STIGQter STIGQter: STIG Summary: Virtual Private Network (VPN) Security Requirements Guide Version: 3 Release: 5 Benchmark Date: 01 Jul 2026:

For accounts using password authentication, the site-to-site VPN Gateway must use SHA-2 or later protocol to protect the integrity of the password authentication process.

DISA Rule

SV-207247r1207726_rule

Vulnerability Number

V-207247

Group Title

SRG-NET-000400

Rule Version

SRG-NET-000400-VPN-001940

Severity

CAT I

CCI(s)

Weight

10

Fix Recommendation

For accounts using password authentication, configure the VPN Gateway to use SHA-2 or later protocol to protect the integrity of the password authentication process.

Check Contents

For accounts using password authentication, verify the VPN Gateway uses SHA-2 or later protocol to protect the integrity of the password authentication process.

For accounts using password authentication, if the VPN Gateway does not use SHA-2 or later protocol to protect the integrity of the password authentication process, this is a finding.

Vulnerability Number

V-207247

Documentable

False

Rule Version

SRG-NET-000400-VPN-001940

Severity Override Guidance

For accounts using password authentication, verify the VPN Gateway uses SHA-2 or later protocol to protect the integrity of the password authentication process.

For accounts using password authentication, if the VPN Gateway does not use SHA-2 or later protocol to protect the integrity of the password authentication process, this is a finding.

Check Content Reference

M

Target Key

2920