SV-279691r1155072_rule
V-279691
SRG-APP-000033
OKTA-APP-003242
CAT II
10
From the Admin Console:
1. Select the "Security" menu, and then click the "Global Session Policy" item.
2. In the Policy Settings section, configure the "IF User's IP is" setting to correctly set the appropriate network to either allow or deny based on the Access Control Policy.
From the Admin Console:
1. Select the "Security" menu, and then click the "Global Session Policy" item.
2. In the "Policy Settings" section, verify the "IF User's IP is" setting is correctly set to either allow or deny based on the organization defined policy.
If the Okta Global Session Policy is not configured to restrict access to specific IP ranges, this is a finding.
V-279691
False
OKTA-APP-003242
From the Admin Console:
1. Select the "Security" menu, and then click the "Global Session Policy" item.
2. In the "Policy Settings" section, verify the "IF User's IP is" setting is correctly set to either allow or deny based on the organization defined policy.
If the Okta Global Session Policy is not configured to restrict access to specific IP ranges, this is a finding.
M
5694