A school-clinic VDI desktop reaches the district EHR as the logged-on nurse, not as a service account. How should that flow be identified for NSX-T controls?
Select an answer to reveal the explanation.
Short Explanation
The nurse is walking to the records room, not a batch job with a service badge. That VDI-to-EHR path is user-driven east-west—Identity Firewall can key off the user, not just a static VM group.
Full Explanation
Interactive user sessions from VDI to an application are user-sourced east-west flows. Identity Firewall can bind Distributed Firewall rules to Active Directory users, which is the right classification versus static service-account groups. vMotion, Edge north-south, and Carbon Black groups do not replace identifying the user-driven overlay conversation.