SV-251737r810078_rule
V-251737
SRG-NET-000074-FW-000009
T0FW-3X-000006
CAT III
10
From the NSX-T Manager web interface, go to Security >> Gateway Firewall >> Gateway Specific Rules.
For each Tier-0 Gateway and for each rule with logging disabled, click the gear icon, enable Logging, and then click "Apply".
After all changes are made, click "Publish".
If the Tier-0 Gateway is deployed in an Active/Active HA mode and no stateless rules exist, this is Not Applicable.
From the NSX-T Manager web interface, go to Security >> Gateway Firewall >> Gateway Specific Rules.
For each Tier-0 Gateway and for each rule, click the gear icon and verify the Logging setting.
If Logging is not Enabled, this is a finding.
V-251737
False
T0FW-3X-000006
If the Tier-0 Gateway is deployed in an Active/Active HA mode and no stateless rules exist, this is Not Applicable.
From the NSX-T Manager web interface, go to Security >> Gateway Firewall >> Gateway Specific Rules.
For each Tier-0 Gateway and for each rule, click the gear icon and verify the Logging setting.
If Logging is not Enabled, this is a finding.
M
5451