A city permitting web VM talks to a tax database VM on an NSX-T overlay. How should the administrator classify that conversation when choosing a firewall?
Select an answer to reveal the explanation.
Short Explanation
Two city-hall cubicles talking across the same floor are not a citizen walking in from the street. Permitting-web to tax-DB is east-west, so Distributed Firewall at the vNIC is the control that sees it—not the Edge gateway.
Full Explanation
VM-to-VM traffic on the NSX-T overlay is east-west and is enforced by the Distributed Firewall at the source and destination vNICs. Gateway Firewall is for north-south paths that enter or leave the overlay through an Edge. TOR ACLs and Workspace ONE Access do not classify overlay application conversations between two civic workloads.