VPN
Also known as: Virtual Private Network
Virtual Private Network — an encrypted tunnel that extends the trusted internal network across an untrusted network.
A Virtual Private Network (VPN) is a technology that creates an encrypted tunnel between a remote endpoint and the contractor's internal network, allowing the remote user to access in-scope resources as if they were physically on-premises. Common VPN technologies include IPsec, OpenVPN, WireGuard, and SSL VPNs (Cisco AnyConnect, Palo Alto GlobalProtect, Fortinet FortiClient).
For CMMC purposes, the VPN itself must implement FIPS-validated cryptography (SC.L2-3.13.11) and the access path must enforce MFA (AC.L2-3.1.13). Additionally, the VPN configuration must prevent split tunneling.
Stop Googling. Start working.
CMMCDocs has all 110 NIST SP 800-171 Rev 2 requirements built in — with the language, the templates, and the evidence vault you need. Spin up a free demo workspace and click around the way an assessor would.
Get my demo account
CMMCDocs.com