U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Palo Alto Networks Network Device Management (NDM) STIG Y22M10 Checklist Details (Checklist Revisions)

Supporting Resources:

Target:

Target CPE Name
Palo Alto Networks Network Device Management (NDM) cpe:/o:paloaltonetworks:pan-os (View CVEs)

Checklist Highlights

Checklist Name:
Palo Alto Networks Network Device Management (NDM) STIG
Checklist ID:
688
Version:
Y22M10
Type:
Compliance
Review Status:
Final
Authority:
Governmental Authority: Defense Information Systems Agency
Original Publication Date:
07/22/2016

Checklist Summary:

The Palo Alto Networks security platform is a "third-generation" or "next-generation" firewall. These devices are capable of inspecting the entire packet, including the payload, and making a forwarding decision based on configured policies. Although they may have proxy capabilities, unlike a proxy, connections do not terminate on the device. Instead, the Palo Alto Networks security platform is a wire-speed integrated network platform that performs deep inspection of traffic and blocking of attacks.

Checklist Role:

  • Enterprise Firewall
  • Firewall

Known Issues:

Not Provided

Target Audience:

This document is a requirement for all DoD administered systems and all systems connected to DoD networks. These requirements are designed to assist Security Managers (SMs), Information Assurance Managers (IAMs), Information Assurance Officers (IAOs), and System Administrators (SAs) with configuring and maintaining security controls. This guidance supports DoD system design, development, implementation, certification, and accreditation efforts.

Target Operational Environment:

  • Managed
  • Specialized Security-Limited Functionality (SSLF)

Testing Information:

Not Provided

Regulatory Compliance:

DoD Directive (DoDD) 8500.1

Comments/Warnings/Miscellaneous:

Comments or proposed revisions to this document should be sent via e-mail to the following address: disa.stig_spt@mail.mil. DISA Field Security Operations (FSO) will coordinate all change requests with the relevant DoD organizations before inclusion in this document.

Disclaimer:

Not Provided

Product Support:

Not Provided

Point of Contact:

disa.stig_spt@mail.mil

Sponsor:

Not Provided

Licensing:

Not Provided

Change History:

Updated to FINAL - 09/12/2016
Updated URL to reflect change to the DISA website - http --> https
null
null
updated title for a reference link - 5/24/18
updated reference title - 6/20/18
Updated URLs - 6/13/19
updated reference links per DISA website - 11/5/19
updated URLs per DISA - 1/21/2020
corrected resource title - 1/22/2020
updated per DISA - 10/28/2020
null
updated URLs - 4/27/2022
Updated resource per DISA - 10/28/22
updated URLs - 1/26/24

Dependency/Requirements:

URL Description

References:

Reference URL Description

NIST checklist record last modified on 01/26/2024