Is is it possible to protect my VMs' that have interfaces connected to a regular port group on a VDS? We have a second interface on a number of VMs that are able to talk to our physical backup appliance on the same VLAN. We want to prevent the VMs from communicating with each other through the backup interface by using the DFW. We feel better about not having our heaviest traffic flow through the Edge VMs so we do not want to use the N-VDS for those interfaces. Is our understanding of the N-VDS flawed? How can we protect interfaces that are not part of an N-VDS?