Courts administrators notice vMotion of a case-management VM during host maintenance. Where should they classify that traffic when writing Distributed Firewall application policy?
Select an answer to reveal the explanation.
Short Explanation
vMotion is the moving van on the loading dock, not the clerks talking inside the courtroom app. It rides the VMkernel, so do not write Application Distributed Firewall on guest ports for it.
Full Explanation
vSphere vMotion uses a VMkernel interface and is host management traffic, not guest application east-west. Application-category Distributed Firewall rules attach to VM vNICs and do not govern vMotion. Identity Firewall user bindings and Gateway Firewall north-south classification also misplace that flow.