Skip to content

VMware NSX-T Tier-0 Gateway RTR Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • Unicast Reverse Path Forwarding (uRPF) must be enabled on the NSX-T Tier-0 Gateway.

    A compromised host in an enclave can be used by a malicious platform to launch cyber attacks on third parties. This is a common practice in "botnets", which are a collection of compromised computer...
    Rule High Severity
  • SRG-NET-000230-RTR-000001

    Group
  • SRG-NET-000230-RTR-000002

    Group
  • The NSX-T Tier-0 Gateway must be configured to use a unique key for each autonomous system (AS) with which it peers.

    If the same keys are used between eBGP neighbors, the chance of a hacker compromising any of the BGP sessions increases. It is possible that a malicious user exists in one autonomous system who wou...
    Rule Medium Severity
  • SRG-NET-000362-RTR-000113

    Group

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules