Item Search

NameAudit NamePluginCategory
AIX7-00-003099 - AIX must allow admins to send a message to a user who logged in currently.DISA STIG AIX 7.x v3r1Unix

ACCESS CONTROL

GEN001140 - System files and directories must not have uneven access permissions - /sbin/*DISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN001280 - Manual page files must have mode 0655 or less permissive - /usr/sfw/man/*DISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

GEN001280 - Manual page files must have mode 0655 or less permissive - /usr/share/man/*DISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN001320 - NIS/NIS+/yp files must be owned by root, sys, or bin - /usr/lib/netsvc/yp/*DISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

GEN001380 - The /etc/passwd file must have mode 0644 or less permissive.DISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

GEN001400 - The /etc/shadow (or equivalent) file must be owned by root.DISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN001420 - The /etc/shadow (or equivalent) file must have mode 0400.DISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN003280 - Access to the at utility must be controlled via the at.allow and/or at.deny file(s).DISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

GEN003740 - The inetd.conf file must have mode 0440 or less permissive.DISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN003780 - The services file must have mode 0444 or less permissive.DISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

GEN003920 - The hosts.lpd (or equivalent) file must be owned by root - /etc/printers.confDISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

GEN003940 - The hosts.lpd (or equivalent) must have mode 0644 or less permissive - SMB_CONFDISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN004400 - Files executed through a mail aliases file must be owned by root and must reside within a directory owned and writable only by root.DISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN004480 - The SMTP service log file must be owned by root - /var/adm/messagesDISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN004480 - The SMTP service log file must be owned by root - /var/log/syslogDISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

GEN004500 - The SMTP service log file must have mode 0644 or less permissive - MAIL_LOGDISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

GEN004880 - The ftpusers file must exist.DISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN004900 - The ftpusers file must contain account names not allowed to use FTP.DISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

GEN005320 - The snmpd.conf file must have mode 0600 or less permissive - /etc/sma/snmp/snmpd.confDISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

GEN005320 - The snmpd.conf file must have mode 0600 or less permissive - /etc/sma/snmp/snmpd.confDISA STIG Solaris 10 SPARC v2r4Unix

ACCESS CONTROL

GEN005320 - The snmpd.conf file must have mode 0600 or less permissive - /usr/sfw/lib/sma_snmp/snmpd.confDISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

GEN006140 - The smb.conf file must have mode 0644 or less permissive.DISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

GEN006200 - The smbpasswd file must have mode 0600 or less permissive.DISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

GEN006320 - The /etc/news/passwd.nntp file (or equivalent) must have mode 0600 or less permissive.DISA STIG Solaris 10 X86 v2r4Unix

ACCESS CONTROL

MD4X-00-001200 - MongoDB must enforce discretionary access control policies, as defined by the data owner, over defined subjects and objects.DISA STIG MongoDB Enterprise Advanced 4.x v1r4 DBMongoDB

ACCESS CONTROL

O112-C2-003000 - The DBMS must enforce Discretionary Access Control (DAC) policy allowing users to specify and control sharing by named individuals, groups of individuals, or by both, limiting propagation of access rights and includes or excludes access to the granularity of a single user.DISA STIG Oracle 11.2g v2r5 DatabaseOracleDB

ACCESS CONTROL

O112-C2-006700 - A DBMS utilizing Discretionary Access Control (DAC) must enforce a policy that includes or excludes access to the granularity of a single user.DISA STIG Oracle 11.2g v2r5 DatabaseOracleDB

ACCESS CONTROL

O121-C2-006600 - Databases utilizing Discretionary Access Control (DAC) must enforce a policy that limits propagation of access rights.DISA STIG Oracle 12c v3r1 DatabaseOracleDB

ACCESS CONTROL

O121-C2-006700 - A DBMS utilizing Discretionary Access Control (DAC) must enforce a policy that includes or excludes access to the granularity of a single user.DISA STIG Oracle 12c v3r1 DatabaseOracleDB

ACCESS CONTROL

OL07-00-020023 - The Oracle Linux operating system must elevate the SELinux context when an administrator calls the sudo command.DISA Oracle Linux 7 STIG v2r14Unix

ACCESS CONTROL

OL07-00-020220 - The Oracle Linux operating system must enable the SELinux targeted policy.DISA Oracle Linux 7 STIG v2r14Unix

ACCESS CONTROL, SYSTEM AND INFORMATION INTEGRITY

RHEL-07-020021 - The Red Hat Enterprise Linux operating system must confine SELinux users to roles that conform to least privilege.DISA Red Hat Enterprise Linux 7 STIG v3r15Unix

ACCESS CONTROL

RHEL-07-020023 - The Red Hat Enterprise Linux operating system must elevate the SELinux context when an administrator calls the sudo command.DISA Red Hat Enterprise Linux 7 STIG v3r15Unix

ACCESS CONTROL

RHEL-07-020320 - The Red Hat Enterprise Linux operating system must be configured so that all files and directories have a valid owner.DISA Red Hat Enterprise Linux 7 STIG v3r15Unix

ACCESS CONTROL

RHEL-09-213030 - RHEL 9 must enable kernel parameters to enforce discretionary access control on hardlinks.DISA Red Hat Enterprise Linux 9 STIG v2r2Unix

ACCESS CONTROL

RHEL-09-213035 - RHEL 9 must enable kernel parameters to enforce discretionary access control on symlinks.DISA Red Hat Enterprise Linux 9 STIG v2r2Unix

ACCESS CONTROL

SLES-12-010690 - All SUSE operating system files and directories must have a valid owner.DISA SLES 12 STIG v2r13Unix

ACCESS CONTROL

SLES-12-010700 - All SUSE operating system files and directories must have a valid group owner.DISA SLES 12 STIG v2r13Unix

ACCESS CONTROL

SQL6-D0-002800 - SQL Server must enforce discretionary access control policies, as defined by the data owner, over defined subjects and objects.DISA STIG SQL Server 2016 Database Audit v3r1MS_SQLDB

ACCESS CONTROL

UBTU-16-010700 - All files and directories must have a valid owner.DISA STIG Ubuntu 16.04 LTS v2r3Unix

ACCESS CONTROL

UBTU-16-010710 - All files and directories must have a valid group owner.DISA STIG Ubuntu 16.04 LTS v2r3Unix

ACCESS CONTROL

WN12-GE-000006 - Permissions for system drive root directory (usually C:\) must conform to minimum requirements.DISA Windows Server 2012 and 2012 R2 DC STIG v3r7Windows

ACCESS CONTROL

WN12-GE-000007 - Permissions for program file directories must conform to minimum requirementsDISA Windows Server 2012 and 2012 R2 DC STIG v3r7Windows

ACCESS CONTROL

WN16-00-000160 - Permissions for the system drive root directory (usually C:\) must conform to minimum requirements.DISA Windows Server 2016 STIG v2r9Windows

ACCESS CONTROL

WN16-00-000170 - Permissions for program file directories must conform to minimum requirements.DISA Windows Server 2016 STIG v2r9Windows

ACCESS CONTROL

WN16-00-000180 - Permissions for the Windows installation directory must conform to minimum requirements.DISA Windows Server 2016 STIG v2r9Windows

ACCESS CONTROL

WN19-00-000140 - Windows Server 2019 permissions for the system drive root directory (usually C:\) must conform to minimum requirements.DISA Windows Server 2019 STIG v3r2Windows

ACCESS CONTROL

WN19-00-000150 - Windows Server 2019 permissions for program file directories must conform to minimum requirements.DISA Windows Server 2019 STIG v3r2Windows

ACCESS CONTROL

WN19-00-000160 - Windows Server 2019 permissions for the Windows installation directory must conform to minimum requirements.DISA Windows Server 2019 STIG v3r2Windows

ACCESS CONTROL