Item Search

NameAudit NamePluginCategory
1.6.8 Ensure system-wide crypto policy is FIPSCIS Red Hat Enterprise Linux 8 STIG v2.0.0 STIGUnix

ACCESS CONTROL

2.022 - Disallow AutoPlay/Autorun from Autorun.infDISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

2.023 - Standard user accounts must only have Read permissions to the Winlogon registry key.DISA Windows Vista STIG v6r41Windows

ACCESS CONTROL

3.030 - Anonymous access to the registry must be restricted.DISA Windows Vista STIG v6r41Windows

ACCESS CONTROL

3.059 - The system is configured to autoplay removable media.DISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

3.061 - Unencrypted remote access is permitted to system services.DISA Windows Vista STIG v6r41Windows

ACCESS CONTROL

4.005 - Unapproved Users have access to Debug programs.DISA Windows Vista STIG v6r41Windows

ACCESS CONTROL

4.009 - Unauthorized users are granted right to Act as part of the operating system.DISA Windows Vista STIG v6r41Windows

ACCESS CONTROL

4.027 - Only administrators responsible for the system must have Administrator rights on the system.DISA Windows Vista STIG v6r41Windows

ACCESS CONTROL

CASA-FW-000010 - The Cisco ASA must be configured to filter outbound traffic, allowing only authorized ports and services - ACL AppliedDISA STIG Cisco ASA FW v2r1Cisco

ACCESS CONTROL

CASA-ND-000690 - The Cisco ASA must be configured to terminate all network connections associated with a device management session at the end of the session, or the session must be terminated after five minutes of inactivity except to fulfill documented and validated mission requirements.DISA STIG Cisco ASA NDM v2r4Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

CASA-ND-001420 - The Cisco ASA must be running an operating system release that is currently supported by Cisco Systems.DISA STIG Cisco ASA NDM v2r4Cisco

SYSTEM AND SERVICES ACQUISITION

CASA-VN-000240 - The Cisco ASA must be configured to use FIPS-validated SHA-2 or higher for Internet Key Exchange (IKE) Phase 2.DISA STIG Cisco ASA VPN v2r2Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

DTAVSEL-001 - The anti-virus signature file age must not exceed 7 days - avvclean.datMcAfee Virus Scan Enterprise for Linux 1.9x/2.0x Managed Client v1r5Unix

SYSTEM AND INFORMATION INTEGRITY

DTAVSEL-001 - The anti-virus signature file age must not exceed 7 days - avvclean.datMcAfee Virus Scan Enterprise for Linux 1.9x/2.0x Local Client v1r6Unix

SYSTEM AND INFORMATION INTEGRITY

DTAVSEL-001 - The anti-virus signature file age must not exceed 7 days - avvnames.datMcAfee Virus Scan Enterprise for Linux 1.9x/2.0x Local Client v1r6Unix

SYSTEM AND INFORMATION INTEGRITY

DTAVSEL-001 - The anti-virus signature file age must not exceed 7 days - avvnames.datMcAfee Virus Scan Enterprise for Linux 1.9x/2.0x Managed Client v1r5Unix

SYSTEM AND INFORMATION INTEGRITY

DTAVSEL-001 - The anti-virus signature file age must not exceed 7 days - avvscan.datMcAfee Virus Scan Enterprise for Linux 1.9x/2.0x Managed Client v1r5Unix

SYSTEM AND INFORMATION INTEGRITY

DTAVSEL-001 - The anti-virus signature file age must not exceed 7 days - avvscan.datMcAfee Virus Scan Enterprise for Linux 1.9x/2.0x Local Client v1r6Unix

SYSTEM AND INFORMATION INTEGRITY

DTBI999-IE11 - The version of Internet Explorer running on the system must be a supported version.DISA STIG IE 11 v2r7Windows

SYSTEM AND INFORMATION INTEGRITY

DTO-OneNote999 - The version of OneNote running on the system must be a supported version.DISA STIG Microsoft OneNote 2016 v2r1Windows

SYSTEM AND INFORMATION INTEGRITY

DTO-Outlook999 - The version of Outlook running on the system must be a supported version.DISA STIG Microsoft Outlook 2016 v2r4Windows

SYSTEM AND INFORMATION INTEGRITY

DTO-PP999 - The version of PowerPoint running on the system must be a supported version.DISA STIG Microsoft PowerPoint 2016 v2r1Windows

SYSTEM AND INFORMATION INTEGRITY

DTO-Pub999 - The version of Publisher running on the system must be a supported version.DISA STIG Microsoft Publisher 2016 v2r1Windows

SYSTEM AND INFORMATION INTEGRITY

DTO-Vis999 - The version of Visio running on the system must be a supported version.DISA STIG Microsoft Visio 2016 v2r1Windows

SYSTEM AND INFORMATION INTEGRITY

DTO-Word999 - The version of Word running on the system must be a supported version.DISA STIG Microsoft Word 2016 v2r1Windows

SYSTEM AND INFORMATION INTEGRITY

DTOO425 - Outlook - The version of Outlook running on the system must be a supported version.DISA Microsoft Outlook 2010 STIG v1r14Windows

SYSTEM AND INFORMATION INTEGRITY

DTOO999-Lync13 - The version of Lync running on the system must be a supported version.DISA STIG Microsoft Lync 2013 v1r5Windows

SYSTEM AND INFORMATION INTEGRITY

DTOO999-PP13 - The version of PowerPoint running on the system must be a supported version.DISA STIG Microsoft PowerPoint 2013 v1r7Windows

SYSTEM AND INFORMATION INTEGRITY

DTOO999-Word13 - The version of Microsoft Word running on the system must be a supported version.DISA STIG Microsoft Word 2013 v1r7Windows

SYSTEM AND INFORMATION INTEGRITY

FNFG-FW-000110 - The FortiGate firewall must employ filters that prevent or limit the effects of all types of commonly known denial-of-service (DoS) attacks, including flooding, packet sweeps, and unauthorized port scanning.DISA Fortigate Firewall STIG v1r4FortiGate

SYSTEM AND COMMUNICATIONS PROTECTION

GEN000560 - The system must not have accounts configured with blank or null passwords.DISA AIX 5.3 STIG v1r2Unix

IDENTIFICATION AND AUTHENTICATION

GEN008600 - The system must be configured to only boot from the system boot device.DISA AIX 5.3 STIG v1r2Unix

SYSTEM AND INFORMATION INTEGRITY

GEN008640 - The system must not use removable media as the boot loader - 'both'DISA AIX 5.3 STIG v1r2Unix

SYSTEM AND INFORMATION INTEGRITY

GEN008640 - The system must not use removable media as the boot loader - 'normal'DISA AIX 5.3 STIG v1r2Unix

SYSTEM AND INFORMATION INTEGRITY

GEN008640 - The system must not use removable media as the boot loader - 'prevboot'DISA AIX 5.3 STIG v1r2Unix

SYSTEM AND INFORMATION INTEGRITY

GEN008640 - The system must not use removable media as the boot loader - 'service'DISA AIX 5.3 STIG v1r2Unix

SYSTEM AND INFORMATION INTEGRITY

JUEX-NM-000230 - The Juniper EX switch must be configured to prohibit the use of all unnecessary and/or nonsecure functions, ports, protocols, and/or services.DISA Juniper EX Series Network Device Management v2r4Juniper

CONFIGURATION MANAGEMENT

JUEX-NM-000340 - The Juniper EX switch must be configured to use FIPS 140-2/140-3-validated algorithms for authentication to a cryptographic module.DISA Juniper EX Series Network Device Management v2r4Juniper

IDENTIFICATION AND AUTHENTICATION

JUEX-NM-000370 - The Juniper device must be configured to only allow authorized administrators to view or change the device configuration, system files, and other files stored either in the device or on removable media (such as a flash drive).DISA Juniper EX Series Network Device Management v2r4Juniper

SYSTEM AND COMMUNICATIONS PROTECTION

O19C-00-009900 - The Oracle Listener must be configured to require administration authentication.DISA Oracle Database 19c STIG v1r5 WindowsWindows

CONFIGURATION MANAGEMENT

O19C-00-011800 - Database administrator (DBA) OS accounts must be granted only those host system privileges necessary for the administration of the Oracle Database.DISA Oracle Database 19c STIG v1r5 WindowsWindows

CONFIGURATION MANAGEMENT

O19C-00-011900 - Oracle Database default accounts must be assigned custom passwords.DISA Oracle Database 19c STIG v1r5 OracleDBOracleDB

CONFIGURATION MANAGEMENT

O19C-00-018600 - Oracle Database software must be evaluated and patched against newly found vulnerabilities.DISA Oracle Database 19c STIG v1r5 OracleDBOracleDB

SYSTEM AND INFORMATION INTEGRITY

UBTU-22-611060 - Ubuntu 22.04 LTS must not allow accounts configured with blank or null passwords.DISA Canonical Ubuntu 22.04 LTS STIG v2r8Unix

CONFIGURATION MANAGEMENT

UBTU-22-611065 - Ubuntu 22.04 LTS must not have accounts configured with blank or null passwords.DISA Canonical Ubuntu 22.04 LTS STIG v2r8Unix

CONFIGURATION MANAGEMENT

VCENTER-000099 - The version of vCenter running on the server must be a supported version.DISA STIG VMWare ESXi vCenter 5 STIG v2r1VMware

SYSTEM AND INFORMATION INTEGRITY

WINGE-000100 - EMET v5.5 or later must be installed on the system.DISA Windows Vista STIG v6r41Windows

CONFIGURATION MANAGEMENT

ZEBR-11-999999 - All Zebra Android 11 installations must be removed.AirWatch - DISA Zebra Android 11 COBO STIG v1r4MDM

CONFIGURATION MANAGEMENT

ZEBR-11-999999 - All Zebra Android 11 installations must be removed.MobileIron - DISA Zebra Android 11 COBO STIG v1r4MDM

CONFIGURATION MANAGEMENT