Item Search

NameAudit NamePluginCategory
--info-zoneDISA Red Hat Enterprise Linux 9 STIG v2r2Unix
/usr/sbin/aide --checkDISA Red Hat Enterprise Linux 9 STIG v2r2Unix
Check /etc/fstab for noexecDISA Red Hat Enterprise Linux 9 STIG v2r2Unix
conf files.DISA Red Hat Enterprise Linux 8 STIG v2r1Unix
creat b32 EPERMDISA Red Hat Enterprise Linux 8 STIG v2r1Unix
daemonDISA Red Hat Enterprise Linux 8 STIG v2r1Unix
fchownat b32DISA Red Hat Enterprise Linux 8 STIG v2r1Unix
fremovexattr b64 auid>=1000DISA Red Hat Enterprise Linux 8 STIG v2r1Unix
fsetxattr b32 auid>=1000DISA Red Hat Enterprise Linux 8 STIG v2r1Unix
ftruncate b32 EACCESDISA Red Hat Enterprise Linux 8 STIG v2r1Unix
ftruncate b64 EPERMDISA Red Hat Enterprise Linux 8 STIG v2r1Unix
lchown b64DISA Red Hat Enterprise Linux 8 STIG v2r1Unix
lremovexattr b32 auid>=1000DISA Red Hat Enterprise Linux 8 STIG v2r1Unix
ls -la /etc/cron.* | grep aideDISA Red Hat Enterprise Linux 8 STIG v2r1Unix
lsetxattr b64 auid>=1000DISA Red Hat Enterprise Linux 8 STIG v2r1Unix
maxpollDISA Red Hat Enterprise Linux 8 STIG v2r1Unix
permissiveDISA Red Hat Enterprise Linux 8 STIG v2r1Unix
pwquality.confDISA Red Hat Enterprise Linux 8 STIG v2r1Unix
removexattr b64 auid=0DISA Red Hat Enterprise Linux 8 STIG v2r1Unix
renameat b32 auid>=1000DISA Red Hat Enterprise Linux 8 STIG v2r1Unix
RHEL-08-040070 - The RHEL 8 file system automounter must be disabled unless required.DISA Red Hat Enterprise Linux 8 STIG v2r1Unix

IDENTIFICATION AND AUTHENTICATION

RHEL-08-040122 - RHEL 8 must mount /dev/shm with the noexec option.DISA Red Hat Enterprise Linux 8 STIG v2r1Unix

CONFIGURATION MANAGEMENT

RHEL-08-040123 - RHEL 8 must mount /tmp with the nodev option.DISA Red Hat Enterprise Linux 8 STIG v2r1Unix

CONFIGURATION MANAGEMENT

RHEL-08-040129 - RHEL 8 must mount /var/log/audit with the nodev option.DISA Red Hat Enterprise Linux 8 STIG v2r1Unix

CONFIGURATION MANAGEMENT

RHEL-08-040130 - RHEL 8 must mount /var/log/audit with the nosuid option.DISA Red Hat Enterprise Linux 8 STIG v2r1Unix

CONFIGURATION MANAGEMENT

RHEL-08-040132 - RHEL 8 must mount /var/tmp with the nodev option.DISA Red Hat Enterprise Linux 8 STIG v2r1Unix

CONFIGURATION MANAGEMENT

RHEL-08-040134 - RHEL 8 must mount /var/tmp with the noexec option.DISA Red Hat Enterprise Linux 8 STIG v2r1Unix

CONFIGURATION MANAGEMENT

RHEL-08-040136 - The RHEL 8 fapolicy module must be enabled.DISA Red Hat Enterprise Linux 8 STIG v2r1Unix

CONFIGURATION MANAGEMENT

RHEL-08-040137 - The RHEL 8 fapolicy module must be configured to employ a deny-all, permit-by-exception policy to allow the execution of authorized software programs.DISA Red Hat Enterprise Linux 8 STIG v2r1Unix

CONFIGURATION MANAGEMENT

RHEL-08-040141 - RHEL 8 must enable the USBGuard.DISA Red Hat Enterprise Linux 8 STIG v2r1Unix

IDENTIFICATION AND AUTHENTICATION

RHEL-08-040190 - The Trivial File Transfer Protocol (TFTP) server package must not be installed if not required for RHEL 8 operational support.DISA Red Hat Enterprise Linux 8 STIG v2r1Unix

CONFIGURATION MANAGEMENT

RHEL-08-040210 - RHEL 8 must prevent IPv6 Internet Control Message Protocol (ICMP) redirect messages from being accepted.DISA Red Hat Enterprise Linux 8 STIG v2r1Unix

CONFIGURATION MANAGEMENT

RHEL-08-040250 - RHEL 8 must not forward IPv6 source-routed packets by default.DISA Red Hat Enterprise Linux 8 STIG v2r1Unix

CONFIGURATION MANAGEMENT

RHEL-08-040261 - RHEL 8 must not accept router advertisements on all IPv6 interfaces.DISA Red Hat Enterprise Linux 8 STIG v2r1Unix

CONFIGURATION MANAGEMENT

RHEL-08-040283 - RHEL 8 must restrict exposed kernel pointer addresses access.DISA Red Hat Enterprise Linux 8 STIG v2r1Unix

CONFIGURATION MANAGEMENT

RHEL-08-040284 - RHEL 8 must disable the use of user namespaces.DISA Red Hat Enterprise Linux 8 STIG v2r1Unix

CONFIGURATION MANAGEMENT

RHEL-08-040286 - RHEL 8 must enable hardening for the Berkeley Packet Filter Just-in-time compiler.DISA Red Hat Enterprise Linux 8 STIG v2r1Unix

CONFIGURATION MANAGEMENT

RHEL-08-040340 - RHEL 8 remote X connections for interactive users must be disabled unless to fulfill documented and validated mission requirements.DISA Red Hat Enterprise Linux 8 STIG v2r1Unix

CONFIGURATION MANAGEMENT

RHEL-08-040390 - The tuned package must not be installed unless mission essential on RHEL 8.DISA Red Hat Enterprise Linux 8 STIG v2r1Unix

CONFIGURATION MANAGEMENT

RHEL-08-040400 - RHEL 8 must prevent nonprivileged users from executing privileged functions, including disabling, circumventing, or altering implemented security safeguards/countermeasures.DISA Red Hat Enterprise Linux 8 STIG v2r1Unix

ACCESS CONTROL

rmdir b64 auid>=1000DISA Red Hat Enterprise Linux 8 STIG v2r1Unix
rsyslogdDISA Red Hat Enterprise Linux 8 STIG v2r1Unix
serverDISA Red Hat Enterprise Linux 8 STIG v2r1Unix
sestatusDISA Red Hat Enterprise Linux 8 STIG v2r1Unix
sudoersDISA Red Hat Enterprise Linux 8 STIG v2r1Unix
system-auth password-authDISA Red Hat Enterprise Linux 8 STIG v2r1Unix
truncate b32 EPERMDISA Red Hat Enterprise Linux 8 STIG v2r1Unix
unlink b64 auid>=1000DISA Red Hat Enterprise Linux 8 STIG v2r1Unix
unlinkat b64 auid>=1000DISA Red Hat Enterprise Linux 8 STIG v2r1Unix
update-crypto-policiesDISA Red Hat Enterprise Linux 8 STIG v2r1Unix