A brief discussion about Application Level Gateways and their use with vDefend Distributed Firewall
CuriousTechie: Hello IT Guy! I am implementing Distributed Firewall in my SDDC environment. I have created a DFW rule to allow FTP access on TCP port 21, users are able to login to FTP server but not able to move files around. Can you help me to troubleshoot this issue?
ITGuy: Sure! Can you show me the DFW rule you have created for the FTP access?
CuriousTechie: Here is the rule

ITGuy: The problem is evident! You are using a normal TCP port instead of an ALG.
Continue reading “Understanding ALGs with vDefend Distributed Firewall”