Item Search

NameAudit NamePluginCategory
DG0010-ORACLE11 - Database executable and configuration files should be monitored for unauthorized modifications.DISA STIG Oracle 11 Installation v9r1 WindowsWindows
DG0010-ORACLE11 - Database executable and configuration files should be monitored for unauthorized modifications.DISA STIG Oracle 11 Installation v9r1 LinuxUnix
DG0011-ORACLE11 - Configuration management procedures should be defined and implemented for database software modifications.DISA STIG Oracle 11 Installation v9r1 LinuxUnix
DG0011-ORACLE11 - Configuration management procedures should be defined and implemented for database software modifications.DISA STIG Oracle 11 Installation v9r1 WindowsWindows
DG0016-ORACLE11 - Unused database components, database application software, and database objects should be removed from the DBMS system.DISA STIG Oracle 11 Installation v9r1 WindowsWindows
DG0016-ORACLE11 - Unused database components, database application software, and database objects should be removed from the DBMS system.DISA STIG Oracle 11 Installation v9r1 LinuxUnix
DG0054-ORACLE11 - The audit logs should be periodically monitored to discover DBMS access using unauthorized applications.DISA STIG Oracle 11 Installation v9r1 WindowsWindows
DG0054-ORACLE11 - The audit logs should be periodically monitored to discover DBMS access using unauthorized applications.DISA STIG Oracle 11 Installation v9r1 LinuxUnix
DG0088-ORACLE11 - The DBMS should be periodically tested for vulnerability management and IA compliance.DISA STIG Oracle 11 Installation v9r1 WindowsWindows
DG0088-ORACLE11 - The DBMS should be periodically tested for vulnerability management and IA compliance.DISA STIG Oracle 11 Installation v9r1 LinuxUnix
DG0096-ORACLE11 - The DBMS IA policies and procedures should be reviewed annually or more frequently.DISA STIG Oracle 11 Installation v9r1 WindowsWindows
DG0096-ORACLE11 - The DBMS IA policies and procedures should be reviewed annually or more frequently.DISA STIG Oracle 11 Installation v9r1 LinuxUnix
DG0108-ORACLE11 - The DBMS restoration priority should be assigned.DISA STIG Oracle 11 Installation v9r1 WindowsWindows
DG0108-ORACLE11 - The DBMS restoration priority should be assigned.DISA STIG Oracle 11 Installation v9r1 LinuxUnix
DG0153-ORACLE11 - DBA roles assignments should be assigned and authorized by the IAO.DISA STIG Oracle 11 Instance v9r1 DatabaseOracleDB
DG0154-ORACLE11 - The DBMS requires a System Security Plan containing all required information.DISA STIG Oracle 11 Installation v9r1 WindowsWindows
DG0154-ORACLE11 - The DBMS requires a System Security Plan containing all required information.DISA STIG Oracle 11 Installation v9r1 LinuxUnix
DG7002-ORACLE11 - A minimum of two Oracle control files must be defined and configured to be stored on separate, archived disks (physical or virtual) or archived partitions on a RAID device.DISA STIG Oracle 11 Installation v9r1 DatabaseOracleDB
DO0240-ORACLE11 - The Oracle OS_ROLES parameter should be set to FALSE - 'os_roles = false'DISA STIG Oracle 11 Instance v9r1 DatabaseOracleDB
DO0420-ORACLE11 - The XDB Protocol server should be uninstalled if not required and authorized for use - 'All XDB servers are documented'DISA STIG Oracle 11 Instance v9r1 DatabaseOracleDB
DO0420-ORACLE11 - The XDB Protocol server should be uninstalled if not required and authorized for use - 'No XDB dispatchers exist'DISA STIG Oracle 11 Instance v9r1 DatabaseOracleDB
DO0420-ORACLE11 - The XDB Protocol server should be uninstalled if not required and authorized for use - 'No XDB users exist'DISA STIG Oracle 11 Instance v9r1 DatabaseOracleDB
DO3447-ORACLE11 - The Oracle OS_AUTHENT_PREFIX parameter should be changed from the default value of OPS$ - 'os_authent_prefix = OPS$'DISA STIG Oracle 11 Instance v9r1 DatabaseOracleDB
DO3685-ORACLE11 - The Oracle O7_DICTIONARY_ACCESSIBILITY parameter should be set to FALSE - 'O7_dictionary_accessibility = false'DISA STIG Oracle 11 Instance v9r1 DatabaseOracleDB
DTBI367 - Internet Explorer must be configured to make Proxy settings per user.DISA STIG Microsoft Internet Explorer 9 v1r15Windows

ACCESS CONTROL

DTBI697 - Ability for users to enable or disable add-ons must be enforced.DISA STIG Microsoft Internet Explorer 9 v1r15Windows

ACCESS CONTROL

WA000-WWA030 A22 - The httpd.conf MaxSpareServers directive must be set properly.DISA STIG Apache Server 2.2 Unix v1r11 MiddlewareUnix
WA120 A22 - Administrative users and groups that have access rights to the web server must be documented.DISA STIG Apache Server 2.2 Unix v1r11Unix
WA120 A22 - Administrative users and groups that have access rights to the web server must be documented.DISA STIG Apache Server 2.2 Unix v1r11 MiddlewareUnix
WA120 IIS6 - Administrative users and groups with access privilege to the web server must be documented.DISA STIG IIS 6.0 Server v6r16Windows
WA120 W22 - Administrative users and groups that have access rights to the web server must be documented.DISA STIG Apache Server 2.2 Windows v1r13Windows
WA140 A22 - Web server content and configuration files must be part of a routine backup program.DISA STIG Apache Server 2.2 Unix v1r11Unix
WA140 A22 - Web server content and configuration files must be part of a routine backup program.DISA STIG Apache Server 2.2 Unix v1r11 MiddlewareUnix
WA140 IIS6 - Web server content and configuration files must be part of a routine backup program.DISA STIG IIS 6.0 Server v6r16Windows
WA140 W22 - Web server content and configuration files must be part of a routine backup program.DISA STIG Apache Server 2.2 Windows v1r13Windows
WG170 A22 - Each readable web document directory must contain either a default, home, index, or equivalent file.DISA STIG Apache Site 2.2 Unix v1r11 MiddlewareUnix
WG170 A22 - Each readable web document directory must contain either a default, home, index, or equivalent file.DISA STIG Apache Site 2.2 Unix v1r11Unix
WG170 W22 - Each readable web document directory must contain either a default, home, index, or equivalent file.DISA STIG Apache Site 2.2 Windows v1r13Windows
WG265 A22 - The required DoD banner page must be displayed to authenticated users accessing a DoD private website.DISA STIG Apache Site 2.2 Unix v1r11 MiddlewareUnix

ACCESS CONTROL

WG265 IIS6 - The required DoD banner page must be displayed to authenticated users accessing a DoD private website.DISA STIG IIS 6.0 Site Checklist v6r16Windows

ACCESS CONTROL

WG420 A22 - Backup interactive scripts on the production web server are prohibited.DISA STIG Apache Server 2.2 Unix v1r11 MiddlewareUnix
WG420 A22 - Backup interactive scripts on the production web server are prohibited.DISA STIG Apache Server 2.2 Unix v1r11Unix
WG490 W22 - Java software on production web servers must be limited to class files and the JAVA virtual machine. - 'Alias - *.jpp'DISA STIG Apache Site 2.2 Windows v1r13Windows

CONFIGURATION MANAGEMENT

WG490 W22 - Java software on production web servers must be limited to class files and the JAVA virtual machine. - 'DocumentRoot - *.jpp'DISA STIG Apache Site 2.2 Windows v1r13Windows

CONFIGURATION MANAGEMENT

WG490 W22 - Java software on production web servers must be limited to class files and the JAVA virtual machine. - 'ScriptAlias_Match - *.jpp'DISA STIG Apache Site 2.2 Windows v1r13Windows

CONFIGURATION MANAGEMENT

WG520 A22 - Web server and/or operating system information must be protected.DISA STIG Apache Server 2.2 Unix v1r11 MiddlewareUnix
WG520 W22 - Web server and/or operating system information must be protected.DISA STIG Apache Server 2.2 Windows v1r13Windows

CONFIGURATION MANAGEMENT

WG610 A22 - Web sites must utilize ports, protocols, and services according to PPSM guidelines.DISA STIG Apache Site 2.2 Unix v1r11 MiddlewareUnix
WG610 A22 - Web sites must utilize ports, protocols, and services according to PPSM guidelines.DISA STIG Apache Site 2.2 Unix v1r11Unix
WG610 W22 - Web sites must utilize ports, protocols, and services according to PPSM guidelines.DISA STIG Apache Site 2.2 Windows v1r13Windows