STIGQter STIGQter: STIG Summary: Fortinet FortiGate Firewall NDM Security Technical Implementation Guide Version: 1 Release: 5 Benchmark Date: 05 Jan 2026:

The FortiGate device must record time stamps for audit records that can be mapped to Coordinated Universal Time (UTC) or Greenwich Mean Time (GMT).

DISA Rule

SV-234184r961443_rule

Vulnerability Number

V-234184

Group Title

SRG-APP-000374-NDM-000299

Rule Version

FGFW-ND-000125

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Log in to the FortiGate GUI with Super-Admin privilege.

1. Click System.
2. Go to Settings.
3. On Time Zone, select the time zone in which the FortiGate device is located.
4. Click Apply.

or

1. Open a CLI console, via SSH or available from the GUI.
2. Run the following command:

# config system global
# set timezone {TIMEZONE INDEX}
# end

Check Contents

Log in to the FortiGate GUI with Super-Admin privilege.

1. Click Log and Report.
2. Click Events.
3. On the Events page, double-click on an event for detail.
4. Verify in the log details that the mapped time zone reflects GMT.

If the time zone is not mapped to GMT, this is a finding.

Vulnerability Number

V-234184

Documentable

False

Rule Version

FGFW-ND-000125

Severity Override Guidance

Log in to the FortiGate GUI with Super-Admin privilege.

1. Click Log and Report.
2. Click Events.
3. On the Events page, double-click on an event for detail.
4. Verify in the log details that the mapped time zone reflects GMT.

If the time zone is not mapped to GMT, this is a finding.

Check Content Reference

M

Target Key

5260