SV-207262r1138037_rule
V-207262
SRG-NET-000565
SRG-NET-000565-VPN-002400
CAT I
10
Configure the IPsec VPN Gateway IKE to use cryptography compliant with NSA/CSS parameters when transporting classified traffic across an unclassified network.
Verify the VPN gateway Internet Key Exchange (IKE) Phase 1 and Phase 2 are configured to use cryptography compliant with NSA/CSS parameters when transporting classified traffic across an unclassified network.
If the VPN gateway is not configured to use cryptography compliant with NSA/CSS parameters when transporting classified traffic across an unclassified network, this is a finding.
V-207262
False
SRG-NET-000565-VPN-002400
Verify the VPN gateway Internet Key Exchange (IKE) Phase 1 and Phase 2 are configured to use cryptography compliant with NSA/CSS parameters when transporting classified traffic across an unclassified network.
If the VPN gateway is not configured to use cryptography compliant with NSA/CSS parameters when transporting classified traffic across an unclassified network, this is a finding.
M
2920