Skip to content

Palo Alto Networks ALG Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • SRG-NET-000246-ALG-000132

    Group
  • The Palo Alto Networks security platform must update malicious code protection mechanisms and signature definitions whenever new releases are available in accordance with organizational configuration management policy and procedures.

    In order to minimize any potential negative impact to the organization caused by malicious code, malicious code must be identified and eradicated. Malicious code includes viruses, worms, Trojan hor...
    Rule Medium Severity
  • SRG-NET-000249-ALG-000134

    Group
  • SRG-NET-000249-ALG-000145

    Group
  • The Palo Alto Networks security platform must delete or quarantine malicious code in response to malicious code detection.

    Taking an appropriate action based on local organizational incident handling procedures minimizes the impact of this code on the network. This requirement is limited to ALGs web content filters and...
    Rule Medium Severity
  • SRG-NET-000249-ALG-000146

    Group
  • SRG-NET-000251-ALG-000131

    Group
  • SRG-NET-000288-ALG-000109

    Group
  • SRG-NET-000289-ALG-000110

    Group
  • The Palo Alto Networks security platform must prevent the download of prohibited mobile code.

    MMobile code is defined as software modules obtained from remote systems, transferred across a network, and then downloaded and executed on a local system without explicit installation or execution...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules