SV-80593r1_rule
V-66103
SRG-NET-000019-RTR-000010
HFFS-RT-000004
CAT II
10
Configure a static route on the perimeter HP FlexFabric Switch to reach the AS of a HP FlexFabric Switch connecting to an Alternate Gateway.
[HP] ip route-static 11.11.11.0 16 12.12.12.2
Review the configuration of the HP FlexFabric Switch connecting to the AG.
Verify there are no BGP neighbors configured to the remote AS that belongs to the AG service provider. There should be no BGP peers displayed.
If there are BGP neighbors configured that belong to the AG service provider, this is a finding.
[HP] display bgp peer ipv4
BGP local FlexFabric Switch ID: 2.2.2.0
Local AS number: 1472
Total number of peers: 1 Peers in established state: 0
* - Dynamically created peer
Peer AS MsgRcvd MsgSent OutQ PrefRcv Up/Down State
V-66103
False
HFFS-RT-000004
Review the configuration of the HP FlexFabric Switch connecting to the AG.
Verify there are no BGP neighbors configured to the remote AS that belongs to the AG service provider. There should be no BGP peers displayed.
If there are BGP neighbors configured that belong to the AG service provider, this is a finding.
[HP] display bgp peer ipv4
BGP local FlexFabric Switch ID: 2.2.2.0
Local AS number: 1472
Total number of peers: 1 Peers in established state: 0
* - Dynamically created peer
Peer AS MsgRcvd MsgSent OutQ PrefRcv Up/Down State
M
2979