Recently I had an interesting conversation about implementing micro-segmentation using NSX Distributed Firewall and things to be careful about while implementation.
CuriousTechie: Hey, I was implementing Micro-segmentation in my Lab using DFW and I broke the Lab. Can you check if it can be fixed or I have to rebuild from scratch again!!
ITGuy: Let’s take a look at the problem and see if we can recover from it. What did you do?
CuriousTechie: I was testing micro-segmentation and changed the default rule to reject all traffic.
ITGuy: Let me guess..! You forgot it’s a collapsed cluster and you accidently locked away your NSX manager and vCenter ?
Continue reading “Broke my LAB with Distributed Firewall !!!”