SRG-OS-000327-GPOS-00127 Controls

STIG IDVersionTitleProduct
ALMA-09-007280V1R4AlmaLinux OS 9 must audit uses of the "execve" system call.AlmaLinux OS 9
ALMA-09-031920V1R4AlmaLinux OS 9 must require users to provide authentication for privilege escalation.AlmaLinux OS 9
ALMA-09-032030V1R4AlmaLinux OS 9 must require users to provide a password for privilege escalation.AlmaLinux OS 9
ALMA-09-032140V1R4AlmaLinux OS 9 must not be configured to bypass password requirements for privilege escalation.AlmaLinux OS 9
ALMA-09-032250V1R4AlmaLinux OS 9 must require reauthentication when using the "sudo" command.AlmaLinux OS 9
OL07-00-030360V3R3The Oracle Linux operating system must audit all executions of privileged functions.Oracle Linux 7
OL09-00-002362V1R3OL 9 must require users to reauthenticate for privilege escalation.Oracle Linux 9
OL09-00-002363V1R3OL 9 must require users to provide a password for privilege escalation.Oracle Linux 9
OL09-00-002364V1R3OL 9 must not be configured to bypass password requirements for privilege escalation.Oracle Linux 9
RHEL-07-030360V3R9The Red Hat Enterprise Linux operating system must audit all executions of privileged functions.Red Hat Enterprise Linux 7
SLES-12-020240V3R2The SUSE operating system must generate audit records for all uses of the privileged functions.SUSE Linux Enterprise 12
SLES-15-030640V2R4The SUSE operating system must generate audit records for all uses of the privileged functions.SUSE Linux Enterprise 15
WN10-AU-000105V3R4The system must be configured to audit Policy Change - Authentication Policy Change successes.Microsoft Windows 10
WN10-AU-000110V3R4The system must be configured to audit Privilege Use - Sensitive Privilege Use failures.Microsoft Windows 10
WN10-AU-000115V3R4The system must be configured to audit Privilege Use - Sensitive Privilege Use successes.Microsoft Windows 10
WN10-AU-000140V3R4The system must be configured to audit System - Security State Change successes.Microsoft Windows 10
WN10-AU-000150V3R4The system must be configured to audit System - Security System Extension successes.Microsoft Windows 10
WN10-AU-000155V3R4The system must be configured to audit System - System Integrity failures.Microsoft Windows 10
WN10-AU-000160V3R4The system must be configured to audit System - System Integrity successes.Microsoft Windows 10
WN11-AU-000110V2R5The system must be configured to audit Privilege Use - Sensitive Privilege Use failures.Microsoft Windows 11
WN16-AU-000100V2R9Windows Server 2016 must be configured to audit Account Management - Other Account Management Events successes.Microsoft Windows Server 2016
WN16-AU-000170V2R9Windows Server 2016 must be configured to audit Detailed Tracking - Process Creation successes.Microsoft Windows Server 2016
WN16-AU-000310V2R9Windows Server 2016 must be configured to audit Policy Change - Audit Policy Change successes.Microsoft Windows Server 2016
WN16-AU-000320V2R9Windows Server 2016 must be configured to audit Policy Change - Audit Policy Change failures.Microsoft Windows Server 2016
WN16-AU-000330V2R9Windows Server 2016 must be configured to audit Policy Change - Authentication Policy Change successes.Microsoft Windows Server 2016
WN16-AU-000340V2R9Windows Server 2016 must be configured to audit Policy Change - Authorization Policy Change successes.Microsoft Windows Server 2016
WN16-AU-000350V2R9Windows Server 2016 must be configured to audit Privilege Use - Sensitive Privilege Use successes.Microsoft Windows Server 2016
WN16-AU-000360V2R9Windows Server 2016 must be configured to audit Privilege Use - Sensitive Privilege Use failures.Microsoft Windows Server 2016
WN16-AU-000370V2R9Windows Server 2016 must be configured to audit System - IPsec Driver successes.Microsoft Windows Server 2016
WN16-AU-000380V2R9Windows Server 2016 must be configured to audit System - IPsec Driver failures.Microsoft Windows Server 2016
WN16-AU-000390V2R9Windows Server 2016 must be configured to audit System - Other System Events successes.Microsoft Windows Server 2016
WN16-AU-000400V2R9Windows Server 2016 must be configured to audit System - Other System Events failures.Microsoft Windows Server 2016
WN16-AU-000410V2R9Windows Server 2016 must be configured to audit System - Security State Change successes.Microsoft Windows Server 2016
WN16-AU-000420V2R9Windows Server 2016 must be configured to audit System - Security System Extension successes.Microsoft Windows Server 2016
WN16-AU-000440V2R9Windows Server 2016 must be configured to audit System - System Integrity successes.Microsoft Windows Server 2016
WN16-AU-000450V2R9Windows Server 2016 must be configured to audit System - System Integrity failures.Microsoft Windows Server 2016
WN16-DC-000170V2R9Active Directory Group Policy objects must be configured with proper audit settings.Microsoft Windows Server 2016
WN16-DC-000180V2R9The Active Directory Domain object must be configured with proper audit settings.Microsoft Windows Server 2016
WN16-DC-000190V2R9The Active Directory Infrastructure object must be configured with proper audit settings.Microsoft Windows Server 2016
WN16-DC-000200V2R9The Active Directory Domain Controllers Organizational Unit (OU) object must be configured with proper audit settings.Microsoft Windows Server 2016
WN16-DC-000210V2R9The Active Directory AdminSDHolder object must be configured with proper audit settings.Microsoft Windows Server 2016
WN16-DC-000220V2R9The Active Directory RID Manager$ object must be configured with proper audit settings.Microsoft Windows Server 2016
WN16-DC-000240V2R9Windows Server 2016 must be configured to audit DS Access - Directory Service Access successes.Microsoft Windows Server 2016
WN16-DC-000250V2R9Windows Server 2016 must be configured to audit DS Access - Directory Service Access failures.Microsoft Windows Server 2016
WN16-DC-000260V2R9Windows Server 2016 must be configured to audit DS Access - Directory Service Changes successes.Microsoft Windows Server 2016
WN19-AU-000090V3R6Windows Server 2019 must be configured to audit Account Management - Other Account Management Events successes.Microsoft Windows Server 2019
WN19-AU-000140V3R6Windows Server 2019 must be configured to audit Detailed Tracking - Process Creation successes.Microsoft Windows Server 2019
WN19-AU-000260V3R6Windows Server 2019 must be configured to audit Policy Change - Audit Policy Change successes.Microsoft Windows Server 2019
WN19-AU-000270V3R6Windows Server 2019 must be configured to audit Policy Change - Audit Policy Change failures.Microsoft Windows Server 2019
WN19-AU-000280V3R6Windows Server 2019 must be configured to audit Policy Change - Authentication Policy Change successes.Microsoft Windows Server 2019
WN19-AU-000290V3R6Windows Server 2019 must be configured to audit Policy Change - Authorization Policy Change successes.Microsoft Windows Server 2019
WN19-AU-000300V3R6Windows Server 2019 must be configured to audit Privilege Use - Sensitive Privilege Use successes.Microsoft Windows Server 2019
WN19-AU-000310V3R6Windows Server 2019 must be configured to audit Privilege Use - Sensitive Privilege Use failures.Microsoft Windows Server 2019
WN19-AU-000320V3R6Windows Server 2019 must be configured to audit System - IPsec Driver successes.Microsoft Windows Server 2019
WN19-AU-000330V3R6Windows Server 2019 must be configured to audit System - IPsec Driver failures.Microsoft Windows Server 2019
WN19-AU-000340V3R6Windows Server 2019 must be configured to audit System - Other System Events successes.Microsoft Windows Server 2019
WN19-AU-000350V3R6Windows Server 2019 must be configured to audit System - Other System Events failures.Microsoft Windows Server 2019
WN19-AU-000360V3R6Windows Server 2019 must be configured to audit System - Security State Change successes.Microsoft Windows Server 2019
WN19-AU-000370V3R6Windows Server 2019 must be configured to audit System - Security System Extension successes.Microsoft Windows Server 2019
WN19-AU-000380V3R6Windows Server 2019 must be configured to audit System - System Integrity successes.Microsoft Windows Server 2019
WN19-AU-000390V3R6Windows Server 2019 must be configured to audit System - System Integrity failures.Microsoft Windows Server 2019
WN19-DC-000170V3R6Windows Server 2019 Active Directory Group Policy objects must be configured with proper audit settings.Microsoft Windows Server 2019
WN19-DC-000180V3R6Windows Server 2019 Active Directory Domain object must be configured with proper audit settings.Microsoft Windows Server 2019
WN19-DC-000190V3R6Windows Server 2019 Active Directory Infrastructure object must be configured with proper audit settings.Microsoft Windows Server 2019
WN19-DC-000200V3R6Windows Server 2019 Active Directory Domain Controllers Organizational Unit (OU) object must be configured with proper audit settings.Microsoft Windows Server 2019
WN19-DC-000210V3R6Windows Server 2019 Active Directory AdminSDHolder object must be configured with proper audit settings.Microsoft Windows Server 2019
WN19-DC-000220V3R6Windows Server 2019 Active Directory RID Manager$ object must be configured with proper audit settings.Microsoft Windows Server 2019
WN19-DC-000240V3R6Windows Server 2019 must be configured to audit DS Access - Directory Service Access successes.Microsoft Windows Server 2019
WN19-DC-000250V3R6Windows Server 2019 must be configured to audit DS Access - Directory Service Access failures.Microsoft Windows Server 2019
WN19-DC-000260V3R6Windows Server 2019 must be configured to audit DS Access - Directory Service Changes successes.Microsoft Windows Server 2019
WN22-AU-000090V2R6Windows Server 2022 must be configured to audit Account Management - Other Account Management Events successes.Microsoft Windows Server 2022
WN22-AU-000140V2R6Windows Server 2022 must be configured to audit Detailed Tracking - Process Creation successes.Microsoft Windows Server 2022
WN22-AU-000260V2R6Windows Server 2022 must be configured to audit Policy Change - Audit Policy Change successes.Microsoft Windows Server 2022
WN22-AU-000270V2R6Windows Server 2022 must be configured to audit Policy Change - Audit Policy Change failures.Microsoft Windows Server 2022
WN22-AU-000280V2R6Windows Server 2022 must be configured to audit Policy Change - Authentication Policy Change successes.Microsoft Windows Server 2022
WN22-AU-000290V2R6Windows Server 2022 must be configured to audit Policy Change - Authorization Policy Change successes.Microsoft Windows Server 2022
WN22-AU-000300V2R6Windows Server 2022 must be configured to audit Privilege Use - Sensitive Privilege Use successes.Microsoft Windows Server 2022
WN22-AU-000310V2R6Windows Server 2022 must be configured to audit Privilege Use - Sensitive Privilege Use failures.Microsoft Windows Server 2022
WN22-AU-000320V2R6Windows Server 2022 must be configured to audit System - IPsec Driver successes.Microsoft Windows Server 2022
WN22-AU-000330V2R6Windows Server 2022 must be configured to audit System - IPsec Driver failures.Microsoft Windows Server 2022
WN22-AU-000340V2R6Windows Server 2022 must be configured to audit System - Other System Events successes.Microsoft Windows Server 2022
WN22-AU-000350V2R6Windows Server 2022 must be configured to audit System - Other System Events failures.Microsoft Windows Server 2022
WN22-AU-000360V2R6Windows Server 2022 must be configured to audit System - Security State Change successes.Microsoft Windows Server 2022
WN22-AU-000370V2R6Windows Server 2022 must be configured to audit System - Security System Extension successes.Microsoft Windows Server 2022
WN22-AU-000380V2R6Windows Server 2022 must be configured to audit System - System Integrity successes.Microsoft Windows Server 2022
WN22-AU-000390V2R6Windows Server 2022 must be configured to audit System - System Integrity failures.Microsoft Windows Server 2022
WN22-DC-000170V2R6Windows Server 2022 Active Directory Group Policy objects must be configured with proper audit settings.Microsoft Windows Server 2022
WN22-DC-000180V2R6Windows Server 2022 Active Directory Domain object must be configured with proper audit settings.Microsoft Windows Server 2022
WN22-DC-000190V2R6Windows Server 2022 Active Directory Infrastructure object must be configured with proper audit settings.Microsoft Windows Server 2022
WN22-DC-000200V2R6Windows Server 2022 Active Directory Domain Controllers Organizational Unit (OU) object must be configured with proper audit settings.Microsoft Windows Server 2022
WN22-DC-000210V2R6Windows Server 2022 Active Directory AdminSDHolder object must be configured with proper audit settings.Microsoft Windows Server 2022
WN22-DC-000220V2R6Windows Server 2022 Active Directory RID Manager$ object must be configured with proper audit settings.Microsoft Windows Server 2022
WN22-DC-000240V2R6Windows Server 2022 must be configured to audit DS Access - Directory Service Access successes.Microsoft Windows Server 2022
WN22-DC-000250V2R6Windows Server 2022 must be configured to audit DS Access - Directory Service Access failures.Microsoft Windows Server 2022
WN22-DC-000260V2R6Windows Server 2022 must be configured to audit DS Access - Directory Service Changes successes.Microsoft Windows Server 2022