Explorer

VPN, Cloud Services Banned By NIC For Government Employees: All You Need To Know

In May, the CERT-In had shared a directive on how VPN companies should operate in India.

New Delhi: Days after virtual private networks (VPN) such as ExpressVPN, Surfshark, and NordVPN pulled their servers from India, the government announced that its employees are barred from using third-party VPNs and anonymisation services offered by such firms. In May, the Indian Computer Emergency Response Team (CERT-In) had shared a directive on how VPN companies should operate in the country. The National Informatics Centre (NIC), which falls under the Ministry of Electronics and Information Technology (MeitY) has now come forward with a new set of guidelines.

Apart from barring government employees from using external VPNs, the NIC directive also urges workers to not save “any internal, restricted, or confidential government data files on any non-government cloud service such as Google Drive or Dropbox,” as reported by The Economic Times.

NIC’s internal document, titled “Cyber Security Guidelines for Government Employees,” stated, “In order to sensitise the government employees and contractual/outsourced resources and build awareness amongst them on what to do and what not to do from a cyber security perspective, these guidelines have been compiled.”

As per the NIC, the new guidelines are put into place to strengthen the government’s “security posture.”

Employees are also asked by the NIC not to root or jailbreak their phones. They are barred from using third-party scanner services such as CamScanner to scan internal government documents on their phones.

The directives are applicable to all government employees, “including temporary, contractual/outsourced resources are required to strictly adhere to the guidelines mentioned in the document.”

NIC also added, “Any non-compliance may be acted upon by the respective CISOs/Department heads.”

ALSO SEE: Will New CERT-In Rules Affect Users And VPN Players? Here's What NordVPN And Experts Say

In May, CERT-In asked VPN companies to collect and store extensive user data for at least five years, as it aims to reduce the gaps in responding to cybersecurity incidents. VPN providers will be required to collect and turn over user data that includes IP addresses assigned to users.

Earlier this month, ExpressVPN announced on Twitter, "ExpressVPN removes VPN servers in India. Users will still be able to connect to VPN server locations that will give them Indian IP addresses."

Top Headlines

Australia Sues Telegram Over Terror Content, Platform Faces $54.6 Million Fine
Australia Sues Telegram Over Terror Content, Platform Faces $54.6 Million Fine
OPINION | India May Follow France On Children's Social Media, But It Should Not Copy The Ban
OPINION | India May Follow France On Children's Social Media, But It Should Not Copy The Ban
Telegram Founder Pavel Durov Declared Wanted, Russia Files Terrorism-Linked Criminal Charges
Telegram Founder Pavel Durov Declared Wanted, Russia Files Terrorism-Linked Criminal Charges
Indian IT Stocks: From Covid Boom To AI Uncertainty, How Valuations Have Changed
Indian IT Stocks Were Market Darlings. Can AI Help Them Regain Lost Ground?

Videos

RELIGIOUS POLITICS ALERT: Kanwar Yatra Sparks Political Row, AIMIM Questions UP Government’s Arrangements
POLITICAL CONTROVERSY: Kangana Ranaut Faces Congress Protest Over ‘Gutter Generation’ Remark on Gen Z Women
BIG UPDATE FROM DELHI: PM Modi Holds High-Level Meeting With Senior Ministers, Amit Shah’s Absence Draws Attention
Pellet Gun Controversy: Pellet Gun Row Escalates as Opposition Cites Police Records, Government Denies Firing Allegations
Parliament: Anti-Paper Leak Bill in Rajya Sabha Amid Opposition Demand for Amit Shah’s Statement on Student Protest

Photo Gallery

25°C
New Delhi
Rain: 100mm
Humidity: 97%
Wind: WNW 47km/h
See Today's Weather
powered by
Accu Weather
Embed widget