STIGQter STIGQter: STIG Summary: Virtual Private Network (VPN) Security Requirements Guide Version: 2 Release: 3 Benchmark Date: 23 Apr 2021:

The VPN Gateway must electronically verify the Common Access Card (CAC) credential.

DISA Rule

SV-207240r608988_rule

Vulnerability Number

V-207240

Group Title

SRG-NET-000342

Rule Version

SRG-NET-000342-VPN-001360

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the VPN Gateway to electronically verify the CAC credential.

Check Contents

Verify the VPN Gateway electronically verifies the CAC credential.

If the VPN Gateway does not electronically verify Personal Identity Verification (PIV) credentials, this is a finding.

Vulnerability Number

V-207240

Documentable

False

Rule Version

SRG-NET-000342-VPN-001360

Severity Override Guidance

Verify the VPN Gateway electronically verifies the CAC credential.

If the VPN Gateway does not electronically verify Personal Identity Verification (PIV) credentials, this is a finding.

Check Content Reference

M

Target Key

2920

Comments