Item Search

NameAudit NamePluginCategory
1.1.1 Create Separate Partition for /tmpCIS Red Hat Enterprise Linux 5 L1 v2.2.1Unix

CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION

1.1.14 Add nodev Option to /dev/shm PartitionCIS Red Hat Enterprise Linux 5 L1 v2.2.1Unix

CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION

1.5.1 Set User/Group Owner on /etc/grub.confCIS Red Hat Enterprise Linux 5 L1 v2.2.1Unix

ACCESS CONTROL

1.5.5 Disable Interactive BootCIS Red Hat Enterprise Linux 5 L1 v2.2.1Unix

CONFIGURATION MANAGEMENT

1.6.5 Disable Prelink - PRELINKING=noCIS Red Hat Enterprise Linux 5 L1 v2.2.1Unix

CONFIGURATION MANAGEMENT

2.1.9 Remove talkCIS Red Hat Enterprise Linux 5 L1 v2.2.1Unix

CONFIGURATION MANAGEMENT

2.1.12 Disable chargen-dgramCIS Red Hat Enterprise Linux 5 L1 v2.2.1Unix

CONFIGURATION MANAGEMENT

2.1.15 Disable daytime-streamCIS Red Hat Enterprise Linux 5 L1 v2.2.1Unix

CONFIGURATION MANAGEMENT

2.1.17 Disable echo-streamCIS Red Hat Enterprise Linux 5 L1 v2.2.1Unix

CONFIGURATION MANAGEMENT

3.1.3 Check Responses TTL Field - check-response-ttl=yesCIS Red Hat Enterprise Linux 5 L1 v2.2.1Unix

CONFIGURATION MANAGEMENT

3.1.6 Restrict Published Information (if publishing is required) - publish-workstation=noCIS Red Hat Enterprise Linux 5 L1 v2.2.1Unix

CONFIGURATION MANAGEMENT

32 bitDISA Red Hat Enterprise Linux 7 STIG v3r15Unix
automountDISA Red Hat Enterprise Linux 7 STIG v3r15Unix
automount-openDISA Red Hat Enterprise Linux 7 STIG v3r15Unix
Check for 7.3 and olderDISA Red Hat Enterprise Linux 7 STIG v3r15Unix
Check for dnsDISA Red Hat Enterprise Linux 7 STIG v3r15Unix
Check for libreswanDISA Red Hat Enterprise Linux 7 STIG v3r15Unix
Check for tftpDISA Red Hat Enterprise Linux 7 STIG v3r15Unix
Check that /sys/firmware/efi does not existDISA Red Hat Enterprise Linux 7 STIG v3r15Unix
EPERM 64 bitDISA Red Hat Enterprise Linux 7 STIG v3r15Unix
etcDISA Red Hat Enterprise Linux 7 STIG v3r15Unix
grub menuentryDISA Red Hat Enterprise Linux 7 STIG v3r15Unix
grub set rootDISA Red Hat Enterprise Linux 7 STIG v3r15Unix
McAfeeTP PackageDISA Red Hat Enterprise Linux 7 STIG v3r15Unix
moduleDISA Red Hat Enterprise Linux 7 STIG v3r15Unix
RHEL-06-000281 - The system package management tool must verify contents of all files associated with the audit package.DISA Red Hat Enterprise Linux 6 STIG v2r2Unix

AUDIT AND ACCOUNTABILITY

RHEL-06-000282 - There must be no world-writable files on the system.DISA Red Hat Enterprise Linux 6 STIG v2r2Unix

CONFIGURATION MANAGEMENT

RHEL-06-000285 - The system must have a host-based intrusion detection tool installed - MFEhiplsmDISA Red Hat Enterprise Linux 6 STIG v2r2Unix

CONFIGURATION MANAGEMENT

RHEL-06-000288 - The sendmail package must be removed.DISA Red Hat Enterprise Linux 6 STIG v2r2Unix

CONFIGURATION MANAGEMENT

RHEL-06-000289 - The netconsole service must be disabled unless required - 'CHKCONFIG'.DISA Red Hat Enterprise Linux 6 STIG v2r2Unix

CONFIGURATION MANAGEMENT

RHEL-06-000291 - The xorg-x11-server-common (X Windows) package must not be installed, unless required.DISA Red Hat Enterprise Linux 6 STIG v2r2Unix

CONFIGURATION MANAGEMENT

RHEL-06-000292 - The DHCP client must be disabled if not needed.DISA Red Hat Enterprise Linux 6 STIG v2r2Unix

CONFIGURATION MANAGEMENT

RHEL-06-000299 - The system must require passwords to contain no more than three consecutive repeating characters - password-auth.DISA Red Hat Enterprise Linux 6 STIG v2r2Unix

CONFIGURATION MANAGEMENT

RHEL-06-000319 - Must limit users to 10 simultaneous system logins in accordance with requirements. 'limits.d'DISA Red Hat Enterprise Linux 6 STIG v2r2Unix
RHEL-06-000336 - The sticky bit must be set on all public directories.DISA Red Hat Enterprise Linux 6 STIG v2r2Unix

CONFIGURATION MANAGEMENT

RHEL-06-000338 - The TFTP daemon must operate in secure mode which provides access only to a single directory on the host file system.DISA Red Hat Enterprise Linux 6 STIG v2r2Unix

CONFIGURATION MANAGEMENT

RHEL-06-000384 - Audit log files must be owned by root.DISA Red Hat Enterprise Linux 6 STIG v2r2Unix

AUDIT AND ACCOUNTABILITY

RHEL-06-000511 - The audit system must take appropriate action when there are disk errors on the audit storage volume.DISA Red Hat Enterprise Linux 6 STIG v2r2Unix

AUDIT AND ACCOUNTABILITY

RHEL-06-000519 - The system package management tool must verify contents of all files associated with packages.DISA Red Hat Enterprise Linux 6 STIG v2r2Unix

CONFIGURATION MANAGEMENT

RHEL-06-000526 - Automated file system mounting tools must not be enabled unless needed - CHKCONFIGDISA Red Hat Enterprise Linux 6 STIG v2r2Unix

CONFIGURATION MANAGEMENT

RHEL-06-000529 - The sudo command must require authentication - /etc/sudoers NOPASSWDDISA Red Hat Enterprise Linux 6 STIG v2r2Unix

IDENTIFICATION AND AUTHENTICATION

RHEL-07-020060 - The Red Hat Enterprise Linux operating system must prevent the installation of software, patches, service packs, device drivers, or operating system components of local packages without verification they have been digitally signed using a certificate that is issued by a Certificate Authority (CA) that is recognized and approved by the organization.DISA Red Hat Enterprise Linux 7 STIG v3r15Unix

CONFIGURATION MANAGEMENT

rootpwDISA Red Hat Enterprise Linux 7 STIG v3r15Unix
setgid 32 bitDISA Red Hat Enterprise Linux 7 STIG v3r15Unix
setuid 32 bitDISA Red Hat Enterprise Linux 7 STIG v3r15Unix
silentDISA Red Hat Enterprise Linux 7 STIG v3r15Unix
sysadm_uDISA Red Hat Enterprise Linux 7 STIG v3r15Unix
targetDISA Red Hat Enterprise Linux 7 STIG v3r15Unix
tftp checkDISA Red Hat Enterprise Linux 6 STIG v2r2Unix
unlabeled_tDISA Red Hat Enterprise Linux 7 STIG v3r15Unix