Checks whether the Border Gateway Protocol (BGP) connection status of Virtual Border Router (VBR) instances is normal. This rule does not apply if the Network Inspection (NIS) service is not enabled.
Threat level
Default threat level: Medium.
You can change the threat level based on your requirements.
Detection logic
-
A VBR instance is compliant if its BGP connection status is normal. This rule does not apply if the NIS service is not enabled.
Rule details
|
Parameter |
Description |
|
Rule name |
BGP connection status of VBR instances is normal |
|
Rule identifier |
|
|
Tag |
NIS |
|
Automatic remediation |
Not supported |
|
Rule trigger |
Periodic |
|
Trigger frequency |
24 hours |
|
Supported resource types |
ACS::ExpressConnect::VirtualBorderRouter |
|
Input parameters |
checkItemCode (Default value: item_ec_bgp_status_check) |
Remediation guide
To remediate a non-compliant VBR instance with an abnormal BGP connection status, see Network Inspection.