STIGQter STIGQter: STIG Summary: Virtual Private Network (VPN) Security Requirements Guide Version: 3 Release: 5 Benchmark Date: 01 Jul 2026:

The VPN Gateway must renegotiate the IPsec security association (SA) after eight hours or less.

DISA Rule

SV-207237r987783_rule

Vulnerability Number

V-207237

Group Title

SRG-NET-000337

Rule Version

SRG-NET-000337-VPN-001290

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the VPN Gateway to renegotiate the IPsec security association after eight hours or less.

Check Contents

Verify the VPN Gateway renegotiates the IPsec security association after eight hours or less.

Vulnerability Number

V-207237

Documentable

False

Rule Version

SRG-NET-000337-VPN-001290

Severity Override Guidance

Verify the VPN Gateway renegotiates the IPsec security association after eight hours or less.

Check Content Reference

M

Target Key

2920