Skip to main content
CUI

OCA Hostname Mapping

NIPR How it works: Each hostname can have multiple STIGs (e.g., a server might have Windows Server STIG, IIS STIG, and SQL Server STIG). Each hostname + STIG combination needs to be mapped to the appropriate OCA assessment area. For example, "WEBSERVER01" + "IIS STIG" maps to "Web Server" area, while "WEBSERVER01" + "Windows Server STIG" maps to "Windows OS" area.

7 hostname+STIG combinations  ·  6 unmapped combinations / 5 CKL files 1 mapped · 6 need attention

Needs Attention — 6 unmapped

6 unmapped combinations across 5 CKL files.

Review each hostname and CKL source file below. Use suggested mapping or override via dropdown before applying.

Hostname STIG Checklist Files (CKL) Area (Override Allowed) Apply / Cleanup
SCHR-P3-DP-001 Microsoft DotNet Framework 4.0 Security Technical Implementation Guide SCHR-P3-DP-001_DotNET4_V2R7_20260305-132722.cklb
Suggested: Other Review (you can override)
SCHR-P3-DP-001 Microsoft Edge Security Technical Implementation Guide SCHR-P3-DP-001_MSEdge_V2R4_20260305-132826.cklb
Suggested: Other Review (you can override)
SCHR-P3-DP-001 Microsoft IIS 10.0 Server Security Technical Implementation Guide SCHR-P3-DP-001_IIS10Server_V3R6_20260305-132942.cklb
Suggested: Web Server (you can override)
SCHR-P3-DP-001 Microsoft IIS 10.0 Server Security Technical Implementation Guide SCHR-P3-DP-001_IIS10Server_V3R6_20260305-132942.cklb
Suggested: Web Server (you can override)
SCHR-P3-DP-001 Microsoft IIS 10.0 Site Security Technical Implementation Guide SCHR-P3-DP-001_IIS10Site_Default_Web_Site_V2R14_20260305-133115.cklb
Suggested: Web Server (you can override)
SCHR-P3-DP-001 Microsoft Windows Server 2022 Security Technical Implementation Guide SCHR-P3-DP-001_WinServer2022_V2R7_20260305-133436.cklb
Suggested: Windows OS (you can override)

Bulk Map by STIG Benchmark

Quickly map all hostnames using the same STIG benchmark.

Add/Edit Mapping

Map a hostname + STIG combination to an OCA assessment area

✓ Auto-mapped — 1 combinations
Hostname STIG Current Area Override Remove
SCHR-P3-DP-001 Microsoft Windows Server 2022 Security Technical Implementation Guide Windows OS

OCA Assessment Areas Reference

Boundary Security
Firewalls, DMZ, perimeter security
Internal Network
Internal network switches, routers, VLANs
Combined Vulnerability Scan
ACAS/Nessus vulnerability scan results
Domain Name System
DNS servers and configuration
Host Based Security System
HBSS/Trellix endpoint security
Traditional Security
Physical security, access control
Wireless Communications/Mobility
WiFi, mobile devices
Cross Domain Solutions - Admin
CDS administrative controls
Cross Domain Solutions - Technical
CDS technical implementation
Exchange
Microsoft Exchange email servers
Web Server
IIS, Apache, web applications
Database
SQL Server, Oracle, database security
Video and Voice Over Internet Protocol (VVOIP)
VoIP phones, video conferencing
Windows OS
Windows workstations and servers
Unix OS
Linux, Unix, macOS systems
Releaseable Networks
Networks for coalition/external use
Virtual Environment
VMware, Hyper-V, containers
Other Review
Uncategorized or specialized systems
CUI