Skip to content

Cisco ASA VPN Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • SRG-NET-000166-VPN-000580

    <GroupDescription></GroupDescription>
    Group
  • The Cisco ASA remote access VPN server must be configured to use a separate authentication server than that used for administrative access.

    &lt;VulnDiscussion&gt;The VPN interacts directly with public networks and devices and should not contain user authentication information for all us...
    Rule Medium Severity
  • SRG-NET-000320-VPN-001120

    <GroupDescription></GroupDescription>
    Group
  • The Cisco ASA remote access VPN server must be configured to use LDAP over SSL to determine authorization for granting access to the network.

    &lt;VulnDiscussion&gt;Protecting authentication communications between the client, the VPN Gateway, and the authentication server keeps this critic...
    Rule Medium Severity
  • SRG-NET-000138-VPN-000490

    <GroupDescription></GroupDescription>
    Group

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules