Item Search

NameAudit NamePluginCategory
1.3 Ensure Installation of Community PackagesCIS PostgreSQL 10 OS v1.0.0Unix

SYSTEM AND INFORMATION INTEGRITY

1.3 Ensure Installation of Community PackagesCIS PostgreSQL 9.6 OS v1.0.0Unix

SYSTEM AND INFORMATION INTEGRITY

1.5 Enable OS X update installsCIS Apple OSX 10.11 El Capitan L1 v1.1.0Unix

SYSTEM AND INFORMATION INTEGRITY

1.7.11 Ensure Xwayland is configuredCIS Ubuntu Linux 22.04 LTS v3.0.0 L2 ServerUnix

CONFIGURATION MANAGEMENT

1.7.11 Ensure Xwayland is configuredCIS Debian Linux 13 v1.0.0 L2 ServerUnix

CONFIGURATION MANAGEMENT

1.7.11 Ensure Xwayland is configuredCIS Debian Linux 13 v1.0.0 L2 WorkstationUnix

CONFIGURATION MANAGEMENT

1.8.6 Ensure Xwayland is configuredCIS Red Hat Enterprise Linux 10 v1.0.1 L2 ServerUnix

CONFIGURATION MANAGEMENT

1.8.6 Ensure Xwayland is configuredCIS AlmaLinux OS 10 v1.0.0 L2 WorkstationUnix

CONFIGURATION MANAGEMENT

1.8.7 Ensure Xwayland is configuredCIS Oracle Linux 8 v4.0.0 L2 WorkstationUnix

CONFIGURATION MANAGEMENT

1.8.7 Ensure Xwayland is configuredCIS Red Hat Enterprise Linux 8 v4.0.0 L2 ServerUnix

CONFIGURATION MANAGEMENT

1.8.7 Ensure Xwayland is configuredCIS SUSE Linux Enterprise 16 v1.0.0 L2 ServerUnix

CONFIGURATION MANAGEMENT

1.8.7 Ensure Xwayland is configuredCIS SUSE Linux Enterprise 16 v1.0.0 L2 WorkstationUnix

CONFIGURATION MANAGEMENT

1.8.7 Ensure Xwayland is configuredCIS Red Hat Enterprise Linux 8 v4.0.0 L2 WorkstationUnix

CONFIGURATION MANAGEMENT

1.140 SOL-11.1-060060CIS Solaris 11 X86 STIG v1.0.0 CAT IIUnix

SYSTEM AND COMMUNICATIONS PROTECTION

1.142 SOL-11.1-060060CIS Solaris 11 SPARC STIG v1.0.0 CAT IIUnix

SYSTEM AND COMMUNICATIONS PROTECTION

2.1.8 Set 'no service pad'CIS Cisco IOS 12 L1 v4.0.0Cisco

CONFIGURATION MANAGEMENT

2.1.8 Set 'no service pad'CIS Cisco IOS 15 L1 v4.1.1Cisco

ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION

2.11 Require Client-Side Certificates (X.509)CIS MariaDB 10.11 v1.0.0 L2 MariaDB RDBMS on Linux MySQLDBMySQLDB

ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION

7.1 Wireless technology on OS XCIS Apple OSX 10.9 L2 v1.3.0Unix
7.10 Repairing permissions is no longer neededCIS Apple macOS 10.12 L1 v1.2.0Unix

SYSTEM AND COMMUNICATIONS PROTECTION

8.2 Disable JAR from Opening Unsafe File TypesCIS Mozilla Firefox 38 ESR Linux L1 v1.0.0Unix

CONFIGURATION MANAGEMENT

8.2 Disable JAR from Opening Unsafe File TypesCIS Mozilla Firefox 38 ESR Windows L1 v1.0.0Windows

CONFIGURATION MANAGEMENT

18 - Kerberos 5 and Krb5pNetApp Security Hardening Guide for ONTAP 9 v1.7.0Netapp_API
89.7 (L1) Ensure 'Create Global Objects' is set to 'Administrators, LOCAL SERVICE, NETWORK SERVICE, SERVICE'CIS Microsoft Intune for Windows 10 v4.0.0 L1Windows

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY

BIND-9X-002460 - The BIND 9.x server implementation must have fetches-per-server enabled.DISA BIND 9.x STIG v3r2Unix

CONFIGURATION MANAGEMENT

DTAVSEL-109 - The McAfee VirusScan Enterprise for Linux 1.9.x/2.0.x Web UI must be disabled.McAfee Virus Scan Enterprise for Linux 1.9x/2.0x Managed Client v1r5Unix

CONFIGURATION MANAGEMENT

Fortigate - Inactivity timeout - 'console' <= 5TNS Fortigate FortiOS Best Practices v2.0.0FortiGate

ACCESS CONTROL

Fortigate - Inactivity timeout - 'global' <= 5TNS Fortigate FortiOS Best Practices v2.0.0FortiGate

ACCESS CONTROL

GEN005160 - Any X Windows host must write .Xauthority files.DISA STIG Solaris 10 SPARC v2r4Unix

CONFIGURATION MANAGEMENT

GEN005160 - Any X Windows host must write .Xauthority files.DISA STIG Solaris 10 X86 v2r4Unix

CONFIGURATION MANAGEMENT

JBOS-AS-000310 - JBoss must utilize encryption when using LDAP for authentication.DISA JBoss Enterprise Application Platform 6.3 STIG v2r6Unix

IDENTIFICATION AND AUTHENTICATION

MD7X-00-012500 MongoDB must be configured in accordance with the security configuration settings based on DOD security configuration and implementation guidance, including STIGs, NSA configuration guides, CTOs, DTMs, and IAVMs.DISA MongoDB Enterprise Advanced 7.x STIG v1r1Unix

CONFIGURATION MANAGEMENT

MD8X-00-012200 - MongoDB must be configured in accordance with the security configuration settings based on DOD security configuration and implementation guidance, including STIGs, NSA configuration guides, CTOs, DTMs, and IAVMs.DISA MongoDB Enterprise Advanced 8.x STIG v1r1 UnixUnix

CONFIGURATION MANAGEMENT

RHEL-06-000525 - Auditing must be enabled at boot by setting a kernel parameter - BIOSDISA Red Hat Enterprise Linux 6 STIG v2r2Unix

AUDIT AND ACCOUNTABILITY

RHEL-06-000525 - Auditing must be enabled at boot by setting a kernel parameter - UEFIDISA Red Hat Enterprise Linux 6 STIG v2r2Unix

AUDIT AND ACCOUNTABILITY

SLEM-05-611100 - SLEM 5 must be configured to create or update passwords with a maximum lifetime of 60 days.DISA SUSE Linux Enterprise Micro SLEM 5 STIG v1r4Unix

IDENTIFICATION AND AUTHENTICATION

SLEM-05-654015 - SLEM 5 must generate audit records for all uses of the "chage" command.DISA SUSE Linux Enterprise Micro SLEM 5 STIG v1r4Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

SLEM-05-654020 - SLEM 5 must generate audit records for all uses of the "chcon" command.DISA SUSE Linux Enterprise Micro SLEM 5 STIG v1r4Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

SLEM-05-654025 - SLEM 5 must generate audit records for all uses of the "chfn" command.DISA SUSE Linux Enterprise Micro SLEM 5 STIG v1r4Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

SLEM-05-654030 - SLEM 5 must generate audit records for all uses of the "chmod" command.DISA SUSE Linux Enterprise Micro SLEM 5 STIG v1r4Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

SLEM-05-654035 - SLEM 5 must generate audit records for a uses of the "chsh" command.DISA SUSE Linux Enterprise Micro SLEM 5 STIG v1r4Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

SLEM-05-654045 - SLEM 5 must generate audit records for all uses of the "gpasswd" command.DISA SUSE Linux Enterprise Micro SLEM 5 STIG v1r4Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

SLEM-05-654070 - SLEM 5 must generate audit records for all uses of the "pam_timestamp_check" command.DISA SUSE Linux Enterprise Micro SLEM 5 STIG v1r4Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

SLEM-05-654075 - SLEM 5 must generate audit records for all uses of the "passwd" command.DISA SUSE Linux Enterprise Micro SLEM 5 STIG v1r4Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

SLEM-05-654080 - SLEM 5 must generate audit records for all uses of the "rm" command.DISA SUSE Linux Enterprise Micro SLEM 5 STIG v1r4Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

SLEM-05-654090 - SLEM 5 must generate audit records for all uses of the "setfacl" command.DISA SUSE Linux Enterprise Micro SLEM 5 STIG v1r4Unix

AUDIT AND ACCOUNTABILITY

SLEM-05-654105 - SLEM 5 must generate audit records for all uses of the "su" command.DISA SUSE Linux Enterprise Micro SLEM 5 STIG v1r4Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

SLEM-05-654110 - SLEM 5 must generate audit records for all uses of the "sudo" command.DISA SUSE Linux Enterprise Micro SLEM 5 STIG v1r4Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

SLEM-05-654115 - SLEM 5 must generate audit records for all uses of the "sudoedit" command.DISA SUSE Linux Enterprise Micro SLEM 5 STIG v1r4Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE

SLEM-05-654125 - SLEM 5 must generate audit records for all uses of the "usermod" command.DISA SUSE Linux Enterprise Micro SLEM 5 STIG v1r4Unix

AUDIT AND ACCOUNTABILITY, MAINTENANCE