Item Search

NameAudit NamePluginCategory
1.1.2 Ensure /tmp is configured - or equivalent.CIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

CONFIGURATION MANAGEMENT

1.1.24 Ensure nosuid option is set for NFS - NFS.CIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

CONFIGURATION MANAGEMENT

1.3.3 Ensure AIDE is configured to verify ACLs - installedCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

CONFIGURATION MANAGEMENT

1.5.6 Ensure the Ctrl-Alt-Delete key sequence is disabled - inactiveCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

CONFIGURATION MANAGEMENT

2.2.2 Ensure X11 Server components are not installed - systemctlCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

CONFIGURATION MANAGEMENT

5.3.4 Ensure permissions on SSH private host key files are configuredCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

CONFIGURATION MANAGEMENT

5.3.33 Ensure SSH uses privilege separationCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

CONFIGURATION MANAGEMENT

6.2.24 Ensure local interactive users' dot files are group-owned by the users group or root.CIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIGUnix

CONFIGURATION MANAGEMENT

Big Sur - Disable Password HintsNIST macOS Big Sur v1.4.0 - 800-53r4 ModerateUnix

CONFIGURATION MANAGEMENT, IDENTIFICATION AND AUTHENTICATION

Big Sur - Disable Password HintsNIST macOS Big Sur v1.4.0 - 800-53r5 HighUnix

CONFIGURATION MANAGEMENT, IDENTIFICATION AND AUTHENTICATION

Big Sur - Disable Password HintsNIST macOS Big Sur v1.4.0 - CNSSI 1253Unix

CONFIGURATION MANAGEMENT, IDENTIFICATION AND AUTHENTICATION

Big Sur - Enable Firmware PasswordNIST macOS Big Sur v1.4.0 - 800-53r5 ModerateUnix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

Big Sur - Enable Firmware PasswordNIST macOS Big Sur v1.4.0 - CNSSI 1253Unix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

Big Sur - Secure User's Home FoldersNIST macOS Big Sur v1.4.0 - 800-53r5 HighUnix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

Big Sur - Secure User's Home FoldersNIST macOS Big Sur v1.4.0 - CNSSI 1253Unix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

Catalina - Disable Password HintsNIST macOS Catalina v1.5.0 - 800-53r5 HighUnix

CONFIGURATION MANAGEMENT, IDENTIFICATION AND AUTHENTICATION

Catalina - Disable Password HintsNIST macOS Catalina v1.5.0 - All ProfilesUnix

CONFIGURATION MANAGEMENT, IDENTIFICATION AND AUTHENTICATION

Catalina - Enable Firmware PasswordNIST macOS Catalina v1.5.0 - 800-171Unix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

Catalina - Enable Firmware PasswordNIST macOS Catalina v1.5.0 - 800-53r4 ModerateUnix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

Catalina - Secure User's Home FoldersNIST macOS Catalina v1.5.0 - 800-53r4 ModerateUnix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

Catalina - Secure User's Home FoldersNIST macOS Catalina v1.5.0 - CNSSI 1253Unix

ACCESS CONTROL, CONFIGURATION MANAGEMENT

GEN001170 - All files and directories must have a valid group owner.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN001780 - Global initialization files must contain the mesg -n or mesg n commands. - '/etc/.login'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN001840 - All global initialization files' executable search paths must contain only absolute paths - '/etc/security/environ'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN001845 - Global initialization files' library search paths must contain only absolute paths - '/etc/environment'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN001845 - Global initialization files' library search paths must contain only absolute paths - '/etc/profile'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN001845 - Global initialization files' library search paths must contain only absolute paths - '/etc/security/.login'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN001850 - Global initialization files' lists of preloaded libraries must contain only absolute paths - '/etc/bashrc'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN001850 - Global initialization files' lists of preloaded libraries must contain only absolute paths - '/etc/environment'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN001850 - Global initialization files' lists of preloaded libraries must contain only absolute paths - '/etc/profile'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN001850 - Global initialization files' lists of preloaded libraries must contain only absolute paths - '/etc/security/.login'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN001901 - Local initialization files' library search paths must contain only absolute paths - 'LD_LIBRARY_PATH'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN002020 - All .rhosts, .shosts, or host.equiv files must only contain trusted host-user pairs.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN002040 - There must be no .rhosts, .shosts, hosts.equiv, or shosts.equiv files on the system - '.shosts'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN002040 - There must be no .rhosts, .shosts, hosts.equiv, or shosts.equiv files on the system - 'hosts.equiv'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN002480 - Public directories must be the only world-writable directories and world-writable files must be located only in public dirsDISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN003900 - The hosts.lpd file (or equivalent) must not contain a '+' character.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN004540 - The SMTP service HELP command must not be enabled.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN004620 - The Sendmail server must have the debug feature disabled.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN004800 - Unencrypted FTP must not be used on the system - 'telnet is disabled'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN005080 - The TFTP daemon must operate in 'secure mode' which provides access only to a single directory on the host file system.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN005201 - X11 forwarding for SSH must be disabled.DISA STIG Solaris 10 X86 v2r4Unix

CONFIGURATION MANAGEMENT

GEN005440 - The system must not be used as a syslog server (loghost) for systems external to the enclave.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN005538 - The SSH daemon must not allow rhosts RSA authentication.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN006225 - Samba must be configured to use an authentication mechanism other than share.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN006235 - Samba must be configured to not allow guest access to shares.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN006580 - The system must use an access control program.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN006620 - The system's access control program must be configured to grant or deny system access to specific hosts - '/etc/hosts.deny'DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

GEN008480 - The system must have USB Mass Storage disabled unless needed.DISA STIG AIX 5.3 v1r2Unix

CONFIGURATION MANAGEMENT

Monterey - Configure Gatekeeper to Disallow End User OverrideNIST macOS Monterey v1.0.0 - 800-171Unix

CONFIGURATION MANAGEMENT, SYSTEM AND INFORMATION INTEGRITY