Audits
Settings
Links
Tenable Cloud
Tenable Community & Support
Tenable University
Theme
Light
Dark
Auto
Help
Plugins
Overview
Plugins Pipeline
Newest
Updated
Search
Nessus Families
WAS Families
NNM Families
LCE Families
Tenable OT Security Families
About Plugin Families
Release Notes
Audits
Overview
Newest
Updated
Search Audit Files
Search Items
References
Authorities
Documentation
Download All Audit Files
Indicators
Overview
Search
Indicators of Attack
Indicators of Exposure
CVEs
Overview
Newest
Updated
Search
Attack Path Techniques
Overview
Search
Links
Tenable Cloud
Tenable Community & Support
Tenable University
Settings
Theme
Light
Dark
Auto
Detections
Plugins
Overview
Plugins Pipeline
Release Notes
Newest
Updated
Search
Nessus Families
WAS Families
NNM Families
LCE Families
Tenable OT Security Families
About Plugin Families
Audits
Overview
Newest
Updated
Search Audit Files
Search Items
References
Authorities
Documentation
Download All Audit Files
Indicators
Overview
Search
Indicators of Attack
Indicators of Exposure
Analytics
CVEs
Overview
Newest
Updated
Search
Attack Path Techniques
Overview
Search
Audits
References
CCI
CCI-001436
CCI
CCI|CCI-001436
Title
The organization disables organization-defined networking protocols within the information system deemed to be nonsecure except for explicitly identified components in support of specific operational requirements.
Reference Item Details
Reference:
CCI - DISA Control Correlation Identifier
Category:
2024
Audit Items
View all Reference Audit Items
Name
Plugin
Audit Name
GEN003580 - The system must use initial TCP sequence numbers most resistant to sequence number guessing attacks.
Unix
DISA STIG AIX 5.3 v1r2
GEN003810 - The portmap or rpcbind service must not be running unless needed - 'portmap chkconfig'
Unix
DISA STIG for Red Hat Enterprise Linux 5 v1r18 Audit
GEN003810 - The portmap or rpcbind service must not be running unless needed - 'portmap process'
Unix
DISA STIG for Red Hat Enterprise Linux 5 v1r18 Audit
GEN003810 - The portmap or rpcbind service must not be running unless needed.
Unix
DISA STIG AIX 5.3 v1r2
GEN005260 - X Window System connections not required must be disabled.
Unix
DISA STIG for Oracle Linux 5 v2r1
GEN005260 - X Window System connections not required must be disabled.
Unix
DISA STIG AIX 6.1 v1r14
GEN005260 - X Window System connections not required must be disabled.
Unix
DISA STIG AIX 5.3 v1r2
GEN005260 - X Window System connections that are not required must be disabled.
Unix
DISA STIG for Red Hat Enterprise Linux 5 v1r18 Audit
GEN005280 - The system must not have the UUCP service active.
Unix
DISA STIG for Oracle Linux 5 v2r1
GEN005280 - The system must not have the UUCP service active.
Unix
DISA STIG for Red Hat Enterprise Linux 5 v1r18 Audit
GEN005280 - The system must not have the UUCP service active.
Unix
DISA STIG AIX 6.1 v1r14
GEN005280 - The system must not have the UUCP service active.
Unix
DISA STIG AIX 5.3 v1r2
GEN005500 - The SSH daemon must be configured to only use the SSHv2 protocol.
Unix
DISA STIG AIX 5.3 v1r2
GEN005500 - The SSH daemon must be configured to only use the SSHv2 protocol.
Unix
DISA STIG for Red Hat Enterprise Linux 5 v1r18 Audit
GEN005500 - The SSH daemon must be configured to only use the SSHv2 protocol.
Unix
DISA STIG for Oracle Linux 5 v2r1
GEN005500 - The SSH daemon must be configured to only use the SSHv2 protocol.
Unix
DISA STIG AIX 6.1 v1r14
GEN005501 - The SSH client must be configured to only use the SSHv2 protocol.
Unix
DISA STIG AIX 5.3 v1r2
GEN005501 - The SSH client must be configured to only use the SSHv2 protocol.
Unix
DISA STIG for Red Hat Enterprise Linux 5 v1r18 Audit
GEN005501 - The SSH client must be configured to only use the SSHv2 protocol.
Unix
DISA STIG for Oracle Linux 5 v2r1
GEN005501 - The SSH client must be configured to only use the SSHv2 protocol.
Unix
DISA STIG AIX 6.1 v1r14
GEN006040 - The system must not have any peer-to-peer file-sharing application installed.
Unix
DISA STIG for Oracle Linux 5 v2r1
GEN006040 - The system must not have any peer-to-peer file-sharing application installed.
Unix
DISA STIG for Red Hat Enterprise Linux 5 v1r18 Audit
GEN006040 - The system must not have any peer-to-peer file-sharing application installed.
Unix
DISA STIG AIX 5.3 v1r2
GEN006040 - The system must not have any peer-to-peer file-sharing application installed.
Unix
DISA STIG AIX 6.1 v1r14
GEN006060 - The system must not run Samba unless needed.
Unix
DISA STIG for Oracle Linux 5 v2r1
GEN006060 - The system must not run Samba unless needed.
Unix
DISA STIG AIX 5.3 v1r2
GEN006060 - The system must not run Samba unless needed.
Unix
DISA STIG AIX 6.1 v1r14
GEN006060 - The system must not run the Samba service unless needed.
Unix
DISA STIG for Red Hat Enterprise Linux 5 v1r18 Audit
GEN006080 - The Samba Web Administration Tool (SWAT) must be restricted to the local host or require SSL - '/etc/xinetd.d/swat'
Unix
DISA STIG for Oracle Linux 5 v2r1
GEN006080 - The Samba Web Administration Tool (SWAT) must be restricted to the local host or require SSL - '/etc/xinetd.d/swat'
Unix
DISA STIG for Red Hat Enterprise Linux 5 v1r18 Audit
GEN006080 - The Samba Web Administration Tool (SWAT) must be restricted to the local host or require SSL - 'samba-swat'
Unix
DISA STIG for Red Hat Enterprise Linux 5 v1r18 Audit
GEN006080 - The Samba Web Administration Tool (SWAT) must be restricted to the local host or require SSL - 'samba-swat'
Unix
DISA STIG for Oracle Linux 5 v2r1
GEN006080 - The Samba Web Administration Tool (SWAT) must be restricted to the local host or require SSL - 'samba3x-swat'
Unix
DISA STIG for Red Hat Enterprise Linux 5 v1r18 Audit
GEN006080 - The Samba Web Administration Tool (SWAT) must be restricted to the local host or require SSL - 'samba3x-swat'
Unix
DISA STIG for Oracle Linux 5 v2r1
GEN006080 - The Samba Web Administration Tool (SWAT) must be restricted to the local host or require SSL.
Unix
DISA STIG AIX 5.3 v1r2
GEN006080 - The Samba Web Administration Tool (SWAT) must be restricted to the local host or require SSL.
Unix
DISA STIG AIX 6.1 v1r14
GEN006380 - The system must not use UDP for NIS/NIS+.
Unix
DISA STIG AIX 5.3 v1r2
GEN006380 - The system must not use UDP for NIS/NIS+.
Unix
DISA STIG for Oracle Linux 5 v2r1
GEN006380 - The system must not use UDP for NIS/NIS+.
Unix
DISA STIG for Red Hat Enterprise Linux 5 v1r18 Audit
GEN006380 - The system must not use UDP for NIS/NIS+.
Unix
DISA STIG AIX 6.1 v1r14
GEN009140 - The system must not have the chargen service active.
Unix
DISA STIG AIX 6.1 v1r14
GEN009140 - The system must not have the chargen service active.
Unix
DISA STIG AIX 5.3 v1r2
GEN009160 - The system must not have the Calendar Manager Service Daemon (CMSD) service active.
Unix
DISA STIG AIX 5.3 v1r2
GEN009160 - The system must not have the Calendar Manager Service Daemon (CMSD) service active.
Unix
DISA STIG AIX 6.1 v1r14
GEN009180 - The system must not have the tool-talk database server (ttdbserver) service active.
Unix
DISA STIG AIX 6.1 v1r14
GEN009180 - The system must not have the tool-talk database server (ttdbserver) service active.
Unix
DISA STIG AIX 5.3 v1r2
GEN009190 - The system must not have the comsat service active.
Unix
DISA STIG AIX 5.3 v1r2
GEN009190 - The system must not have the comsat service active.
Unix
DISA STIG AIX 6.1 v1r14
GEN009200 - The system must not have the daytime service active.
Unix
DISA STIG AIX 5.3 v1r2
GEN009200 - The system must not have the daytime service active.
Unix
DISA STIG AIX 6.1 v1r14