TNS Fortigate FortiOS Best Practices v2.0.0

Audit Details

Name: TNS Fortigate FortiOS Best Practices v2.0.0

Updated: 12/22/2023

Authority: TNS

Plugin: FortiGate

Revision: 1.10

Estimated Item Count: 88

File Details

Filename: TNS_Fortigate_Best_Practices_v2.0.0.audit

Size: 104 kB

MD5: 50dccc0a4b997938b991d634f1c1ada3
SHA256: 95c8007dde289dc5395de6bc35849324c3800cd63acb670d130296c1b624676f

Audit Changelog

 
Revision 1.10

Dec 22, 2023

Miscellaneous
  • Metadata updated.
Revision 1.9

Oct 6, 2023

Miscellaneous
  • References updated.
Removed
  • Fortigate - AV Heuristic - 'block'
  • Fortigate - Maintainer Account - 'disabled'
Revision 1.8

May 15, 2023

Functional Update
  • Fortigate - Password Complexity - at least 1 char
  • Fortigate - Password Complexity - length >= 8
Revision 1.7

Mar 27, 2023

Functional Update
  • Fortigate - AAA - LDAP server is trusted
  • Fortigate - AAA - RADIUS server is trusted
  • Fortigate - AAA - TACACS+ server is trusted
  • Fortigate - Admin access - trusted hosts
  • Fortigate - Review and disable unused interfaces
  • Fortigate - Review the NTP server configuration
  • Fortigate - Review users with admin privileges
Miscellaneous
  • References updated.
Revision 1.6

Mar 7, 2023

Miscellaneous
  • Metadata updated.
  • References updated.
Revision 1.5

Feb 9, 2023

Functional Update
  • Fortigate - DNS - primary server
  • Fortigate - DNS - secondary server
Revision 1.4

Jan 9, 2023

Functional Update
  • Fortigate - Password Complexity - 1 lowercase letter
  • Fortigate - Password Complexity - 1 non-alphanum character
  • Fortigate - Password Complexity - 1 uppercase letter
  • Fortigate - Password Complexity - 4 char difference
  • Fortigate - Password Complexity - at least 1 char
  • Fortigate - Password Complexity - length >= 8
  • Fortigate - Password Expiry date <= 30 days
  • Fortigate - Require that passwords expire
  • The device does not appear to support or is not configured for administrative password policy settings.
Miscellaneous
  • Metadata updated.
  • References updated.
Revision 1.3

Apr 25, 2022

Miscellaneous
  • Metadata updated.
  • References updated.
Revision 1.2

May 17, 2021

Miscellaneous
  • References updated.
Added
  • Fortigate - Close port TCP 113 on external interface
Removed
  • Fortigate - Open port TCP 113 on external interface
Revision 1.1

Feb 1, 2021

Miscellaneous
  • Metadata updated.
  • References updated.