Item Search

NameAudit NamePluginCategory
DISA HP-UX 11.31 STIG v1r19DISA STIG HP-UX 11.31 v1r19Unix
DISA Installation STIG Oracle 11g v8r19 - LinuxDISA STIG Oracle 11 Installation v8r19 LinuxUnix
DISA Installation STIG Oracle 11g v8r19 - WindowsDISA STIG Oracle 11 Installation v8r19 WindowsWindows
DISA Instance STIG Oracle 11g v8r19 - LinuxDISA STIG Oracle 11 Instance v8r19 OS UnixUnix
DISA Instance STIG Oracle 11g v8r19 - WindowsDISA STIG Oracle 11 Instance v8r19 OS WindowsWindows
DISA_STIG_Apple_OS_X_10.12_v1r6.audit from DISA Apple OS X 10.12 v1r6 STIGDISA STIG Apple Mac OSX 10.12 v1r6Unix
DISA_STIG_Cisco_IOS_XE_Switch_L2S_v2r1.audit from DISA Cisco IOS XE Switch L2S v2r1 STIGDISA STIG Cisco IOS XE Switch L2S v2r1Cisco
DISA_STIG_Cisco_IOS_XE_Switch_L2S_v2r4.audit from DISA Cisco IOS XE Switch L2S v2r4 STIGDISA STIG Cisco IOS XE Switch L2S v2r4Cisco
DISA_STIG_Cisco_IOS_XE_Switch_RTR_v2r2.audit from DISA Cisco IOS-XE Switch RTR v2r2 STIGDISA STIG Cisco IOS XE Switch RTR v2r2Cisco
DISA_STIG_IE10_V1R16.auditDISA STIG IE 10 V1R16Windows
DISA_STIG_MSSQL_2012_Database_v1r20.audit from DISA Microsoft SQL Server Instance 2012 v1r20 STIGDISA STIG SQL Server 2012 Database Audit v1r20MS_SQLDB
DISA_STIG_MSSQL_2012_Instance-DB_v1r20.audit from DISA Microsoft SQL Server Instance 2012 v1r20 STIGDISA STIG SQL Server 2012 DB Instance Security v1r20MS_SQLDB
Interior routing protocols are not authenticated - 'IS-IS Check'DISA STIG Cisco Infrastructure Router v8r29Cisco
NET-IPV6-034 - IPv6 Egress Outbound Spoofing Filter - 'ipv6 verify unicast source reachable-via rx OUTBOUND_TO_BACKBONE'DISA STIG Cisco Infrastructure Router v8r29Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET-IPV6-066 - 6-to-4 router not filtering invalid source address - 'ipv6 traffic-filter IPV6_EGRESS_ACL in'DISA STIG Cisco Infrastructure Router v8r29Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET-MCAST-001 - PIM enabled on wrong interfaces -'ip multicast-routing'DISA STIG Cisco Infrastructure Router v8r29Cisco

CONFIGURATION MANAGEMENT

NET-MCAST-002 - PIM neighbor filter is not configured - 'ip pim neighbor-filter IP_PIM_NEIGHBORS_ACL'DISA STIG Cisco Infrastructure Router v8r29Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET-MCAST-010 - No Admin-local or Site-local boundary - 'ip multicast boundary'DISA STIG Cisco Infrastructure Router v8r29Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET-VLAN-004 - VLAN 1 is being used as a user VLAN - 'shutdown'.DISA STIG Cisco Infrastructure Router and L3 Switch v8r28Cisco

ACCESS CONTROL

NET0240 - Devices exist with standard default passwordsDISA STIG Cisco Infrastructure Router v8r29Cisco
NET0340 - Network devices must display the DoD-approved logon banner warning.DISA STIG Cisco Infrastructure Router v8r29Cisco

ACCESS CONTROL

NET0400 - Interior routing protocols are not authenticated - 'EIGRP (Interface Check - authentication mode)'DISA STIG Cisco Infrastructure Router v8r29Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET0400 - Interior routing protocols are not authenticated - 'IS-IS (Interface Check - isis authentication mode)'DISA STIG Cisco Infrastructure Router v8r29Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET0400 - Interior routing protocols are not authenticated - 'IS-IS (Key-Chain Check)'DISA STIG Cisco Infrastructure Router v8r29Cisco

IDENTIFICATION AND AUTHENTICATION

NET0400 - Interior routing protocols are not authenticated - 'IS-IS (Router Check - authentication key-chain)'DISA STIG Cisco Infrastructure Router v8r29Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET0400 - Interior routing protocols are not authenticated - 'OSPFv2 (Interface Check)'DISA STIG Cisco Infrastructure Router v8r29Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET0405 - A service or feature that calls home to the vendor must be disabled.DISA STIG Cisco Infrastructure Router v8r29Cisco

ACCESS CONTROL

NET0433 - The device is not authenticated using a AAA server - 'aaa new-model'DISA STIG Cisco Infrastructure Router v8r29Cisco

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, IDENTIFICATION AND AUTHENTICATION

NET0441 - Emergency administration account privilege level is not set.DISA STIG Cisco Infrastructure Router v8r29Cisco

IDENTIFICATION AND AUTHENTICATION

NET0720 - TCP and UDP small server services are not disabled - 'service tcp-small-servers'DISA STIG Cisco Infrastructure Router v8r29Cisco

CONFIGURATION MANAGEMENT

NET0720 - TCP and UDP small server services are not disabled - 'service udp-small-servers'DISA STIG Cisco Infrastructure Router v8r29Cisco

CONFIGURATION MANAGEMENT

NET0722 - The PAD service is enabledDISA STIG Cisco Infrastructure Router v8r29Cisco

CONFIGURATION MANAGEMENT

NET0740 - HTTP server is not disabledDISA STIG Cisco Infrastructure Router v8r29Cisco

CONFIGURATION MANAGEMENT

NET0812 - Two NTP servers are not used to synchronize time - 'First NTP Server'DISA STIG Cisco Infrastructure Router v8r29Cisco

AUDIT AND ACCOUNTABILITY

NET0901 - Netflow traffic is not using loopbackDISA STIG Cisco Infrastructure Router v8r29Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET0966 - Control plane protection is not enabled - 'ip receive acl in use'DISA STIG Cisco Infrastructure Router v8r29Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET0987 - Managed network has access to OOBM gateway router - 'Review IP_RECEIVE_ACL'DISA STIG Cisco Infrastructure Router v8r29Cisco
NET0988 - Traffic from the managed network will leak - 'access-list OOBM_EGRESS_ACL deny'DISA STIG Cisco Infrastructure Router v8r29Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET0989 - Management traffic leaks into the managed network - 'access-list OOBM_INGRESS_ACL deny'DISA STIG Cisco Infrastructure Router v8r29Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET0992 - The management interface does not have an ACL - 'Step 3 (access-list MGMT_EGRESS_ACL deny)'DISA STIG Cisco Infrastructure Router v8r29Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET1008 - Management traffic doesn't get preferred treatmentDISA STIG Cisco Infrastructure Router v8r29Cisco
NET1030 - Running and startup configurations are not synchronizedDISA STIG Cisco Infrastructure Router v8r29Cisco
NET1624 - The console port does not timeout after 10 minutesDISA STIG Cisco Infrastructure Router v8r29Cisco

ACCESS CONTROL

NET1636 - Management connections must require passwords - 'VTY port (login authentication AUTH_LIST)'DISA STIG Cisco Infrastructure Router v8r29Cisco

ACCESS CONTROL

NET1638 - Management connections must be secured by FIPS 140-2 -'ip http secure-server'DISA STIG Cisco Infrastructure Router v8r29Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET1640 - Management connections must be loggedDISA STIG Cisco Infrastructure Router v8r29Cisco

AUDIT AND ACCOUNTABILITY

NET1800 - IPSec VPN is not configured as a tunnel type VPNDISA STIG Cisco Infrastructure Router v8r29Cisco
NET1807 - Management traffic is not restricted - 'access list OOBM_VPN_ACL permit'DISA STIG Cisco Infrastructure Router v8r29Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

NET1807 - Management traffic is not restricted - 'crypto map OOBM_VPN (match address OOBM_VPN_ACL)'DISA STIG Cisco Infrastructure Router v8r29Cisco

SYSTEM AND COMMUNICATIONS PROTECTION

SNMPv3 CONFIG IF STATEMENT With ACLDISA STIG Cisco Infrastructure Router v8r29Cisco