1. Home
  2. Security Hardening
  3. DISA STIG Palo Alto Alg V2R2
  4. PANW-AG-000065 – The Palo Alto Networks security platform must automatically update malicious code protection mechanisms – Download Action

PANW-AG-000065 – The Palo Alto Networks security platform must automatically update malicious code protection mechanisms – Download Action

Details

Remote access is access to DoD nonpublic information systems by an authorized user (or an information system) communicating through an external, non-organization-controlled network. Remote access methods include broadband and wireless connections. Remote access methods include, for example, proxied remote encrypted traffic (e.g., TLS gateways, web content filters, and webmail proxies).

Solution

Go to Device >> Dynamic Updates; select ‘Check Now’ at the bottom of the page to retrieve the latest signatures.
To schedule automatic signature updates. Note: The steps provided below do not account for local change management policies.
Go to Device >> Dynamic Updates; select the text to the right of Schedule.
In the ‘Applications and Threat Updates Schedule’ window; complete the required information.
In the ‘Recurrence’ field, select Daily.
In the ‘Time’ field, enter the time at which you want the device to check for updates.
For the Action, select ‘Download and Install’.
Select ‘OK’.
Commit changes by selecting ‘Commit’ in the upper-right corner of the screen. Select ‘OK’ when the confirmation dialog appears.

If using Dynamic Updates is not possible due to mission requirements, implement a manual process.

Supportive Information

The following resource is also helpful.

This security hardening control applies to the following category of controls within NIST 800-53: System and Information Integrity.This control applies to the following type of system Palo_Alto.

References

Source

Updated on July 16, 2022
Was this article helpful?

Related Articles