SV-265468r994754_rule
V-265468
SRG-NET-000512-RTR-000001
NT0R-4X-000091
CAT III
10
To configure a loopback interface, do the following:
From the NSX Manager web interface, go to Networking >> Connectivity >> Tier-0 Gateways and expand the target Tier-0 gateway.
Expand interfaces and click "Add Interface".
Enter a name, select "Loopback" as the Type, enter an IP address, select an Edge Node for the interface, then click "Save".
Note: More than one loopback may need to be configured depending on the routing architecture.
To set the source address for BGP neighbors, do the following:
From the NSX Manager web interface, go to Networking >> Connectivity >> Tier-0 Gateways >> expand the target Tier-0 gateway.
Expand BGP >> next to BGP Neighbors, click on the number present to open the dialog >> select "Edit" on the target BGP Neighbor.
Under Source Addresses, configure the source address with the loopback address and click "Save".
If the Tier-0 Gateway is not using iBGP, this is Not Applicable.
From the NSX Manager web interface, go to Networking >> Connectivity >> Tier-0 Gateways.
For every Tier-0 Gateway with BGP enabled, expand the Tier-0 Gateway.
Expand BGP, click on the number next to BGP Neighbors, then view the source address for each neighbor.
If the Source Address is not configured as the Tier-0 Gateway loopback address for the iBGP session, this is a finding.
V-265468
False
NT0R-4X-000091
If the Tier-0 Gateway is not using iBGP, this is Not Applicable.
From the NSX Manager web interface, go to Networking >> Connectivity >> Tier-0 Gateways.
For every Tier-0 Gateway with BGP enabled, expand the Tier-0 Gateway.
Expand BGP, click on the number next to BGP Neighbors, then view the source address for each neighbor.
If the Source Address is not configured as the Tier-0 Gateway loopback address for the iBGP session, this is a finding.
M
5634