The TLS VPN must be configured to limit authenticated client sessions to initial session source IP.
Overview
Finding ID
Version
Rule ID
IA Controls
Severity
V-264335
SRG-NET-000019-VPN-002435
SV-264335r984341_rule
Medium
Description
Limiting authenticated client sessions to the initial session source IP for TLS VPNs is a safeguard against session hijacking, replay, and man-in-the-middle attacks, maintaining integrity and confidentiality of communication between clients and servers.