STIGQter STIGQter: STIG Summary: Fortinet FortiGate Firewall NDM Security Technical Implementation Guide Version: 1 Release: 5 Benchmark Date: 05 Jan 2026:

The FortiGate device must conduct backups of system-level information contained in the information system when changes occur.

DISA Rule

SV-234195r961863_rule

Vulnerability Number

V-234195

Group Title

SRG-APP-000516-NDM-000340

Rule Version

FGFW-ND-000180

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Log in to the FortiGate GUI with Super-Admin privilege.

1. Open a CLI console, via SSH or available from the GUI.
2. Run the following command:
# config system global
# set revision-backup-on-logout enable
# end
3. Integrate FortiGate with FortiManager or the organization’s central backup server using SSH to pull saved backups.

Note: All backups performed by super admin contain global setting and settings for any VDOMs.

Check Contents

Log in to the FortiGate GUI with Super-Admin privilege.

1. Click the admin menu available on the upper right-hand corner of the screen.
2. Click Configuration.
3. Click Revisions.
4. Verify a list of saved backed-up configurations are available.

If saved backups of system configuration do not exist, this is a finding.

Vulnerability Number

V-234195

Documentable

False

Rule Version

FGFW-ND-000180

Severity Override Guidance

Log in to the FortiGate GUI with Super-Admin privilege.

1. Click the admin menu available on the upper right-hand corner of the screen.
2. Click Configuration.
3. Click Revisions.
4. Verify a list of saved backed-up configurations are available.

If saved backups of system configuration do not exist, this is a finding.

Check Content Reference

M

Target Key

5260