CIS Palo Alto Firewall 8 Benchmark L2 v1.0.0

Audit Details

Name: CIS Palo Alto Firewall 8 Benchmark L2 v1.0.0

Updated: 3/7/2023

Authority: CIS

Plugin: Palo_Alto

Revision: 1.8

Estimated Item Count: 13

File Details

Filename: CIS_Palo_Alto_Firewall_8_Benchmark_L2_v1.0.0.audit

Size: 52.7 kB

MD5: 4edfb0f567c5128a6b9db10796df32c8
SHA256: e1983c7509bac90591c5e6efeb44dde9c07b455d19b8cadbf675aaee1cf0bafd

Audit Items

DescriptionCategories
1.2.5 Ensure valid certificate is set for browser-based administrator interface - Authentication Profile

IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION

1.2.5 Ensure valid certificate is set for browser-based administrator interface - Certificate Profiles

IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION

1.2.5 Ensure valid certificate is set for browser-based administrator interface - Certificates

IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION

1.6.3 Ensure that the certificate securing Remote Access VPNs is valid - Certificates

SYSTEM AND COMMUNICATIONS PROTECTION

1.6.3 Ensure that the certificate securing Remote Access VPNs is valid - GlobalProtect Gateways

SYSTEM AND COMMUNICATIONS PROTECTION

1.6.3 Ensure that the certificate securing Remote Access VPNs is valid - GlobalProtect Portals

SYSTEM AND COMMUNICATIONS PROTECTION

2.1 Ensure that IP addresses are mapped to usernames - User ID Agents

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY

2.1 Ensure that IP addresses are mapped to usernames - Zones

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY

2.2 Ensure that WMI probing is disabled

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, SYSTEM AND INFORMATION INTEGRITY

6.17 Ensure that a Zone Prot Profile with tuned Flood Protection settings enabled

SYSTEM AND COMMUNICATIONS PROTECTION

7.1 Ensure application security policies exist when allowing traffic from an untrusted zone to a more trusted zone

ACCESS CONTROL

8.3 Ensure that the Certificate used for Decryption is Trusted

SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

CIS_Palo_Alto_Firewall_8_Benchmark_L2_v1.0.0.audit from CIS Palo Alto Firewall 8 Benchmark v1.0.0