STIGQter STIGQter: STIG Summary: Symantec Edge SWG NDM Security Technical Implementation Guide Version: 1 Release: 2 Benchmark Date: 01 Apr 2026:

The Edge SWG must be configured with only one local account to be used as the account of last resort in the event the authentication server is unavailable.

DISA Rule

SV-279256r1170694_rule

Vulnerability Number

V-279256

Group Title

SRG-APP-000148-NDM-000346

Rule Version

SYME-ND-000590

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

1. Log in to the Edge SWG SSH CLI.
2. Enter "enable" and "configure terminal".
3. Issue the command "security local-user-list edit local".
4. To delete any local user, type "user delete <username> force".
5. Enter "view" to show any other users that may remain.

Check Contents

1. Log in to the Edge SWG SSH CLI.
2. Enter "enable" and "configure terminal".
3. Issue the command "show security local-user-list".

If any user exists in either the "local_user_database" or "local" list, this is a finding.

Note: The admin user is not included in either list as it is the emergency account of last resort.

Vulnerability Number

V-279256

Documentable

False

Rule Version

SYME-ND-000590

Severity Override Guidance

1. Log in to the Edge SWG SSH CLI.
2. Enter "enable" and "configure terminal".
3. Issue the command "show security local-user-list".

If any user exists in either the "local_user_database" or "local" list, this is a finding.

Note: The admin user is not included in either list as it is the emergency account of last resort.

Check Content Reference

M

Target Key

5726