NIST Checklist Logo
NIST Security Configuration Checklists Repository
BETA
Browse Repository by
   Product Category
   Vendor
   Submitting
Organization

Our Sponsor
white space white space

Browse the Checklists Repository By Product Category:

The symbol denotes newly added in the past 60 days.
The symbol Star2denotes updated in the past 60 days.

Application Framework
Microsoft .NET Framework .Net Framework 1.0 and 1.1
 
Application Servers
Apache Jakarta Tomcat Application Services Security Technical Implementation Guide
BEA WebLogic Server Application Services Security Technical Implementation Guide
Microsoft .NET Framework Application Services Security Technical Implementation Guide
Sun Microsystems JVM Application Services Security Technical Implementation Guide

Antivirus Sotware
McAfee VirusScan v4.5.1 Desktop Application Security ChecklistStar2
Desktop Application Security Technical Implementation Guide
Norton Antivirus Corporate Edition v7.6.1 Desktop Application Security ChecklistStar2
Desktop Application Security Technical Implementation Guide

Automation/Productivity Application Suite
Microsoft Office 97, 2000, XP Desktop Application Security ChecklistStar2
Desktop Application Security Technical Implementation Guide

Database Systems
IBM DB2, v8.1 Database Security Readiness Review ChecklistStar2
Database Security Technical Implementation Guide
MS SQL Server v7.0, 2000 Database Security Readiness Review ChecklistStar2
Database Security Technical Implementation Guide
SQL Server 2000 Benchmark v1.0
SQL Server 2005 Benchmark v1.0Star1
Oracle v8i Oracle Database Security Benchmark v1.2 for Oracle Version 8i
Oracle v8i, 9i Database Security Readiness Review ChecklistStar2
Database Security Technical Implementation Guide
Oracle v9i, 10G Database Security Readiness Review ChecklistStar2
Database Security Technical Implementation Guide
Oracle Database Security Benchmark for Oracle 9i/10g

DHCP Servers
Windows 2000 Server Guide to Securing Windows 2000 DHCP

Directory Services
Novell Novell eDirectory 8.7 Consensus Baseline Security
Novell OES: Netware Baseline Security
Windows 2003 Server Microsoft Active Directory Security Technical
Implementation Guide Version 1, Release 1
Windows 2000 Server Guide to Securing Microsoft Windows 2000 Active Directory
Guide to Securing Microsoft Windows 2000 Schema

DNS Servers
Bind 9.2.1 Domain Name System Security ChecklistStar2
Domain Name System Security Technical Implementation Guide
Bind 9.3.1 , 9.2.4 BIND Benchmark v1.0
Cisco Content Services DNS Domain Name System Security ChecklistStar2
Domain Name System Security Technical Implementation Guide
2000 Server Domain Name System Security ChecklistStar2
Domain Name System Security Technical Implementation Guide
Guide to Securing Microsoft Windows 2000 DNS

Firewalls
Cisco PIX 6.1 and later Benchmark for Cisco PIX, Level 1 and 2 Benchmarks
Microsoft ISA Server 2000 Guide to Secure Configuration and Administration of Microsoft ISA Server 2000

Email Servers
Exchange Server 2003 Exchange Server 2003 Benchmark v 1.0

Multi-Functional Peripherals
HP LaserJet 4345 MFP HP LaserJet 4345 MFP Security Checklist
Kyocera KM-6030 Kyocera KM-6030 Security ChecklistStar1

Network Routers
Cisco Internetwork Operating System Network Infrastructure Security Checklist
Cisco Internetwork Operating System v11 or later Gold Standard Benchmark for Cisco IOS, Level 1
and 2 Benchmarks
Cisco Internetwork Operating System v12.0 through 12.4 Router Security Configuration Guide
Router Security Configuration Guide Supplement – Security for IPv6 Routers
Juniper JUNOS Network Infrastructure Security Checklist
Juniper JUNOS Router Checklist Procedure Guide -
Supplement to the Network Infrastructure Checklist
Windows 2000 Server Microsoft Windows 2000 Router Configuration Guide

Network Switches

Cisco Catalyst Switch Internetwork Operating System v12.1 Cisco IOS Switch Security Configuration Guide


Operating Systems
AIX (versions 4.3.2, 4.3.3, 5L, 5.1) AIX Benchmark
Fedora Core 1, 2, and 3 Red Hat Enterprise Linux Benchmark Version 1.0.3
FreeBSD 4.8 and above FreeBSD Benchmark
HP-UX 11.x HP-UX Benchmark
Mac OS X Mac OS X Benchmark v1.02
Macintosh OS X Security Technical Implementation Guide
Apple Mac OS X v10.3.x "Panther" Security Configuration Guide
MVS (LPAR) MVS Logical Partition (LPAR) Checklist
OpenVMS VMS 800-53 Generic
VMS 800-53 Alpha V1.0 SHA-1
VMS 800-53 Alpha V1.5 SHA-1
VMS 800-53 Alpha V6.1 SHA-1
VMS 800-53 Alpha V6.2 SHA-1
VMS 800-53 Alpha V7.0 SHA-1
VMS 800-53 Alpha V7.1 SHA-1
VMS 800-53 Alpha V7.2 SHA-1
VMS 800-53
VMS 800-53 Alpha V7.3 SHA-1
VMS 800-53 Alpha V7.3-1 SHA-1
VMS 800-53 Alpha V7.3-2 SHA-1
VMS 800-53 Alpha V8.2 SHA-1
VMS 800-53 VAX V6.1 SHA-1
VMS 800-53 VAX V6.2 SHA-1
VMS 800-53 VAX V7.0 SHA-1
VMS 800-53 VAX V7.1 SHA-1
VMS 800-53 VAX V7.2 SHA-1
VMS 800-53 VAX V7.3 SHA-1
OS390

OS/390 Security Technical Implementation
Guide

OS/390 Logical Partition Security Technical Implementation Guide
SRR Review Procedures, OS/390 ACF2 Checklist Star2
SRR Review Procedures, OS/390 RACF Checklist Star2
SRR Review Procedures, OS/390 TSS Checklist Star2
Red Hat Enterprise Linux 2.1 and 3.0 Red Hat Enterprise Linux Benchmark Version 1.0.3
Various UNIX: Solaris, HPUX, SCO, Digital, etc. UNIX Security Technical Implementation Guide
Various UNIX: Solaris, HPUX, SCO, Digital, etc. UNIX Security Checkliststar11
Slackware Linux Slackerware Linux Benchmark
Solaris 2.5.1 and later Solaris Benchmark Version 1.3.0
Solaris 10 Benchmark v 2.1.1
UNISYS Unisys Security Readiness Review Checklist
Unisys Security Technical Implementation Guide
Windows 2000 Microsoft Windows 2000 IPsec Guide
SP 800-43: Systems Administration Guidance for Securing Microsoft Windows 2000 Professional System
Windows 2000 Level 1 Benchmark
Windows 2000 Security ChecklistStar2
Windows 2000 Server Level 2 Benchmark
Windows 2003/XP/2000 Addendum
Windows 2000 Professional Operating System Level 2 Benchmark Consensus Baseline Security Settings Version 2.2.1
Windows Server 2003 Windows Server 2003 Security Guide
Windows Server 2003 Operating System Legacy, Enterprise, and Specialized Security Benchmark Consensus Security Settings for Domain Controllers
Windows 2003/XP/2000 Addendum
Windows 2003 Server Security ChecklistStar2
Windows Server 2003 Operating System Legacy, Enterprise, and Specialized Security Benchmark Consensus Security Settings for Domain Member Servers
Windows NT Windows NT Level 1 Benchmmark
Windows XP SP 800-68: Guidance for Securing Microsoft Windows XP Systems for IT Professionals
Windows XP Professional Operating System Legacy, Enterprise, and Specialized Security Benchmark Consensus Baseline Security Settings
Windows XP Professional Patches in OVAL Formatstar1
Windows XP Security Guide
Windows XP Security ChecklistStar2
Windows 2003/XP/2000 Addendum
Windows Vista Windows Vista Security Guide star1

Vulnerability Management Software
Hercules 3.5 Hercules 3.5 Security Configuration Guide

Web Browsers
Internet Explorer 5.5 Desktop Application Security ChecklistStar2
Desktop Application Security Technical Implementation Guide
Guide to Securing Internet Explorer 5.5 using Group
Internet Explorer 6 Desktop Application Security ChecklistStar2
Desktop Application Security TechnicalImplementation Guide
Netscape v7.02 Guide to Securing Netscape v7.02
Netscape v7.6.1 Desktop Application Security ChecklistStar2
Desktop Application Security Technical
Sun Microsystems Java Plug-in Security v1.4.2 Guide to Sun Microsystems Java Plug-in Security

Web Servers
Apache 1.3 and 2.0 Apache Benchmark for Unix, Levels I and II, Version 1.0
Web Apache Checklist, V6R1.2 star1
Generic Web Server Web Generic Checklist, V6R1.2 star1

IIS 4, 5,
WebSphere

WebServer Security Technical Implementation Guide

IIS 4, 5, 6
WebSphere

Web Server Checklist Procedures
Web IIS Checklist V6R0.1 star1

iPlanet

iPlanet Tomcat V6R1.2 star1

Wireless Networks
Apple Wireless Networks Apple Hardware addendum
Cisco Wireless Networks Cisco Hardware addendum
D-Link Wireless Networks DLink Hardware addendum
Linksys Wireless Networks Linksys Hardware addendum



NIST and the checklist submitter do not guarantee or warrant the checklist's accuracy or completeness. NIST is not responsible for loss, damage, or problems that may be caused by using the checklist.

Last updated: May 17, 2007
Page created: October 28, 2004

Disclaimer Notice & Privacy Statement / Security Notice
Send comments or suggestions to checklists@nist.gov
NIST is an Agency of the U.S. Commerce Department's Technology Administration