STIGQter STIGQter: STIG Summary: Symantec Edge SWG NDM Security Technical Implementation Guide Version: 1 Release: 2 Benchmark Date: 01 Apr 2026:

The Edge SWG must be configured to verify when users create or update passwords, and that the passwords are not found on the list of commonly used, expected, or compromised passwords in IA-5 (1) (a) for password-based authentication.

DISA Rule

SV-279283r1170595_rule

Vulnerability Number

V-279283

Group Title

SRG-APP-000845-NDM-000220

Rule Version

SYME-ND-001040

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

1. Log in to the Edge SWG SSH CLI.
2. Enter "enable" and "configure terminal".
3. Enter "security password-policy prohibit-common-words".

Check Contents

1. Log in to the Edge SWG SSH CLI.
2. Enter "show configuration".
3. Move down the configuration to the "security password-policy" section.

If the configuration "security password-policy" is not set to "prohibit-common-words", this is a finding.

Vulnerability Number

V-279283

Documentable

False

Rule Version

SYME-ND-001040

Severity Override Guidance

1. Log in to the Edge SWG SSH CLI.
2. Enter "show configuration".
3. Move down the configuration to the "security password-policy" section.

If the configuration "security password-policy" is not set to "prohibit-common-words", this is a finding.

Check Content Reference

M

Target Key

5726