Policy: Azure > CIS v5.0 > 7 - Networking Services > 7.09 - Ensure 'Authentication type' is set to 'Azure Active Directory' only for Azure VPN Gateway point-to-site configuration
Configures auditing against a CIS Benchmark item.
Level: 2
VPN gateways should be configured to use Azure Active Directory (AAD) authentication only for Point-to-Site connections.
Using Azure Active Directory (AAD) for Point-to-Site VPN authentication provides centralized identity management, conditional access policies, and multi-factor authentication capabilities. This is more secure than using certificate-based authentication alone.
Targets
This policy targets the following resource types:
Primary Policy
This policy is used with the following primary policy:
Controls
Setting this policy configures this control:
Policy Specification
Schema Type | |
|---|---|
Default | |
Valid Values [YAML] |
|
Category
In Your Workspace
Developers
- tmod:@turbot/cis#/control/categories/v071602
- tmod:@turbot/azure-cisv5-0#/policy/types/r0709
- turbot graphql policy-type --id "tmod:@turbot/azure-cisv5-0#/policy/types/r0709"
- turbot graphql policy-settings --filter "policyTypeId:tmod:@turbot/azure-cisv5-0#/policy/types/r0709"
Get Policy TypeGet Policy Settings
Category URI
Policy Type URI
GraphQL
CLI