VMware Cloud Community
Texiwill
Leadership
Leadership

Two DMZs, only 1 Logging

Hello,

I have two DMZs with 2 external NSX ESGs in use. The Default Route DMZ logged fine after I setup the rules properly (which rules depend on routing methods, NAT, BGP, or OSPF). The 2nd one did not work as it was not within the domain of the default route. It had another route mechanism. In order for this one to work I had to setup a route within the VRLI instance itself. There are three ways to do this:

via CLI:

ip route add target/Prefix gateway

echo "target gateway netwask" > /etc/sysconfig/network/ifroute-eth0

via YAST

pretty easy to figure out, go to network, then route, then add

via VAMI

/opt/vmware/share/vami/vami_config_net

I would like to see this capability added to the Administration screens within the UI as well.

Thank you,

Edward L. Haletky

--
Edward L. Haletky
vExpert XIV: 2009-2023,
VMTN Community Moderator
vSphere Upgrade Saga: https://www.astroarch.com/blogs
GitHub Repo: https://github.com/Texiwill
Labels (1)
0 Kudos
1 Reply
admin
Immortal
Immortal

This sounds like a feature request. Can you also post to loginsight.vmware.com ?

0 Kudos