Audits
Settings
Links
Tenable Cloud
Tenable Community & Support
Tenable University
Theme
Light
Dark
Auto
Help
Plugins
Overview
Plugins Pipeline
Newest
Updated
Search
Nessus Families
WAS Families
NNM Families
LCE Families
Tenable OT Security Families
About Plugin Families
Release Notes
Audits
Overview
Newest
Updated
Search Audit Files
Search Items
References
Authorities
Documentation
Download All Audit Files
Policies
Overview
Search
AWS Resources
Azure Resources
GCP Resources
Kubernetes Resources
Indicators
Overview
Search
Indicators of Attack
Indicators of Exposure
CVEs
Overview
Newest
Updated
Search
Attack Path Techniques
Overview
Search
Links
Tenable Cloud
Tenable Community & Support
Tenable University
Settings
Theme
Light
Dark
Auto
Detections
Plugins
Overview
Plugins Pipeline
Release Notes
Newest
Updated
Search
Nessus Families
WAS Families
NNM Families
LCE Families
Tenable OT Security Families
About Plugin Families
Audits
Overview
Newest
Updated
Search Audit Files
Search Items
References
Authorities
Documentation
Download All Audit Files
Policies
Overview
Search
AWS Resources
Azure Resources
GCP Resources
Kubernetes Resources
Indicators
Overview
Search
Indicators of Attack
Indicators of Exposure
Analytics
CVEs
Overview
Newest
Updated
Search
Attack Path Techniques
Overview
Search
Audits
References
CCI
CCI-001953
CCI
CCI|CCI-001953
Title
The information system accepts Personal Identity Verification (PIV) credentials.
Reference Item Details
Reference:
CCI - DISA Control Correlation Identifier
Category:
2013
Audit Items
View all Reference Audit Items
Name
Plugin
Audit Name
1.6.1 - The system must uniquely identify and must authenticate users using multifactor authentication via a graphical user logon.
Unix
Tenable Fedora Linux Best Practices v2.0.0
1.8.8 Ensure users must authenticate users using MFA via a graphical user logon
Unix
CIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
1.10 Ensure required packages for multifactor authentication are installed
Unix
CIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
5.4.9 Ensure multifactor authentication for access to privileged accounts - PAM.
Unix
CIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
5.4.10 Ensure certificate status checking for PKI authentication
Unix
CIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
AIX7-00-003205 - The AIX operating system must accept and verify Personal Identity Verification (PIV) credentials
Unix
DISA STIG AIX 7.x v2r8
AIX7-00-003205 - The AIX operating system must accept and verify Personal Identity Verification (PIV) credentials - bos.ahafs
Unix
DISA STIG AIX 7.x v2r3
AIX7-00-003205 - The AIX operating system must accept and verify Personal Identity Verification (PIV) credentials - bos.ahafs
Unix
DISA STIG AIX 7.x v2r5
AIX7-00-003205 - The AIX operating system must accept and verify Personal Identity Verification (PIV) credentials - bos.ahafs
Unix
DISA STIG AIX 7.x v2r1
AIX7-00-003205 - The AIX operating system must accept and verify Personal Identity Verification (PIV) credentials - bos.ahafs
Unix
DISA STIG AIX 7.x v2r6
AIX7-00-003205 - The AIX operating system must accept and verify Personal Identity Verification (PIV) credentials - PIV credentials
Unix
DISA STIG AIX 7.x v2r9
AIX7-00-003205 - The AIX operating system must accept and verify Personal Identity Verification (PIV) credentials - pmfahotplugd
Unix
DISA STIG AIX 7.x v2r1
AIX7-00-003205 - The AIX operating system must accept and verify Personal Identity Verification (PIV) credentials - pmfahotplugd
Unix
DISA STIG AIX 7.x v2r5
AIX7-00-003205 - The AIX operating system must accept and verify Personal Identity Verification (PIV) credentials - pmfahotplugd
Unix
DISA STIG AIX 7.x v2r6
AIX7-00-003205 - The AIX operating system must accept and verify Personal Identity Verification (PIV) credentials - pmfahotplugd
Unix
DISA STIG AIX 7.x v2r3
APPL-14-003020 - The macOS system must enforce smart card authentication.
Unix
DISA Apple macOS 14 (Sonoma) STIG v1r2
APPL-14-003030 - The macOS system must allow smart card authentication.
Unix
DISA Apple macOS 14 (Sonoma) STIG v1r2
Big Sur - Set Smartcard Certificate Trust to Moderate
Unix
NIST macOS Big Sur v1.4.0 - 800-53r5 Moderate
Big Sur - Set Smartcard Certificate Trust to Moderate
Unix
NIST macOS Big Sur v1.4.0 - 800-53r4 Moderate
Big Sur - Set Smartcard Certificate Trust to Moderate
Unix
NIST macOS Big Sur v1.4.0 - All Profiles
Big Sur - Set Smartcard Certificate Trust to Moderate
Unix
NIST macOS Big Sur v1.4.0 - CNSSI 1253
CASA-VN-000660 - The Cisco VPN remote access server must be configured to accept Common Access Card (CAC) credential credentials.
Cisco
DISA STIG Cisco ASA VPN v1r2
CASA-VN-000660 - The Cisco VPN remote access server must be configured to accept Common Access Card (CAC) credential credentials.
Cisco
DISA STIG Cisco ASA VPN v1r3
CASA-VN-000660 - The Cisco VPN remote access server must be configured to accept Common Access Card (CAC) credential credentials.
Cisco
DISA STIG Cisco ASA VPN v1r1
Catalina - Set Smartcard Certificate Trust to Moderate
Unix
NIST macOS Catalina v1.5.0 - 800-53r4 Moderate
Catalina - Set Smartcard Certificate Trust to Moderate
Unix
NIST macOS Catalina v1.5.0 - All Profiles
Catalina - Set Smartcard Certificate Trust to Moderate
Unix
NIST macOS Catalina v1.5.0 - 800-53r5 Moderate
Catalina - Set Smartcard Certificate Trust to Moderate
Unix
NIST macOS Catalina v1.5.0 - CNSSI 1253
DKER-EE-001100 - LDAP integration in Docker Enterprise must be configured.
Unix
DISA STIG Docker Enterprise 2.x Linux/Unix UCP v2r1
DKER-EE-001100 - LDAP integration in Docker Enterprise must be configured.
Unix
DISA STIG Docker Enterprise 2.x Linux/Unix UCP v1r1
DKER-EE-002180 - SAML integration must be enabled in Docker Enterprise.
Unix
DISA STIG Docker Enterprise 2.x Linux/Unix UCP v1r1
DKER-EE-002180 - SAML integration must be enabled in Docker Enterprise.
Unix
DISA STIG Docker Enterprise 2.x Linux/Unix UCP v2r1
ESXI-06-100040 - The VMM must accept Personal Identity Verification (PIV) credentials.
VMware
DISA STIG VMware vSphere 6.x ESXi v1r4
ESXI-06-100040 - The VMM must accept Personal Identity Verification (PIV) credentials.
VMware
DISA STIG VMware vSphere 6.x ESXi v1r5
ESXI-67-000040 - The ESXi host must use multifactor authentication for local DCUI access to privileged accounts.
VMware
DISA STIG VMware vSphere 6.7 ESXi v1r1
ESXI-67-000040 - The ESXi host must use multifactor authentication for local DCUI access to privileged accounts.
VMware
DISA STIG VMware vSphere 6.7 ESXi v1r2
ESXI-67-000040 - The ESXi host must use multifactor authentication for local DCUI access to privileged accounts.
VMware
DISA STIG VMware vSphere 6.7 ESXi v1r3
EX13-CA-000135 - Exchange Outlook Anywhere (OA) clients must use NTLM authentication to access email.
Windows
DISA Microsoft Exchange 2013 Client Access Server STIG v1r3
EX13-CA-000135 - Exchange Outlook Anywhere (OA) clients must use NTLM authentication to access email.
Windows
DISA Microsoft Exchange 2013 Client Access Server STIG v2r1
EX13-CA-000135 - Exchange Outlook Anywhere (OA) clients must use NTLM authentication to access email.
Windows
DISA Microsoft Exchange 2013 Client Access Server STIG v1r2
EX13-MB-000305 - Exchange Outlook Anywhere (OA) clients must use NTLM authentication to access email.
Windows
DISA Microsoft Exchange 2013 Mailbox Server STIG v1r6
EX13-MB-000305 - Exchange Outlook Anywhere (OA) clients must use NTLM authentication to access email.
Windows
DISA Microsoft Exchange 2013 Mailbox Server STIG v2r2
EX13-MB-000305 - Exchange Outlook Anywhere (OA) clients must use NTLM authentication to access email.
Windows
DISA Microsoft Exchange 2013 Mailbox Server STIG v2r1
EX16-MB-000610 - Exchange Outlook Anywhere clients must use NTLM authentication to access email.
Windows
DISA Microsoft Exchange 2016 Mailbox Server STIG v2r4
EX16-MB-000610 - Exchange Outlook Anywhere clients must use NTLM authentication to access email.
Windows
DISA Microsoft Exchange 2016 Mailbox Server STIG v2r6
EX16-MB-000610 - Exchange Outlook Anywhere clients must use NTLM authentication to access email.
Windows
DISA Microsoft Exchange 2016 Mailbox Server STIG v2r2
F5BI-AP-000197 - The BIG-IP APM must accept PIV credentials when providing user authentication to virtual servers.
F5
DISA F5 BIG-IP Access Policy Manager 11.x STIG V1R1
F5BI-LT-000197 - The BIG-IP Core implementation providing user authentication intermediary services must accept Personal Identity Verification (PIV) credentials when providing user authentication to virtual servers.
F5
DISA F5 BIG-IP Local Traffic Manager 11.x STIG v1r3
Monterey - Set Smartcard Certificate Trust to Moderate
Unix
NIST macOS Monterey v1.0.0 - CNSSI 1253
Monterey - Set Smartcard Certificate Trust to Moderate
Unix
NIST macOS Monterey v1.0.0 - 800-53r4 Moderate