An NSX administrator is reviewing syslog and notices that Distributed Firewall Rules hit counts are not being logged.
What could cause this issue?
An NSX administrator is reviewing syslog and notices that Distributed Firewall Rules hit counts are not being logged.
What could cause this issue?
The issue is likely because Distributed Firewall Rule logging is not enabled. Without enabled logging, the hit counts for the firewall rules will not be logged, irrespective of other configurations like Zero Trust Security or syslog setup on NSX Manager or ESXi transport nodes.
https://docs.vmware.com/en/VMware-NSX/4.0/administration/GUID-D57429A1-A0A9-42BE-A299-0C3C3546ABF3.html
Reference: https://www.stigviewer.com/stig/vmware_nsx-t_distributed_firewall/2022-09-01/finding/V-251730