If no VPN gateway is enabled, the evaluation result is Compliant.

Scenarios

This configuration can help you prohibit VPN connections and implement centralized network management.

Risk level

Default risk level: high.

When you apply this rule, you can change the risk level based on your business requirements.

Compliance evaluation logic

  • If no VPN gateway is enabled, the evaluation result is Compliant.
  • If a VPN gateway is enabled, the evaluation result is Incompliant. For more information about how to remediate an incompliant configuration, see the "Incompliance remediation" section of this topic.

Rule details

ItemDescription
Rule namevpn-gateway-disable
Rule identifiervpn-gateway-disable
TagVPN and VpnGateway
Automatic remediationNot supported
Trigger typePeriodic execution
Evaluation frequencyInterval of 24 hours
Supported resource typeVPN gateways
Input parameterNone

Incompliance remediation

Disable VPN gateways. For more information, see What is VPN Gateway?.