Item Search

NameAudit NamePluginCategory
AIX7-00-003090 - If automated file system mounting tool is not required on AIX, it must be disabled.DISA STIG AIX 7.x v2r9Unix

IDENTIFICATION AND AUTHENTICATION

AOSX-14-002069 - The macOS system must authenticate peripherals before establishing a connection.DISA STIG Apple Mac OSX 10.14 v2r6Unix

IDENTIFICATION AND AUTHENTICATION

AOSX-15-002069 - The macOS system must authenticate peripherals before establishing a connection.DISA STIG Apple Mac OSX 10.15 v1r10Unix

IDENTIFICATION AND AUTHENTICATION

AOSX-15-002069 - The macOS system must authenticate peripherals before establishing a connection.DISA STIG Apple Mac OSX 10.15 v1r7Unix

CONFIGURATION MANAGEMENT

AOSX-15-002069 - The macOS system must authenticate peripherals before establishing a connection.DISA STIG Apple Mac OSX 10.15 v1r3Unix

CONFIGURATION MANAGEMENT

AOSX-15-002069 - The macOS system must authenticate peripherals before establishing a connection.DISA STIG Apple Mac OSX 10.15 v1r5Unix

CONFIGURATION MANAGEMENT

Big Sur - Require Administrator Password to Modify System-Wide PreferencesNIST macOS Big Sur v1.4.0 - 800-53r4 ModerateUnix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

Big Sur - Require Administrator Password to Modify System-Wide PreferencesNIST macOS Big Sur v1.4.0 - All ProfilesUnix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

Big Sur - Require Administrator Password to Modify System-Wide PreferencesNIST macOS Big Sur v1.4.0 - 800-53r5 HighUnix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

Catalina - Require Administrator Password to Modify System-Wide PreferencesNIST macOS Catalina v1.5.0 - CNSSI 1253Unix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

Catalina - Require Administrator Password to Modify System-Wide PreferencesNIST macOS Catalina v1.5.0 - 800-53r5 ModerateUnix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

Catalina - Require Administrator Password to Modify System-Wide PreferencesNIST macOS Catalina v1.5.0 - 800-53r4 HighUnix

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

CISC-L2-000080 - The Cisco switch must authenticate all endpoint devices before establishing any connection - aaa groupDISA STIG Cisco IOS XE Switch L2S v1r1Cisco

IDENTIFICATION AND AUTHENTICATION

CISC-L2-000080 - The Cisco switch must authenticate all endpoint devices before establishing any connection - dot1x system-auth-controlDISA STIG Cisco IOS XE Switch L2S v2r1Cisco

IDENTIFICATION AND AUTHENTICATION

CISC-L2-000080 - The Cisco switch must authenticate all endpoint devices before establishing any connection - dot1x system-auth-controlDISA STIG Cisco IOS XE Switch L2S v1r1Cisco

IDENTIFICATION AND AUTHENTICATION

CISC-L2-000080 - The Cisco switch must authenticate all endpoint devices before establishing any connection - interface dot1xDISA STIG Cisco IOS Switch L2S v2r1Cisco

IDENTIFICATION AND AUTHENTICATION

CISC-L2-000080 - The Cisco switch must authenticate all endpoint devices before establishing any connection - radius serverDISA STIG Cisco IOS XE Switch L2S v1r1Cisco

IDENTIFICATION AND AUTHENTICATION

CISC-L2-000080 - The Cisco switch must authenticate all endpoint devices before establishing any connection - radius serverDISA STIG Cisco IOS XE Switch L2S v2r1Cisco

IDENTIFICATION AND AUTHENTICATION

CISC-L2-000080 - The Cisco switch must authenticate all endpoint devices before establishing any connection.DISA STIG Cisco NX-OS Switch L2S v2r3Cisco

IDENTIFICATION AND AUTHENTICATION

CISC-RT-000660 - The Cisco PE router providing MPLS Layer 2 Virtual Private Network (L2VPN) services must be configured to authenticate targeted Label Distribution Protocol (LDP) sessions used to exchange virtual circuit (VC) information using a FIPS-approved message authentication code algorithm.DISA STIG Cisco IOS XE Router RTR v2r9Cisco

IDENTIFICATION AND AUTHENTICATION

CISC-RT-000660 - The Cisco PE router providing MPLS Layer 2 Virtual Private Network (L2VPN) services must be configured to authenticate targeted Label Distribution Protocol (LDP) sessions used to exchange virtual circuit (VC) information using a FIPS-approved message authentication code algorithm.DISA STIG Cisco IOS-XR Router RTR v2r1Cisco

IDENTIFICATION AND AUTHENTICATION

CISC-RT-000660 - The Cisco PE router providing MPLS Layer 2 Virtual Private Network (L2VPN) services must be configured to authenticate targeted Label Distribution Protocol (LDP) sessions used to exchange virtual circuit (VC) information using a FIPS-approved message authentication code algorithm.DISA STIG Cisco IOS XE Router RTR v2r1Cisco

IDENTIFICATION AND AUTHENTICATION

CISC-RT-000660 - The Cisco PE router providing MPLS Layer 2 Virtual Private Network (L2VPN) services must be configured to authenticate targeted Label Distribution Protocol (LDP) sessions used to exchange virtual circuit (VC) information using a FIPS-approved message authentication code algorithm.DISA STIG Cisco IOS XE Router RTR v2r2Cisco

IDENTIFICATION AND AUTHENTICATION

CISC-RT-000660 - The Cisco PE switch providing MPLS Layer 2 Virtual Private Network (L2VPN) services must be configured to authenticate targeted Label Distribution Protocol (LDP) sessions used to exchange virtual circuit (VC) information using a FIPS-approved message authentication code algorithm.DISA STIG Cisco IOS Switch RTR v2r5Cisco

IDENTIFICATION AND AUTHENTICATION

CISC-RT-000660 - The Cisco PE switch providing MPLS Layer 2 Virtual Private Network (L2VPN) services must be configured to authenticate targeted Label Distribution Protocol (LDP) sessions used to exchange virtual circuit (VC) information using a FIPS-approved message authentication code algorithm.DISA STIG Cisco IOS XE Switch RTR v2r5Cisco

IDENTIFICATION AND AUTHENTICATION

CISC-RT-000910 - The Cisco Multicast Source Discovery Protocol (MSDP) router must be configured to authenticate all received MSDP packets.DISA STIG Cisco IOS XE Router RTR v2r9Cisco

IDENTIFICATION AND AUTHENTICATION

CISC-RT-000910 - The Cisco Multicast Source Discovery Protocol (MSDP) switch must be configured to authenticate all received MSDP packets.DISA STIG Cisco NX-OS Switch RTR v2r1Cisco

IDENTIFICATION AND AUTHENTICATION

CISC-RT-000910 - The Cisco Multicast Source Discovery Protocol (MSDP) switch must be configured to authenticate all received MSDP packets.DISA STIG Cisco IOS XE Switch RTR v1r1Cisco

IDENTIFICATION AND AUTHENTICATION

JUNI-RT-000640 - The Juniper PE router providing MPLS Layer 2 Virtual Private Network (L2VPN) services must be configured to authenticate targeted Label Distribution Protocol (LDP) sessions used to exchange virtual circuit (VC) information using a FIPS-approved message authentication code algorithm - key-chainDISA STIG Juniper Router RTR v2r4Juniper

IDENTIFICATION AND AUTHENTICATION

JUNI-RT-000640 - The Juniper PE router providing MPLS Layer 2 Virtual Private Network (L2VPN) services must be configured to authenticate targeted Label Distribution Protocol (LDP) sessions used to exchange virtual circuit (VC) information using a FIPS-approved message authentication code algorithm - key-chainDISA STIG Juniper Router RTR v2r2Juniper

IDENTIFICATION AND AUTHENTICATION

JUNI-RT-000900 - The Juniper Multicast Source Discovery Protocol (MSDP) router must be configured to authenticate all received MSDP packets.DISA STIG Juniper Router RTR v2r4Juniper

IDENTIFICATION AND AUTHENTICATION

JUNI-RT-000900 - The Juniper Multicast Source Discovery Protocol (MSDP) router must be configured to authenticate all received MSDP packets.DISA STIG Juniper Router RTR v2r2Juniper

ACCESS CONTROL

RHEL-07-020101 - The Red Hat Enterprise Linux operating system must be configured so that the Datagram Congestion Control Protocol (DCCP) kernel module is disabled unless required.DISA Red Hat Enterprise Linux 7 STIG v3r14Unix

IDENTIFICATION AND AUTHENTICATION

SLES-12-010580 - The SUSE operating system must disable the USB mass storage kernel module.DISA SLES 12 STIG v2r1Unix

MEDIA PROTECTION

SLES-12-010580 - The SUSE operating system must disable the USB mass storage kernel module.DISA SLES 12 STIG v2r13Unix

IDENTIFICATION AND AUTHENTICATION

SLES-15-010240 - The SUSE operating system must disable the file system automounter unless required.DISA SLES 15 STIG v1r1Unix
SLES-15-010480 - The SUSE operating system must disable the USB mass storage kernel module.DISA SLES 15 STIG v1r1Unix

MEDIA PROTECTION

SLES-15-010480 - The SUSE operating system must disable the USB mass storage kernel module.DISA SLES 15 STIG v1r3Unix

MEDIA PROTECTION

UBTU-16-010580 - Automatic mounting of Universal Serial Bus (USB) mass storage driver must be disabled - lsmodDISA STIG Ubuntu 16.04 LTS v2r1Unix

CONFIGURATION MANAGEMENT

UBTU-16-010580 - Automatic mounting of Universal Serial Bus (USB) mass storage driver must be disabled - lsmodDISA STIG Ubuntu 16.04 LTS v2r3Unix

IDENTIFICATION AND AUTHENTICATION

UBTU-16-010580 - Automatic mounting of Universal Serial Bus (USB) mass storage driver must be disabled - modprobeDISA STIG Ubuntu 16.04 LTS v2r3Unix

IDENTIFICATION AND AUTHENTICATION

UBTU-18-010509 - The Ubuntu operating system must disable automatic mounting of Universal Serial Bus (USB) mass storage driver.DISA STIG Ubuntu 18.04 LTS v2r14Unix

IDENTIFICATION AND AUTHENTICATION

WBSP-AS-001110 - WebSphere Application Server must authenticate all network-connected endpoint devices before establishing any connectionDISA IBM WebSphere Traditional 9 Windows STIG v1r1Windows

IDENTIFICATION AND AUTHENTICATION

WBSP-AS-001110 - WebSphere Application Server must authenticate all network-connected endpoint devices before establishing any connectionDISA IBM WebSphere Traditional 9 STIG v1r1Unix

IDENTIFICATION AND AUTHENTICATION

WDNS-IA-000003 - The secondary Windows DNS name servers must cryptographically authenticate zone transfers from primary name servers.DISA Microsoft Windows 2012 Server DNS STIG v2r6Windows

IDENTIFICATION AND AUTHENTICATION

WDNS-IA-000003 - The secondary Windows DNS name servers must cryptographically authenticate zone transfers from primary name servers.DISA Microsoft Windows 2012 Server DNS STIG v2r1Windows

SYSTEM AND COMMUNICATIONS PROTECTION

WDNS-IA-000003 - The secondary Windows DNS name servers must cryptographically authenticate zone transfers from primary name servers.DISA Microsoft Windows 2012 Server DNS STIG v2r4Windows

SYSTEM AND COMMUNICATIONS PROTECTION

WDNS-IA-000004 - The Windows DNS primary server must only send zone transfers to a specific list of secondary name servers.DISA Microsoft Windows 2012 Server DNS STIG v2r1Windows

SYSTEM AND COMMUNICATIONS PROTECTION

WDNS-IA-000004 - The Windows DNS primary server must only send zone transfers to a specific list of secondary name servers.DISA Microsoft Windows 2012 Server DNS STIG v2r6Windows

IDENTIFICATION AND AUTHENTICATION

WDNS-IA-000005 - The Windows 2012 DNS Server must provide its identity with returned DNS information by enabling DNSSEC and TSIG/SIG(0).DISA Microsoft Windows 2012 Server DNS STIG v2r1Windows

SYSTEM AND COMMUNICATIONS PROTECTION