STIGQter STIGQter: STIG Summary: Virtual Private Network (VPN) Security Requirements Guide Version: 3 Release: 5 Benchmark Date: 01 Jul 2026:

The VPN Gateway must use Always On VPN connections for remote computing.

DISA Rule

SV-264336r1056131_rule

Vulnerability Number

V-264336

Group Title

SRG-NET-000230

Rule Version

SRG-NET-000230-VPN-002436

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the VPN Gateway to enable Always On VPN connections for all remote users. The remote client must not be able to access the internet without first establishing a VPN session with a DOD site.

Check Contents

Verify that the VPN Gateway uses an Always On VPN connection for remote computing.

If the VPN Gateway does not use an Always On VPN connection for remote computing, this is a finding.

Vulnerability Number

V-264336

Documentable

False

Rule Version

SRG-NET-000230-VPN-002436

Severity Override Guidance

Verify that the VPN Gateway uses an Always On VPN connection for remote computing.

If the VPN Gateway does not use an Always On VPN connection for remote computing, this is a finding.

Check Content Reference

M

Target Key

2920