Item Search

NameAudit NamePluginCategory
1.1 Ensure packages are obtained from authorized repositoriesCIS PostgreSQL 10 OS v1.0.0Unix

CONFIGURATION MANAGEMENT

1.1 Ensure packages are obtained from authorized repositoriesCIS PostgreSQL 9.6 OS v1.0.0Unix

CONFIGURATION MANAGEMENT

1.4.4 Ensure UEFI requires authentication for single-user and maintenance modes - superusersCIS Amazon Linux 2 STIG v1.0.0 L3Unix

CONFIGURATION MANAGEMENT

2.5 Autologout - 'autologout.console.timeout <= 5'TNS NetApp Data ONTAP 7GNetApp

ACCESS CONTROL

3.2.6 CDE - remote GUI login disabled - remote GUI login disabledCIS IBM AIX 7.1 L2 v2.1.0Unix

CONFIGURATION MANAGEMENT

4.7.1.6 Ensure CDE remote GUI login is disabledCIS IBM AIX 7 v1.0.0 L1Unix

CONFIGURATION MANAGEMENT

5 - Granular Log LevelsTNS Best Practice JBoss 7 LinuxUnix

AUDIT AND ACCOUNTABILITY

ESXi : config-firewall-access - 'DNS Client allowed'VMWare vSphere 5.X Hardening GuideVMware

SYSTEM AND COMMUNICATIONS PROTECTION

ESXi : config-firewall-access - 'FTP Client blocked'VMWare vSphere 5.X Hardening GuideVMware

SYSTEM AND COMMUNICATIONS PROTECTION

ESXi : config-firewall-access - 'SSH Server allowed'VMWare vSphere 5.X Hardening GuideVMware

SYSTEM AND COMMUNICATIONS PROTECTION

ESXi : config-firewall-access - 'vCenter Update Manager blocked'VMWare vSphere 5.X Hardening GuideVMware

SYSTEM AND COMMUNICATIONS PROTECTION

ESXi : config-firewall-access - 'vMotion allowed'VMWare vSphere 5.X Hardening GuideVMware

SYSTEM AND COMMUNICATIONS PROTECTION

ESXi : config-snmp - 'snmp.receiver.X.community'VMWare vSphere 5.X Hardening GuideVMware

IDENTIFICATION AND AUTHENTICATION

ESXi : limit-cim-accessVMWare vSphere 5.X Hardening GuideVMware
ESXi : verify-acceptance-level-acceptedVMWare vSphere 5.X Hardening GuideVMware
GEN005200 - X displays must not be exported to the world.DISA STIG Solaris 10 X86 v2r4Unix

CONFIGURATION MANAGEMENT

GEN005200 - X displays must not be exported to the world.DISA STIG AIX 5.3 v1r2Unix

ACCESS CONTROL

GEN005200 - X displays must not be exported to the world.DISA STIG for Red Hat Enterprise Linux 5 v1r18 AuditUnix

ACCESS CONTROL

GEN005200 - X displays must not be exported to the world.DISA STIG AIX 6.1 v1r14Unix

ACCESS CONTROL

OL07-00-010491 - Oracle Linux operating systems version 7.2 or newer using Unified Extensible Firmware Interface (UEFI) must require authentication upon booting into single-user and maintenance modes - UEFI must require authentication upon booting into single-user and maintenance modes.DISA Oracle Linux 7 STIG v3r1Unix

ACCESS CONTROL

OL08-00-010141 - OL 8 operating systems booted with United Extensible Firmware Interface (UEFI) must have a unique name for the grub superusers account when booting into single-user mode and maintenance.DISA Oracle Linux 8 STIG v2r2Unix

ACCESS CONTROL

RHEL-07-010019 - The Red Hat Enterprise Linux operating system must ensure cryptographic verification of vendor software packages.DISA Red Hat Enterprise Linux 7 STIG v3r15Unix

CONFIGURATION MANAGEMENT

RHEL-07-010491 - Red Hat Enterprise Linux operating systems version 7.2 or newer using Unified Extensible Firmware Interface (UEFI) must require authentication upon booting into single-user and maintenance modes.DISA Red Hat Enterprise Linux 7 STIG v3r15Unix

ACCESS CONTROL

RHEL-08-010140 - RHEL 8 operating systems booted with United Extensible Firmware Interface (UEFI) must require authentication upon booting into single-user mode and maintenance.DISA Red Hat Enterprise Linux 8 STIG v2r1Unix

ACCESS CONTROL

SSO : check-SSO-Password-expirationVMWare vSphere 5.X Hardening GuideVMware
SSO : check-SSO-Password-policyVMWare vSphere 5.X Hardening GuideVMware
SSO : restrict-sso-db-userVMWare vSphere 5.X Hardening GuideVMware
vCenter : disable-mobVMWare vSphere 5.X Hardening GuideVMware
vCenter : restrict-guest-controlVMWare vSphere 5.X Hardening GuideVMware
vCenter : restrict-vcs-db-userVMWare vSphere 5.X Hardening GuideVMware
vCenter : secure-vcenter-osVMWare vSphere 5.X Hardening GuideVMware
vCenter : use-supported-systemVMWare vSphere 5.X Hardening GuideVMware
VCSA : change-default-passwordVMWare vSphere 5.X Hardening GuideVMware
VM : control-resource-usageVMWare vSphere 5.X Hardening GuideVMware
VM : disable-unnecessary-functionsVMWare vSphere 5.X Hardening GuideVMware
vNetwork : document-vlans-vdsVMWare vSphere 5.X Hardening GuideVMware
vNetwork : enable-portfastVMWare vSphere 5.X Hardening GuideVMware
vNetwork : isolate-storage-network-vlanVMWare vSphere 5.X Hardening GuideVMware
vNetwork : isolate-vmotion-network-vlanVMWare vSphere 5.X Hardening GuideVMware
vNetwork : limit-administrator-scopeVMWare vSphere 5.X Hardening GuideVMware
vNetwork : no-native-vlan-1VMWare vSphere 5.X Hardening GuideVMware
vNetwork : reject-mac-change-dvportgroupVMWare vSphere 5.X Hardening GuideVMware
vNetwork : reject-mac-changes - 'PortGroup'VMWare vSphere 5.X Hardening GuideVMware

SYSTEM AND COMMUNICATIONS PROTECTION

vNetwork : restrict-mgmt-network-access-gatewayVMWare vSphere 5.X Hardening GuideVMware
vNetwork : set-non-negotiateVMWare vSphere 5.X Hardening GuideVMware
vNetwork : verify-vlan-trunkVMWare vSphere 5.X Hardening GuideVMware
VUM : secure-vum-osVMWare vSphere 5.X Hardening GuideVMware
WebClient : verify-ssl-certificatesVMWare vSphere 5.X Hardening GuideVMware
WN12-00-000200 - Windows PowerShell must be updated to a version that supports script block logging on Windows 2012/2012 R2.DISA Windows Server 2012 and 2012 R2 DC STIG v3r7Windows

CONFIGURATION MANAGEMENT

WN12-00-000200 - Windows PowerShell must be updated to a version that supports script block logging on Windows 2012/2012 R2.DISA Windows Server 2012 and 2012 R2 MS STIG v3r7Windows

CONFIGURATION MANAGEMENT