Mods

Policy: Azure > CIS v5.0 > 7 - Networking Services > 7.09 - Ensure 'Authentication type' is set to 'Azure Active Directory' only for Azure VPN Gateway point-to-site configuration

Configures auditing against a CIS Benchmark item.

Level: 2

VPN gateways should be configured to use Azure Active Directory (AAD) authentication only for Point-to-Site connections.

Using Azure Active Directory (AAD) for Point-to-Site VPN authentication provides centralized identity management, conditional access policies, and multi-factor authentication capabilities. This is more secure than using certificate-based authentication alone.

Targets

This policy targets the following resource types:

Primary Policy

This policy is used with the following primary policy:

Controls

Setting this policy configures this control:

Policy Specification

Schema Type
string
Default
Per Azure > CIS v5.0 > 07 - Networking Services
Valid Values [YAML]
  • Per Azure > CIS v5.0 > 07 - Networking Services
    
  • Skip
    
  • Check: Benchmark
    

Category

In Your Workspace

Developers