark v1.0.1 L2 MasterUnix

CONFIGURATION MANAGEMENT

5.8 Ensure 'REPLICATION SLAVE' is Not Granted to Non-Administrative UsersCIS MariaDB 10.6 Database L1 v1.1.0MySQLDB

ACCESS CONTROL, MEDIA PROTECTION

7.2.7 Ensure Advertising Privacy Protection in Safari Is EnabledCIS Apple macOS 10.15 Catalina v3.0.0 L1Unix

CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION

7.6 Ensure No Anonymous Accounts ExistCIS MariaDB 10.6 Database L1 v1.1.0MySQLDB

ACCESS CONTROL

7.9 FileVault and Local Account Password Reset using AppleIDCIS Apple macOS 10.12 L2 v1.2.0Unix

ACCESS CONTROL

7.13 Apple Watch features with macOSCIS Apple macOS 10.12 L1 v1.2.0Unix

ACCESS CONTROL

7.13 Apple Watch features with macOSCIS Apple macOS 10.13 L1 v1.1.0Unix

ACCESS CONTROL

AIOS-02-080102 - Apple iOS must implement the management setting: not allow use of Handoff.MobileIron - DISA Apple iOS 10 v1r3MDM

ACCESS CONTROL, CONFIGURATION MANAGEMENT

AIOS-13-013700 - The Apple iOS/iPadOS must be Supervised by the MDM.MobileIron - DISA Apple iOS/iPadOS 13 v2r1MDM

ACCESS CONTROL, CONFIGURATION MANAGEMENT

AIOS-13-013700 - The Apple iOS/iPadOS must be Supervised by the MDM.AirWatch - DISA Apple iOS/iPadOS 13 v2r1MDM

ACCESS CONTROL, CONFIGURATION MANAGEMENT

AIOS-14-011600 - The Apple iOS/iPadOS must be supervised by the MDM.AirWatch - DISA Apple iOS/iPadOS 14 v1r3MDM

ACCESS CONTROL, CONFIGURATION MANAGEMENT

AIOS-15-013200 - The Apple iOS/iPadOS 15 must be supervised by the MDM.AirWatch - DISA Apple iOS/iPadOS 14 v1r4MDM

CONFIGURATION MANAGEMENT

AIOS-16-012800 - Apple iOS/iPadOS 16 must disable allow setting up new nearby devices.MobileIron - DISA Apple iOS/iPadOS 16 v2r1MDM

ACCESS CONTROL, CONFIGURATION MANAGEMENT

AIOS-16-014800 - Apple iOS/iPadOS 16 must be configured to disable Auto Unlock of the iPhone by an Apple Watch.AirWatch - DISA Apple iOS/iPadOS 16 v2r1MDM

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

AIOS-16-014800 - Apple iOS/iPadOS 16 must be configured to disable Auto Unlock of the iPhone by an Apple Watch.MobileIron - DISA Apple iOS/iPadOS 16 v2r1MDM

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

APPL-14-002021 The macOS system must disable sending diagnostic and usage data to Apple.DISA Apple macOS 14 (Sonoma) STIG v2r3Unix

SYSTEM AND INFORMATION INTEGRITY

APPL-14-002160 The macOS system must disable iCloud Game Center.DISA Apple macOS 14 (Sonoma) STIG v2r3Unix

CONFIGURATION MANAGEMENT

APPL-15-002021 - The macOS system must disable sending diagnostic and usage data to Apple.DISA Apple macOS 15 (Sequoia) STIG v1r3Unix

SYSTEM AND INFORMATION INTEGRITY

APPL-15-002023 - The macOS system must disable sending audio recordings and transcripts to Apple.DISA Apple macOS 15 (Sequoia) STIG v1r3Unix

CONFIGURATION MANAGEMENT

APPL-15-002160 - The macOS system must disable iCloud Game Center.DISA Apple macOS 15 (Sequoia) STIG v1r3Unix

CONFIGURATION MANAGEMENT

APPL-15-005150 - The macOS system must disable Apple Intelligence Image Generation.DISA Apple macOS 15 (Sequoia) STIG v1r3Unix

CONFIGURATION MANAGEMENT

DISA_STIG_Apple_OS_X_10.13_v2r5.audit from DISA Apple OS X 10.13 v2r5 STIGDISA STIG Apple Mac OSX 10.13 v2r5Unix
DISA_STIG_Apple_OS_X_10.14_v2r6.audit from DISA Apple OS X 10.14 (Mojave) v2r6 STIGDISA STIG Apple Mac OSX 10.14 v2r6Unix
DISA_STIG_Apple_OS_X_10.15_v1r10.audit from DISA Apple OS X 10.15 (Catalina) v1r10 STIGDISA STIG Apple Mac OSX 10.15 v1r10Unix