4.1 Ensure 'Antivirus Update Schedule' is set to download and install updates hourly

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

Set Antivirus Update Schedule to download and install updates hourly.

Rationale:

New antivirus definitions may be released at any time. With an hourly update schedule, the firewall can ensure threats with new definitions are quickly mitigated. A daily update schedule could leave an organization vulnerable to a known virus for nearly 24 hours, in a worst-case scenario. Setting an appropriate threshold value reduces the risk of a bad definition file negatively affecting traffic.

Solution

Navigate to Device > Dynamic Updates > Antivirus Update Schedule.
Set Action to Download and Install.
Set Recurrence to Hourly.

Default Value:

Not Configured

References:

'Tips for Managing Content Updates' - https://live.paloaltonetworks.com/docs/DOC-1578

'PAN-OS Administrator's Guide 9.0 (English) -Dynamic Content Updates' - https://docs.paloaltonetworks.com/pan-os/9-0/pan-os-admin/software-and-content-updates/dynamic-content-updates.html

'PAN-OS Administrator's Guide 9.0 (English) - Install Content Updates' - https://docs.paloaltonetworks.com/pan-os/9-0/pan-os-admin/software-and-content-updates/install-content-and-software-updates.html

See Also

https://workbench.cisecurity.org/files/2692