During an audit month, courts must prove Environment-category Distributed Firewall denials on case-management VMs without flooding the SIEM for the rest of the year. What operational step should the administrator take?
Select an answer to reveal the explanation.
Short Explanation
Audit month is like turning the courthouse cameras on for a visitor walk-through, not ripping them out and not leaving every hallway mic live forever. Log the Environment denies while the auditors watch, then quiet the chatter that does not help.
Full Explanation
Managing NSX-T firewall policy includes enabling per-rule logging when evidence is required and tuning it afterward so SIEM noise does not hide real denials. Environment-category deny logs on the case-management groups are the right control-plane evidence for that audit window. Disabling DFW, substituting Tier-0 packet captures, or filing a managerial memo instead of product logs all fail the operational logging task.