If no VPN gateway is enabled, the evaluation result is Compliant.
Scenarios
This configuration can help you prohibit VPN connections and implement centralized network management.
Risk level
Default risk level: high.
When you apply this rule, you can change the risk level based on your business requirements.
Compliance evaluation logic
- If no VPN gateway is enabled, the evaluation result is Compliant.
- If a VPN gateway is enabled, the evaluation result is Incompliant. For more information about how to remediate an incompliant configuration, see the "Incompliance remediation" section of this topic.
Rule details
Item | Description |
---|---|
Rule name | vpn-gateway-disable |
Rule identifier | vpn-gateway-disable |
Tag | VPN and VpnGateway |
Automatic remediation | Not supported |
Trigger type | Periodic execution |
Evaluation frequency | Interval of 24 hours |
Supported resource type | VPN gateways |
Input parameter | None |
Incompliance remediation
Disable VPN gateways. For more information, see What is VPN Gateway?.