VMware Networking Community
ChrisOk
Enthusiast
Enthusiast
Jump to solution

[NSX-T 3.1.1] changing "default connectivity strategy"?

Hello,

we have problems getting micro segmentation up and running. Therefore we´d like to start from kind of beginning. Reading some older blogs from 2019 I found an screenshot talking about options to change "default connectivity strategy" which is new for me.

  • (We started with NSX-T 2.4 and updated step by step for getting bugfixes up and running. I cannot remember that option from earlier releases at all)
  • Screenshot from the blog:

policy-model.jpg

Well let´s look at my NSX-T 3.1.1 manager GUI there´s no such option:

NSX-T-3-1-1.png

Is that option deprecated with NSX-T 3.x? If not how can I activate it? We actually want to use the whitelisting approach.

Regards

0 Kudos
1 Solution

Accepted Solutions
shank89
Expert
Expert
Jump to solution

The option has been removed, you need to leverage firewall policies to create the type of behaviour that you would like.  

IE a catch all deny or permit, after filtering applications / workloads above.

Shashank Mohan

VCIX-NV 2022 | VCP-DCV2019 | CCNP Specialist

https://lab2prod.com.au
LinkedIn https://www.linkedin.com/in/shankmohan/
Twitter @ShankMohan
Author of NSX-T Logical Routing: https://link.springer.com/book/10.1007/978-1-4842-7458-3

View solution in original post

1 Reply
shank89
Expert
Expert
Jump to solution

The option has been removed, you need to leverage firewall policies to create the type of behaviour that you would like.  

IE a catch all deny or permit, after filtering applications / workloads above.

Shashank Mohan

VCIX-NV 2022 | VCP-DCV2019 | CCNP Specialist

https://lab2prod.com.au
LinkedIn https://www.linkedin.com/in/shankmohan/
Twitter @ShankMohan
Author of NSX-T Logical Routing: https://link.springer.com/book/10.1007/978-1-4842-7458-3