CCI|CCI-002475

Title

Implement cryptographic mechanisms to prevent unauthorized modification of organization-defined information when at rest on organization-defined system components.

Reference Item Details

Category: 2024

Audit Items

View all Reference Audit Items

NamePluginAudit Name
APPL-14-005020 - The macOS system must enforce FileVault.UnixDISA Apple macOS 14 (Sonoma) STIG v2r2
APPL-15-005020 - The macOS system must enforce FileVault.UnixDISA Apple macOS 15 (Sequoia) STIG v1r1
Big Sur - Enforce FileVaultUnixNIST macOS Big Sur v1.4.0 - 800-171
Big Sur - Enforce FileVaultUnixNIST macOS Big Sur v1.4.0 - CNSSI 1253
Big Sur - Enforce FileVaultUnixNIST macOS Big Sur v1.4.0 - 800-53r4 Moderate
Big Sur - Enforce FileVaultUnixNIST macOS Big Sur v1.4.0 - 800-53r4 High
Big Sur - Enforce FileVaultUnixNIST macOS Big Sur v1.4.0 - 800-53r5 High
Big Sur - Enforce FileVaultUnixNIST macOS Big Sur v1.4.0 - 800-53r5 Moderate
Big Sur - Enforce FileVaultUnixNIST macOS Big Sur v1.4.0 - All Profiles
Catalina - Enforce FileVaultUnixNIST macOS Catalina v1.5.0 - All Profiles
Catalina - Enforce FileVaultUnixNIST macOS Catalina v1.5.0 - 800-53r4 High
Catalina - Enforce FileVaultUnixNIST macOS Catalina v1.5.0 - 800-53r4 Moderate
Catalina - Enforce FileVaultUnixNIST macOS Catalina v1.5.0 - CNSSI 1253
Catalina - Enforce FileVaultUnixNIST macOS Catalina v1.5.0 - 800-53r5 High
Catalina - Enforce FileVaultUnixNIST macOS Catalina v1.5.0 - 800-171
Catalina - Enforce FileVaultUnixNIST macOS Catalina v1.5.0 - 800-53r5 Moderate
MD3X-00-000740 - MongoDB must implement cryptographic mechanisms to prevent unauthorized modification of organization-defined information at rest (to include, at a minimum, PII and classified information) on organization-defined information system components.UnixDISA STIG MongoDB Enterprise Advanced 3.x v2r3 OS
MD4X-00-001400 - MongoDB must implement cryptographic mechanisms to prevent unauthorized modification of organization-defined information at rest (to include, at a minimum, PII and classified information) on organization-defined information system components.UnixDISA STIG MongoDB Enterprise Advanced 4.x v1r4 OS
Monterey - Enforce FileVaultUnixNIST macOS Monterey v1.0.0 - 800-53r4 High
Monterey - Enforce FileVaultUnixNIST macOS Monterey v1.0.0 - CNSSI 1253
Monterey - Enforce FileVaultUnixNIST macOS Monterey v1.0.0 - 800-171
Monterey - Enforce FileVaultUnixNIST macOS Monterey v1.0.0 - All Profiles
Monterey - Enforce FileVaultUnixNIST macOS Monterey v1.0.0 - 800-53r4 Moderate
Monterey - Enforce FileVaultUnixNIST macOS Monterey v1.0.0 - 800-53r5 High
Monterey - Enforce FileVaultUnixNIST macOS Monterey v1.0.0 - 800-53r5 Moderate
UBTU-18-010003 - Ubuntu operating systems handling data requiring data at rest protections must employ cryptographic mechanisms to prevent unauthorized disclosure and modification of the information at rest.UnixDISA STIG Ubuntu 18.04 LTS v2r15
UBTU-20-010414 - Ubuntu operating systems handling data requiring 'data at rest' protections must employ cryptographic mechanisms to prevent unauthorized disclosure and modification of the information at rest.UnixDISA STIG Ubuntu 20.04 LTS v2r1
UBTU-22-231010 - Ubuntu 22.04 LTS must implement cryptographic mechanisms to prevent unauthorized disclosure and modification of all information that requires protection at rest.UnixDISA STIG Canonical Ubuntu 22.04 LTS v2r2
WBSP-AS-001520 - The WebSphere Application Server must not generate LTPA keys automatically.UnixDISA IBM WebSphere Traditional 9 STIG v1r1
WBSP-AS-001520 - The WebSphere Application Server must not generate LTPA keys automatically.UnixDISA IBM WebSphere Traditional 9 STIG v1r1 Middleware
WBSP-AS-001520 - The WebSphere Application Server must not generate LTPA keys automatically.WindowsDISA IBM WebSphere Traditional 9 Windows STIG v1r1
WN12-00-000020 - Systems requiring data at rest protections must employ cryptographic mechanisms to prevent unauthorized disclosure and modification of the information at rest.WindowsDISA Windows Server 2012 and 2012 R2 MS STIG v3r7
WN12-00-000020 - Systems requiring data at rest protections must employ cryptographic mechanisms to prevent unauthorized disclosure and modification of the information at rest.WindowsDISA Windows Server 2012 and 2012 R2 DC STIG v3r7
WN16-00-000280 - Systems requiring data at rest protections must employ cryptographic mechanisms to prevent unauthorized disclosure and modification of the information at rest.WindowsDISA Windows Server 2016 STIG v2r9
WN19-00-000250 - Windows Server 2019 systems requiring data at rest protections must employ cryptographic mechanisms to prevent unauthorized disclosure and modification of the information at rest.WindowsDISA Windows Server 2019 STIG v3r2
WN22-00-000250 - Windows Server 2022 systems requiring data at rest protections must employ cryptographic mechanisms to prevent unauthorized disclosure and modification of the information at rest.WindowsDISA Windows Server 2022 STIG v2r2