CMMCDocsCMMCDocs.com

Home / Glossary / VPN

VPN

Also known as: Virtual Private Network

Virtual Private Network — an encrypted tunnel that extends the trusted internal network across an untrusted network.

A Virtual Private Network (VPN) is a technology that creates an encrypted tunnel between a remote endpoint and the contractor's internal network, allowing the remote user to access in-scope resources as if they were physically on-premises. Common VPN technologies include IPsec, OpenVPN, WireGuard, and SSL VPNs (Cisco AnyConnect, Palo Alto GlobalProtect, Fortinet FortiClient).

For CMMC purposes, the VPN itself must implement FIPS-validated cryptography (SC.L2-3.13.11) and the access path must enforce MFA (AC.L2-3.1.13). Additionally, the VPN configuration must prevent split tunneling.

Stop Googling. Start working.

CMMCDocs has all 110 NIST SP 800-171 Rev 2 requirements built in — with the language, the templates, and the evidence vault you need. Spin up a free demo workspace and click around the way an assessor would.

Get my demo account