6.5 Ensure passive DNS monitoring is set to enabled on all anti-spyware profiles in use

Information

Enable passive DNS monitoring within all anti-spyware profiles in use.

Rationale:

Enabling passive DNS monitoring improves PAN's threat prevention and threat intelligence capabilities. This is performed without source information delivered to PAN to ensure sensitive DNS information of the organization is not compromised.

Solution

Navigate to Device > Setup > Telemetry. Set Passive DNS Monitoring to enabled

Default Value:

Not Configured

See Also

https://workbench.cisecurity.org/benchmarks/8826

Item Details

Category: SYSTEM AND INFORMATION INTEGRITY

References: 800-53|SI-4, CSCv7|8, CSCv7|8.7

Plugin: Palo_Alto

Control ID: fff64fde95734a3cc9fbefc9caf8ee3edf13caa1571ff920173bbec3f0d3d1f8