Commit cfa4ab3a authored by JANSSEN; jeroen's avatar JANSSEN; jeroen
Browse files

Add placeholder for 5.2.8.7 MI-AUTH-6 Brute force protection

parent b95f54f9
Loading
Loading
Loading
Loading
+5 −1
Original line number Diff line number Diff line
@@ -571,7 +571,11 @@ The VPN service shall provide a method to force revocation, temporary or permane
* Verdict: Revoked client cannot access the VPN connection => PASS, otherwise FAIL
* Evidence: Logs or screenshots of authorization and revocation, packet capture

#### 5.2.8.7 Mapping of mitigations to risk factors and security profiles
#### 5.2.8.7 MI-AUTH-6 Brute force protection

> TODO: Write mitigation documenting that the operational environment must provide brute force protection.

#### 5.2.8.8 Mapping of mitigations to risk factors and security profiles

| Risk factors | Requires mitigations                   |
|--------------|----------------------------------------|