1 Reply Latest reply on May 8, 2020 9:54 AM by KingMatthew

    If you were auditing your NSX environment, what is important to check?

    KingMatthew Lurker

      Hey Everyone,

       

      I am working to create a comprehensive list of vRNI or vROPs queries to make sure that everything in our NSX environment is accurate and working.  What would you check and what queries do you use for that?

        • 1. Re: If you were auditing your NSX environment, what is important to check?
          KingMatthew Lurker

          For example I found in vRNI that you can type in "Security" and there is a default query that returns great information. 

          • Firewall rule membership changes in the last day
          • Firewall config changes in the last day
          • Unused IPSets, Security Groups, Security Tags, etc.

           

           

          I assume we also want to understand backups and how NSX connects in the backend.  There is an event that can be alerted to within vRNI:

          One or more OSPF neighbors unreachable from NSX Edge router