CCI|CCI-002165

Title

Enforce organization-defined discretionary access control policies over defined subjects and objects.

Reference Item Details

Category: 2024

Audit Items

View all Reference Audit Items

NamePluginAudit Name
1.6.1.3 Ensure SELinux policy is configuredUnixCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
1.6.1.5 Ensure the SELinux mode is enforcingUnixCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
1.6.1.9 Ensure non-privileged users are prevented from executing privileged functionsUnixCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
2.006 - ACLs for system files and directories do not conform to minimum requirements - 'C:'WindowsDISA Windows Server 2008 MS STIG v6r46
2.006 - ACLs for system files and directories do not conform to minimum requirements - 'C:'WindowsDISA Windows Server 2008 DC STIG v6r47
2.006 - ACLs for system files and directories do not conform to minimum requirements - 'C:\Program Files'WindowsDISA Windows Server 2008 MS STIG v6r46
2.006 - ACLs for system files and directories do not conform to minimum requirements - 'C:\Program Files'WindowsDISA Windows Server 2008 DC STIG v6r47
2.006 - ACLs for system files and directories do not conform to minimum requirements - 'C:\Windows'WindowsDISA Windows Server 2008 MS STIG v6r46
2.006 - ACLs for system files and directories do not conform to minimum requirements - 'C:\Windows'WindowsDISA Windows Server 2008 DC STIG v6r47
2.006 - ACLs for system files and directories do not conform to minimum requirements. - 'C:'WindowsDISA Windows Vista STIG v6r41
2.006 - ACLS FOR SYSTEM FILES AND DIRECTORIES DO NOT CONFORM TO MINIMUM REQUIREMENTS. - 'C:\Program Files'WindowsDISA Windows Vista STIG v6r41
2.006 - ACLS FOR SYSTEM FILES AND DIRECTORIES DO NOT CONFORM TO MINIMUM REQUIREMENTS. - 'C:\Windows'WindowsDISA Windows Vista STIG v6r41
2.006 - ACLs for system files and directories will conform to minimum requirements - 'C:'WindowsDISA Windows Server 2008 R2 MS STIG v1r33
2.006 - ACLs for system files and directories will conform to minimum requirements - 'C:'WindowsDISA Windows Server 2008 R2 DC STIG v1r34
2.006 - ACLs for system files and directories will conform to minimum requirements - 'C:\Program Files'WindowsDISA Windows Server 2008 R2 MS STIG v1r33
2.006 - ACLs for system files and directories will conform to minimum requirements - 'C:\Program Files'WindowsDISA Windows Server 2008 R2 DC STIG v1r34
2.006 - Permissions for system files and directories must conform to minimum requirements - 'C:'WindowsDISA Windows 7 STIG v1r32
2.006 - Permissions for system files and directories must conform to minimum requirements - 'C:\Program Files'WindowsDISA Windows 7 STIG v1r32
2.006 - Permissions for system files and directories must conform to minimum requirements - 'C:\Windows'WindowsDISA Windows 7 STIG v1r32
6.1.11 Ensure no unowned files or directories existUnixCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
6.1.12 Ensure no ungrouped files or directories existUnixCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
6.1.15 Ensure the file permissions ownership and group membership of system files and commands match the vendor valuesUnixCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
AIX7-00-003020 - AIX must use Trusted Execution (TE) Check policyUnixDISA STIG AIX 7.x v2r8
AIX7-00-003020 - AIX must use Trusted Execution (TE) Check policyUnixDISA STIG AIX 7.x v2r9
AIX7-00-003020 - AIX must use Trusted Execution (TE) Check policy - CHKEXECUnixDISA STIG AIX 7.x v2r6
AIX7-00-003020 - AIX must use Trusted Execution (TE) Check policy - CHKEXECUnixDISA STIG AIX 7.x v2r1
AIX7-00-003020 - AIX must use Trusted Execution (TE) Check policy - CHKEXECUnixDISA STIG AIX 7.x v2r5
AIX7-00-003020 - AIX must use Trusted Execution (TE) Check policy - CHKEXECUnixDISA STIG AIX 7.x v2r3
AIX7-00-003020 - AIX must use Trusted Execution (TE) Check policy - CHKKERNEXTUnixDISA STIG AIX 7.x v2r6
AIX7-00-003020 - AIX must use Trusted Execution (TE) Check policy - CHKKERNEXTUnixDISA STIG AIX 7.x v2r1
AIX7-00-003020 - AIX must use Trusted Execution (TE) Check policy - CHKKERNEXTUnixDISA STIG AIX 7.x v2r3
AIX7-00-003020 - AIX must use Trusted Execution (TE) Check policy - CHKKERNEXTUnixDISA STIG AIX 7.x v2r5
AIX7-00-003020 - AIX must use Trusted Execution (TE) Check policy - Trusted ExecutionUnixDISA STIG AIX 7.x v2r3
AIX7-00-003020 - AIX must use Trusted Execution (TE) Check policy - Trusted ExecutionUnixDISA STIG AIX 7.x v2r5
AIX7-00-003020 - AIX must use Trusted Execution (TE) Check policy - Trusted ExecutionUnixDISA STIG AIX 7.x v2r6
AIX7-00-003020 - AIX must use Trusted Execution (TE) Check policy - Trusted ExecutionUnixDISA STIG AIX 7.x v2r1
AIX7-00-003098 - AIX must allow admins to send a message to all the users who logged in currently.UnixDISA STIG AIX 7.x v2r1
AIX7-00-003098 - AIX must allow admins to send a message to all the users who logged in currently.UnixDISA STIG AIX 7.x v2r8
AIX7-00-003098 - AIX must allow admins to send a message to all the users who logged in currently.UnixDISA STIG AIX 7.x v2r9
AIX7-00-003098 - AIX must allow admins to send a message to all the users who logged in currently.UnixDISA STIG AIX 7.x v2r5
AIX7-00-003098 - AIX must allow admins to send a message to all the users who logged in currently.UnixDISA STIG AIX 7.x v2r3
AIX7-00-003098 - AIX must allow admins to send a message to all the users who logged in currently.UnixDISA STIG AIX 7.x v2r6
AIX7-00-003099 - AIX must allow admins to send a message to a user who logged in currently.UnixDISA STIG AIX 7.x v2r8
AIX7-00-003099 - AIX must allow admins to send a message to a user who logged in currently.UnixDISA STIG AIX 7.x v2r6
AIX7-00-003099 - AIX must allow admins to send a message to a user who logged in currently.UnixDISA STIG AIX 7.x v2r3
AIX7-00-003099 - AIX must allow admins to send a message to a user who logged in currently.UnixDISA STIG AIX 7.x v2r9
AIX7-00-003099 - AIX must allow admins to send a message to a user who logged in currently.UnixDISA STIG AIX 7.x v2r1
AIX7-00-003099 - AIX must allow admins to send a message to a user who logged in currently.UnixDISA STIG AIX 7.x v2r5
Big Sur - Allow Administrators to Modify Security Settings and System AttributesUnixNIST macOS Big Sur v1.4.0 - All Profiles
Big Sur - Allow Administrators to Promote Other Users to Administrator StatusUnixNIST macOS Big Sur v1.4.0 - All Profiles