STIGQter STIGQter: STIG Summary: Virtual Private Network (VPN) Security Requirements Guide Version: 2 Release: 3 Benchmark Date: 23 Apr 2021:

The VPN Gateway must not accept certificates that have been revoked when using PKI for authentication.

DISA Rule

SV-207253r608988_rule

Vulnerability Number

V-207253

Group Title

SRG-NET-000512

Rule Version

SRG-NET-000512-VPN-002230

Severity

CAT I

CCI(s)

Weight

10

Fix Recommendation

Configure the VPN Gateway to not accept certificates that have been revoked when using PKI for authentication.

Check Contents

Verify the VPN Gateway does not accept certificates that have been revoked when using PKI for authentication.

If the VPN Gateway accepts certificates that have been revoked when using PKI for authentication, this is a finding.

Vulnerability Number

V-207253

Documentable

False

Rule Version

SRG-NET-000512-VPN-002230

Severity Override Guidance

Verify the VPN Gateway does not accept certificates that have been revoked when using PKI for authentication.

If the VPN Gateway accepts certificates that have been revoked when using PKI for authentication, this is a finding.

Check Content Reference

M

Target Key

2920

Comments