STIGQter STIGQter: STIG Summary: Palo Alto Networks NDM Security Technical Implementation Guide Version: 1 Release: 4 Benchmark Date: 24 Jan 2020:

The Palo Alto Networks security platform must not use Password Profiles.

DISA Rule

SV-77269r1_rule

Vulnerability Number

V-62779

Group Title

SRG-APP-000148-NDM-000246

Rule Version

PANW-NM-000142

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Go to Device >> Password Profiles
If the screen is blank (no configured Password Profiles), do nothing.

If there are configured Password Profiles, identify which accounts are using them and bring this to the attention of the ISSO immediately.
Delete the Password Profiles when authorized to make changes to the device in accordance with local change management policies.

Check Contents

Go to Device >> Password Profiles
If there are configured Password Profiles, this is a finding.

Vulnerability Number

V-62779

Documentable

False

Rule Version

PANW-NM-000142

Severity Override Guidance

Go to Device >> Password Profiles
If there are configured Password Profiles, this is a finding.

Check Content Reference

M

Target Key

2811

Comments