A parks IDFW allow for the POS console never matches because the signed-in user is a local Windows account, not an Active Directory user. What should the administrator conclude?
Select an answer to reveal the explanation.
Short Explanation
IDFW looks up who you are in the directory, not a local nickname on the PC. A local Windows logon is invisible to that mapping. Put the clerk on an AD account or the rule never hits.
Full Explanation
NSX Identity Firewall matches directory (Active Directory) users and groups after NSX Manager is connected to the user directory. Local workstation accounts are not IDFW sources. Tagging, Carbon Black Cloud, and Workspace ONE UEM compliance do not turn a local logon into a directory identity for IDFW.