NSX day two operations
Network administrators and security personnel often need to review network and security logs. This is often required for auditing or troubleshooting as well as security analysis.
VMware Cloud on AWS integrates all its logs in VMware Aria Operations for Logs.
This capability allows customers to analyze and troubleshoot their application flows using the visibility of packets corresponding to specific NSX firewall rules and have visibility of the connectivity establishment of VPNs. Once a firewall rule has been created on one of the gateways or the DFW firewall, logging can then be turned on directly from the rule by clicking on the right-hand side of the cogwheel and enabling Logging, as seen in the following screenshot:
Figure 6.56 – NSX-T firewall rule logging enabled
The rule ID can be seen in the ID field. In this example it is 1017, as seen in the following screenshot:
Figure 6.57 –...