STIGQter STIGQter: STIG Summary: Symantec Edge SWG NDM Security Technical Implementation Guide Version: 1 Release: 2 Benchmark Date: 01 Apr 2026:

The Edge SWG must prohibit the use of cached authenticators after an organization-defined time period.

DISA Rule

SV-279270r1170571_rule

Vulnerability Number

V-279270

Group Title

SRG-APP-000400-NDM-000313

Rule Version

SYME-ND-000730

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

1. In the Edge SWG Web UI, navigate to the Configuration tab.
2. Select the "Authentication" and "Realms and Domains" areas.
3. Select the previously configured LDAP domain.
4. Click "Show" for "Advanced Settings".
5. Check "Use the same refresh time for all".
6. Under "Credential refresh time", add 10 seconds, or whatever the site requires.

Check Contents

1. Log in to the Edge SWG SSH CLI.
2. Enter "show realms".

If under LDAP Realm the "Authorization refresh", "Credentials refresh", and "Surrogates refresh" are not set to 10 seconds, or what the site requires, this is a finding.

Vulnerability Number

V-279270

Documentable

False

Rule Version

SYME-ND-000730

Severity Override Guidance

1. Log in to the Edge SWG SSH CLI.
2. Enter "show realms".

If under LDAP Realm the "Authorization refresh", "Credentials refresh", and "Surrogates refresh" are not set to 10 seconds, or what the site requires, this is a finding.

Check Content Reference

M

Target Key

5726