STIGQter STIGQter: STIG Summary: Symantec Edge SWG ALG Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 25 Nov 2025:

The Edge SWG must be configured to comply with the required TLS settings in NIST SP 800-52.

DISA Rule

SV-279178r1170664_rule

Vulnerability Number

V-279178

Group Title

SRG-NET-000062-ALG-000150

Rule Version

SYME-00-004300

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

1. In the Edge SWG Web UI, navigate to Configuration and SSL.
2. Select "SSL Proxy Settings".
3. Scroll down to "SSL Version Controls".
4. Under Client Connection, set the minimum version to "TLS 1.2" and maximum version to "TLS 1.3".
5. Under Server Connection, set the minimum version to "TLS 1.2" and maximum version to "TLS 1.3".
6. Click "Save and Apply".

Check Contents

1. In the Edge SWG Web UI, navigate to Configuration and SSL.
2. Select "SSL Proxy Settings".
3. Scroll down to "SSL Version Controls".

If the Minimum Client Control and Server Control are not set to TLS 1.2, this is a finding.

If the Maximum Client Control and Server Control are not set to TLS 1.3, this is a finding.

Vulnerability Number

V-279178

Documentable

False

Rule Version

SYME-00-004300

Severity Override Guidance

1. In the Edge SWG Web UI, navigate to Configuration and SSL.
2. Select "SSL Proxy Settings".
3. Scroll down to "SSL Version Controls".

If the Minimum Client Control and Server Control are not set to TLS 1.2, this is a finding.

If the Maximum Client Control and Server Control are not set to TLS 1.3, this is a finding.

Check Content Reference

M

Target Key

5725