Courts Identity Firewall rules depend on Guest Introspection. A disaster-recovery test recovers case-management VMs, but user-based rules never hit because Guest Introspection is not deployed on the DR cluster. What should be added to DR prep?
Select an answer to reveal the explanation.
Short Explanation
Identity Firewall is a name-tag reader, and Guest Introspection is the scanner in the doorway. If DR never got the scanner, user rules go blind. Put GI on the DR cluster before the next failover test.
Full Explanation
NSX-T Identity Firewall for guest VMs depends on Guest Introspection components in VMware Tools (and the GI service on the cluster). If GI is missing at DR, user-based rules do not hit even when VMs recover. Static routes, stripping Tools, and Horizon Connection Servers do not restore IDFW. Include GI deployment in DR preparation.