NSX SpoofGuard

Another powerful feature of NSX is SpoofGuard. The SpoofGuard feature will monitor and manage the IP address of a virtual machine. OK! Why do we need such a feature? If a virtual machine is compromised by chance, what are the outcomes? A hacker can certainly change the IP and bypass all firewall policies and the rest will be history. SpoofGuard gives us that granular control to ensure all IP changes are approved, until when traffic would be blocked. NSX Manager will collect the IP address of the virtual machines as long we have a VMware tool installed and running.

The following methods are supported in SpoofGuard:

  • Automatically trust IP assignments on their first use: This mode allows all traffic from your virtual machines to pass; ...

Get VMware NSX Network Essentials now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.