Item Search

NameAudit NamePluginCategory
ALMA-09-048530 - AlmaLinux OS 9 must audit all uses of the chmod, fchmod, and fchmodat system calls.DISA CloudLinux AlmaLinux OS 9 STIG v1r1Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

ALMA-09-048640 - AlmaLinux OS 9 must audit all uses of the chown, fchown, fchownat, and lchown system calls.DISA CloudLinux AlmaLinux OS 9 STIG v1r1Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

ALMA-09-048860 - AlmaLinux OS 9 must generate audit records for any use of the "crontab" command.DISA CloudLinux AlmaLinux OS 9 STIG v1r1Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

ALMA-09-049190 - AlmaLinux OS 9 must generate audit records for any use of the "gpasswd" command.DISA CloudLinux AlmaLinux OS 9 STIG v1r1Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

ALMA-09-049740 - AlmaLinux OS 9 must generate audit records for any use of the "postqueue" command.DISA CloudLinux AlmaLinux OS 9 STIG v1r1Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

ALMA-09-050620 - AlmaLinux OS 9 must generate audit records for any use of the "ssh-keysign" command.DISA CloudLinux AlmaLinux OS 9 STIG v1r1Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

ALMA-09-050840 - AlmaLinux OS 9 must generate audit records for any use of the "pam_timestamp_check" command.DISA CloudLinux AlmaLinux OS 9 STIG v1r1Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

ALMA-09-051280 - AlmaLinux OS 9 must generate audit records for any use of the "usermod" command.DISA CloudLinux AlmaLinux OS 9 STIG v1r1Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

ALMA-09-051390 - AlmaLinux OS 9 must audit all uses of the setxattr, fsetxattr, lsetxattr, removexattr, fremovexattr, and lremovexattr system calls.DISA CloudLinux AlmaLinux OS 9 STIG v1r1Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

APPL-11-001001 - The macOS system must generate audit records for all account creations, modifications, disabling, and termination events; privileged activities or other system-level access; all kernel module load, unload, and restart actions; all program initiations; and organizationally defined events for all non-local maintenance and diagnostic sessions.DISA STIG Apple macOS 11 v1r5Unix

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, MAINTENANCE

APPL-11-001001 - The macOS system must generate audit records for all account creations, modifications, disabling, and termination events; privileged activities or other system-level access; all kernel module load, unload, and restart actions; all program initiations; and organizationally defined events for all non-local maintenance and diagnostic sessions.DISA STIG Apple macOS 11 v1r8Unix

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, MAINTENANCE

APPL-12-001001 - The macOS system must generate audit records for all account creations, modifications, disabling, and termination events; privileged activities or other system-level access; all kernel module load, unload, and restart actions; all program initiations; and organizationally defined events for all non-local maintenance and diagnostic sessions.DISA STIG Apple macOS 12 v1r9Unix

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, MAINTENANCE

APPL-13-001001 - The macOS system must generate audit records for all account creations, modifications, disabling, and termination events; privileged activities or other system-level access; all kernel module load, unload, and restart actions; all program initiations; and organizationally defined events for all nonlocal maintenance and diagnostic sessions.DISA STIG Apple macOS 13 v1r5Unix

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, MAINTENANCE

APPL-15-001020 - The macOS system must be configured to audit all deletions of object attributes.DISA Apple macOS 15 (Sequoia) STIG v1r2Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

APPL-15-001021 - The macOS system must be configured to audit all changes of object attributes.DISA Apple macOS 15 (Sequoia) STIG v1r2Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

APPL-15-001022 - The macOS system must be configured to audit all failed read actions on the system.DISA Apple macOS 15 (Sequoia) STIG v1r2Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

APPL-15-001023 - The macOS system must be configured to audit all failed write actions on the system.DISA Apple macOS 15 (Sequoia) STIG v1r2Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

OL08-00-030340 - OL 8 must generate audit records for any use of the 'pam_timestamp_check' command.DISA Oracle Linux 8 STIG v2r2Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

OL08-00-030350 - OL 8 must generate audit records for any use of the 'newgrp' command.DISA Oracle Linux 8 STIG v2r2Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

OL08-00-030361 - OL 8 must generate audit records for any use of the 'rename', 'unlink', 'rmdir', 'renameat', and 'unlinkat' system calls.DISA Oracle Linux 8 STIG v2r2Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

OL08-00-030390 - OL 8 must generate audit records for any use of the delete_module syscall.DISA Oracle Linux 8 STIG v2r2Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

OL08-00-030400 - OL 8 must generate audit records for any use of the 'crontab' command.DISA Oracle Linux 8 STIG v2r2Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

OL08-00-030410 - OL 8 must generate audit records for any use of the 'chsh' command.DISA Oracle Linux 8 STIG v2r2Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

OL08-00-030550 - OL 8 must generate audit records for any use of the 'sudo' command.DISA Oracle Linux 8 STIG v2r2Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

RHEL-07-030680 - The Red Hat Enterprise Linux operating system must audit all uses of the su command.DISA Red Hat Enterprise Linux 7 STIG v3r15Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

RHEL-07-030690 - The Red Hat Enterprise Linux operating system must audit all uses of the sudo command.DISA Red Hat Enterprise Linux 7 STIG v3r15Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

RHEL-07-030700 - The Red Hat Enterprise Linux operating system must audit all uses of the sudoers file and all files in the /etc/sudoers.d/ directory.DISA Red Hat Enterprise Linux 7 STIG v3r15Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

RHEL-07-030710 - The Red Hat Enterprise Linux operating system must audit all uses of the newgrp command.DISA Red Hat Enterprise Linux 7 STIG v3r15Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

RHEL-07-030720 - The Red Hat Enterprise Linux operating system must audit all uses of the chsh command.DISA Red Hat Enterprise Linux 7 STIG v3r15Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

RHEL-09-654065 - RHEL 9 must audit all uses of the rename, unlink, rmdir, renameat, and unlinkat system calls.DISA Red Hat Enterprise Linux 9 STIG v2r3Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

RHEL-09-654075 - RHEL 9 must audit all uses of the delete_module system call.DISA Red Hat Enterprise Linux 9 STIG v2r3Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

RHEL-09-654095 - RHEL 9 must audit all uses of the crontab command.DISA Red Hat Enterprise Linux 9 STIG v2r3Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

RHEL-09-654110 - RHEL 9 must audit all uses of the newgrp command.DISA Red Hat Enterprise Linux 9 STIG v2r3Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

RHEL-09-654150 - RHEL 9 must audit all uses of the sudo command.DISA Red Hat Enterprise Linux 9 STIG v2r3Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

RHEL-09-654155 - RHEL 9 must audit all uses of the sudoedit command.DISA Red Hat Enterprise Linux 9 STIG v2r3Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

RHEL-09-654160 - RHEL 9 must audit all uses of the unix_chkpwd command.DISA Red Hat Enterprise Linux 9 STIG v2r3Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

RHEL-09-654170 - RHEL 9 must audit all uses of the userhelper command.DISA Red Hat Enterprise Linux 9 STIG v2r3Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

UBTU-16-020360 - Successful/unsuccessful uses of the su command must generate an audit record.DISA STIG Ubuntu 16.04 LTS v2r3Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

UBTU-16-020370 - Successful/unsuccessful uses of the chfn command must generate an audit record.DISA STIG Ubuntu 16.04 LTS v2r3Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

UBTU-16-020460 - The audit system must be configured to audit any usage of the setxattr system call - user b64DISA STIG Ubuntu 16.04 LTS v2r3Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

UBTU-16-020480 - The audit system must be configured to audit any usage of the fsetxattr system call - user b32DISA STIG Ubuntu 16.04 LTS v2r3Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

UBTU-16-020490 - The audit system must be configured to audit any usage of the removexattr system call - root b64DISA STIG Ubuntu 16.04 LTS v2r3Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

UBTU-16-020500 - The audit system must be configured to audit any usage of the lremovexattr system call - root b32DISA STIG Ubuntu 16.04 LTS v2r3Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

UBTU-16-020510 - The audit system must be configured to audit any usage of the fremovexattr system call - user b32DISA STIG Ubuntu 16.04 LTS v2r3Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

UBTU-16-020530 - Successful/unsuccessful uses of the fchown command must generate an audit record - b32DISA STIG Ubuntu 16.04 LTS v2r3Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

UBTU-16-020580 - Successful/unsuccessful uses of the fchmodat command must generate an audit record - b32DISA STIG Ubuntu 16.04 LTS v2r3Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

UBTU-16-020600 - Successful/unsuccessful uses of the truncate command must generate an audit record - EACCES b64DISA STIG Ubuntu 16.04 LTS v2r3Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

UBTU-16-020610 - Successful/unsuccessful uses of the ftruncate command must generate an audit record - EPERM b64DISA STIG Ubuntu 16.04 LTS v2r3Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

UBTU-16-020680 - Successful/unsuccessful uses of the newgrp command must generate an audit record.DISA STIG Ubuntu 16.04 LTS v2r3Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

UBTU-16-020690 - Successful/unsuccessful uses of the chcon command must generate an audit record.DISA STIG Ubuntu 16.04 LTS v2r3Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE