CCI|CCI-002165

Title

Enforce organization-defined discretionary access control policies over defined subjects and objects.

Reference Item Details

Category: 2024

Audit Items

View all Reference Audit Items

NamePluginAudit Name
1.5.1 Ensure fs.protected_hardlinks is configuredUnixCIS Debian Linux 13 v1.0.0 L1 Server
1.5.1 Ensure fs.protected_hardlinks is configuredUnixCIS Debian Linux 13 v1.0.0 L1 Workstation
1.5.2 Ensure fs.protected_hardlinks is configuredUnixCIS Rocky Linux 10 v1.0.0 L1 Workstation
1.5.2 Ensure fs.protected_hardlinks is configuredUnixCIS Rocky Linux 10 v1.0.0 L1 Server
1.5.2 Ensure fs.protected_symlinks is configuredUnixCIS Debian Linux 13 v1.0.0 L2 Workstation
1.5.2 Ensure fs.protected_symlinks is configuredUnixCIS Debian Linux 13 v1.0.0 L2 Server
1.5.3 Ensure fs.protected_symlinks is configuredUnixCIS Rocky Linux 10 v1.0.0 L2 Workstation
1.5.3 Ensure fs.protected_symlinks is configuredUnixCIS Rocky Linux 10 v1.0.0 L2 Server
1.6.1.3 Ensure SELinux policy is configuredUnixCIS Amazon Linux 2 STIG v2.0.0 STIG
1.6.1.3 Ensure SELinux policy is configuredUnixCIS Amazon Linux 2 STIG v2.0.0 L1 Server
1.6.1.3 Ensure SELinux policy is configuredUnixCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
1.6.1.3 Ensure SELinux policy is configuredUnixCIS Amazon Linux 2 STIG v2.0.0 L1 Workstation
1.6.1.5 Ensure the SELinux mode is enforcingUnixCIS Amazon Linux 2 STIG v2.0.0 STIG
1.6.1.5 Ensure the SELinux mode is enforcingUnixCIS Amazon Linux 2 STIG v2.0.0 L2 Workstation
1.6.1.5 Ensure the SELinux mode is enforcingUnixCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
1.6.1.5 Ensure the SELinux mode is enforcingUnixCIS Amazon Linux 2 STIG v2.0.0 L2 Server
1.6.1.9 Ensure non-privileged users are prevented from executing privileged functionsUnixCIS Amazon Linux 2 STIG v2.0.0 STIG
1.6.1.9 Ensure non-privileged users are prevented from executing privileged functionsUnixCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
1.14 WN22-00-000140WindowsCIS Microsoft Windows Server 2022 STIG v3.0.0 MS CAT II
1.14 WN22-00-000140WindowsCIS Microsoft Windows Server 2022 STIG v3.0.0 DC CAT II
1.15 WN22-00-000150WindowsCIS Microsoft Windows Server 2022 STIG v3.0.0 DC CAT II
1.15 WN22-00-000150WindowsCIS Microsoft Windows Server 2022 STIG v3.0.0 MS CAT II
1.16 UBTU-24-100500UnixCIS Ubuntu Linux 24.04 LTS STIG v1.0.0 CAT II
1.16 WN22-00-000160WindowsCIS Microsoft Windows Server 2022 STIG v3.0.0 MS CAT II
1.16 WN22-00-000160WindowsCIS Microsoft Windows Server 2022 STIG v3.0.0 DC CAT II
1.21 WN10-00-000095WindowsCIS Microsoft Windows 10 STIG v1.0.0 CAT II
1.25 RHEL-09-213030UnixCIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT II
1.26 RHEL-09-213035UnixCIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT II
1.61 OL08-00-010373UnixCIS Oracle Linux 8 STIG v1.0.0 CAT II
1.64 OL08-00-010374UnixCIS Oracle Linux 8 STIG v1.0.0 CAT II
1.86 UBTU-22-431010UnixCIS Ubuntu Linux 22.04 LTS STIG v1.0.0 CAT II
1.309 RHEL-09-432035UnixCIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT II
2.006 - ACLs for system files and directories do not conform to minimum requirements. - 'C:'WindowsDISA Windows Vista STIG v6r41
2.006 - ACLS FOR SYSTEM FILES AND DIRECTORIES DO NOT CONFORM TO MINIMUM REQUIREMENTS. - 'C:\Program Files'WindowsDISA Windows Vista STIG v6r41
2.006 - ACLS FOR SYSTEM FILES AND DIRECTORIES DO NOT CONFORM TO MINIMUM REQUIREMENTS. - 'C:\Windows'WindowsDISA Windows Vista STIG v6r41
6.1.11 Ensure no unowned files or directories existUnixCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
6.1.11 Ensure no unowned files or directories existUnixCIS Amazon Linux 2 STIG v2.0.0 L1 Server
6.1.11 Ensure no unowned files or directories existUnixCIS Amazon Linux 2 STIG v2.0.0 STIG
6.1.11 Ensure no unowned files or directories existUnixCIS Amazon Linux 2 STIG v2.0.0 L1 Workstation
6.1.12 Ensure no ungrouped files or directories existUnixCIS Amazon Linux 2 STIG v2.0.0 L1 Server
6.1.12 Ensure no ungrouped files or directories existUnixCIS Amazon Linux 2 STIG v2.0.0 L1 Workstation
6.1.12 Ensure no ungrouped files or directories existUnixCIS Amazon Linux 2 STIG v2.0.0 STIG
6.1.12 Ensure no ungrouped files or directories existUnixCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
6.1.15 Ensure the file permissions ownership and group membership of system files and commands match the vendor valuesUnixCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
AIX7-00-003020 - AIX must use Trusted Execution (TE) Check policy.UnixDISA STIG AIX 7.x v3r1
AIX7-00-003098 - AIX must allow admins to send a message to all the users who logged in currently.UnixDISA STIG AIX 7.x v3r1
AIX7-00-003099 - AIX must allow admins to send a message to a user who logged in currently.UnixDISA STIG AIX 7.x v3r1
ALMA-09-032470 - AlmaLinux OS 9 must restrict the use of the "su" command.UnixDISA Cloud Linux AlmaLinux OS 9 STIG v1r5
AZLX-23-001005 - Amazon Linux 2023 must not be configured to bypass password requirements for privilege escalation.UnixDISA Amazon Linux 2023 STIG v1r2
AZLX-23-002440 - Amazon Linux 2023 must restrict the use of the "su" command.UnixDISA Amazon Linux 2023 STIG v1r2