PERFORMANCE AUDIT REPORT U.S. EQUAL EMPLOYMENT OPPORTUNITY COMMISSION FEDERAL INFORMATION SECURITY MODERNIZATION ACT OF 2014 (FISMA) FOR THE FISCAL YEAR ENDING SEPTEMBER 30, 2022

We recommend that EEOC review and remediate the medium level severity vulnerabilities identified during external penetration testing by:

  • Disabling IKE Aggressive Mode if supported;
  • Refraining from the use of pre-shared authentication keys;
  • If using a pre-shared key cannot be avoided, use strong keys;
  • Do not allow VPN connections from an non-approved IP addresses, if possible.
Report Number
2022-001-AOIG
Report Type
Fiscal Year
2023
Open/Closed
On
Cost
$0