Skip to content

HP FlexFabric Switch RTR Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • If Border Gateway Protocol (BGP) is enabled on the HP FlexFabric Switch, the HP FlexFabric Switch must not be a BGP peer with a HP FlexFabric Switch from an Autonomous System belonging to any Alternate Gateway (AG).

    <VulnDiscussion>The perimeter router will not use a routing protocol to advertise NIPRNet addresses to Alternate Gateways. Most ISPs use Bord...
    Rule Medium Severity
  • SRG-NET-000131-RTR-000035

    <GroupDescription></GroupDescription>
    Group
  • The HP FlexFabric Switch must be configured to disable non-essential capabilities.

    &lt;VulnDiscussion&gt;A compromised router introduces risk to the entire network infrastructure as well as data resources that are accessible via t...
    Rule Medium Severity
  • SRG-NET-000025-RTR-000020

    <GroupDescription></GroupDescription>
    Group
  • The HP FlexFabric Switch must enable neighbor authentication for all control plane protocols.

    &lt;VulnDiscussion&gt;A rogue router could send a fictitious routing update to convince a site's perimeter router to send traffic to an incorrect o...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules