City operators tag VLAN 40 on a VDS port group and treat that as identical to an NSX overlay segment. How should those two constructs be distinguished?
Select an answer to reveal the explanation.
Short Explanation
A VLAN tag is paint on the street; an overlay segment is a tunnel under the street. VLAN 40 on a VDS port group is 802.1Q on the wire. An NSX overlay segment uses Geneve and is not “just another VLAN ID.”
Full Explanation
A VLAN-backed vSphere port group applies an 802.1Q tag that the physical fabric must carry. An NSX overlay segment encapsulates tenant frames in Geneve between host tunnel endpoints and is not defined as another VLAN ID on the VDS. Raising MTU on a standard switch does not create an overlay segment. Distributed Firewall policy is security, not the definition of VLAN tagging versus Geneve overlay.