Court clerks who join Active Directory in the morning still cannot reach the case-management segment until the next day because NSX-T user mappings stay stale. What should the administrator do?
Select an answer to reveal the explanation.
Short Explanation
IDFW is a live nametag, not a phone book reprinted at midnight. Speed up directory sync and scrape domain-controller logon events so this morning’s new clerk shows up as a user, not as yesterday’s IP.
Full Explanation
Identity Firewall binds traffic to directory users and groups. NSX Manager directory sync refreshes membership, and event log scraping (with Guest Introspection where used) updates user-to-IP mappings at logon. A nightly IP CSV is static addressing, not IDFW. Access policies and slower LDAP dumps do not keep same-day joiners current on east-west rules.