Skip to content

SDN Using NV Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • NET-SDN-025

    <GroupDescription></GroupDescription>
    Group
  • A secondary IP address must be specified for the virtual tunnel endpoint (VTEP) loopback interface when Virtual Extensible Local Area Network (VXLAN) enabled switches are deployed as a multi-chassis configuration.

    &lt;VulnDiscussion&gt;A multi-chassis configuration (i.e., vPC domain, MLAG, MCLAG, etc.) can be used to attach a hypervisor host to a pair of VXLA...
    Rule Low Severity
  • NET-SDN-027

    <GroupDescription></GroupDescription>
    Group
  • Two or more edge gateways must be deployed connecting the network virtualization platform (NVP) and the physical network.

    &lt;VulnDiscussion&gt;An edge gateway is deployed to allow north-south traffic to flow between the virtualized network and the physical network, in...
    Rule Low Severity
  • NET-SDN-028

    <GroupDescription></GroupDescription>
    Group
  • Virtual edge gateways must be deployed across multiple hypervisor hosts.

    &lt;VulnDiscussion&gt;An edge gateway is deployed to allow north-south traffic to flow between the virtualized network and the physical network, in...
    Rule Low Severity
  • NET-SDN-029

    <GroupDescription></GroupDescription>
    Group
  • The virtual edge gateways must be deployed with routing adjacencies established with two or more physical routers.

    &lt;VulnDiscussion&gt;An edge gateway is deployed to allow north-south traffic to flow between the virtualized network and the physical network, in...
    Rule Low Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules