Skip to content

III - Administrative Sensitive

Rules and Groups employed by this XCCDF Profile

  • NET-SDN-012

    <GroupDescription></GroupDescription>
    Group
  • Quality of service (QoS) must be implemented on the underlying IP network to provide preferred treatment for traffic between the SDN controllers and SDN-enabled switches and hypervisors.

    &lt;VulnDiscussion&gt;With the network topology abstraction, the SDN controllers are able to determine how traffic should flow through network devi...
    Rule Low Severity
  • NET-SDN-013

    <GroupDescription></GroupDescription>
    Group
  • SDN controllers must be deployed as clusters and on separate physical hosts to eliminate single point of failure.

    &lt;VulnDiscussion&gt;SDN relies heavily on control messages between a controller and the forwarding devices for network convergence. The controlle...
    Rule Medium Severity
  • NET-SDN-014

    <GroupDescription></GroupDescription>
    Group
  • Physical devices hosting an SDN controller must be connected to two switches for high-availability.

    &lt;VulnDiscussion&gt;SDN relies heavily on control messages between a controller and the forwarding devices for network convergence. The controlle...
    Rule Low Severity
  • NET-SDN-015

    <GroupDescription></GroupDescription>
    Group
  • SDN-enabled routers and switches must rate limit the amount of unknown data plane packets that are punted to the SDN controller.

    &lt;VulnDiscussion&gt;SDN-enabled forwarding devices are dependent on the SDN controller for their forwarding tables as well as their configuration...
    Rule Low Severity
  • NET-SDN-016

    <GroupDescription></GroupDescription>
    Group
  • Servers hosting SDN controllers must have logging enabled.

    &lt;VulnDiscussion&gt;It is critical for both network and security personnel to be aware of the state of the SDN infrastructure to maintain network...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules