NSX Installation Guide
  Overview of NSX
    NSX Components
      Data Plane
      Control Plane
      Management Plane
      Consumption Platform
    NSX Edge
    NSX Services
  Preparing for Installation
    System Requirements for NSX
    Ports and Protocols Required by NSX
    NSX and vSphere Distributed Switches
    Example: Working with a vSphere Distributed Switch
    NSX Installation Workflow and Sample Topology
    Cross-vCenter NSX and Enhanced Linked Mode
  Install the NSX Manager Virtual Appliance
  Register vCenter Server with NSX Manager
  Configure Single Sign On
  Configure a Syslog Server for NSX Manager
  Install and Assign NSX for vSphere License
  Deploy NSX Controller Cluster
  Exclude Virtual Machines from Firewall Protection
  Prepare Host Clusters for NSX
  Add a Host to a Prepared Cluster
  Remove a Host from an NSX Prepared Cluster
  Configure VXLAN Transport Parameters
  Assign a Segment ID Pool and Multicast Address Range
  Add a Transport Zone
  Add a Logical Switch
  Add a Distributed Logical Router
  Add an Edge Services Gateway
  Configure OSPF on a Logical (Distributed) Router
  Configure OSPF on an Edge Services Gateway
  Install Guest Introspection for Windows
  Uninstalling NSX Components
    Uninstall an NSX Edge Services Gateway or a Distributed Logical Router
    Uninstall a Logical Switch
    Uninstall NSX from Host Clusters
    Safely Remove an NSX Installation
  Overview of NSX
    NSX Components
      Data Plane
      Control Plane
      Management Plane
      Consumption Platform
    NSX Edge
    NSX Services
  Preparing for Installation
    System Requirements for NSX
    Ports and Protocols Required by NSX
    NSX and vSphere Distributed Switches
    Example: Working with a vSphere Distributed Switch
    NSX Installation Workflow and Sample Topology
    Cross-vCenter NSX and Enhanced Linked Mode
  Install the NSX Manager Virtual Appliance
  Register vCenter Server with NSX Manager
  Configure Single Sign On
  Configure a Syslog Server for NSX Manager
  Install and Assign NSX for vSphere License
  Deploy NSX Controller Cluster
  Exclude Virtual Machines from Firewall Protection
  Prepare Host Clusters for NSX
  Add a Host to a Prepared Cluster
  Remove a Host from an NSX Prepared Cluster
  Configure VXLAN Transport Parameters
  Assign a Segment ID Pool and Multicast Address Range
  Add a Transport Zone
  Add a Logical Switch
  Add a Distributed Logical Router
  Add an Edge Services Gateway
  Configure OSPF on a Logical (Distributed) Router
  Configure OSPF on an Edge Services Gateway
  Install Guest Introspection for Windows
  Uninstalling NSX Components
    Uninstall an NSX Edge Services Gateway or a Distributed Logical Router
    Uninstall a Logical Switch
    Uninstall NSX from Host Clusters
    Safely Remove an NSX Installation
Cross-vCenter NSX Installation Guide
  Overview of NSX
    NSX Components
      Data Plane
      Control Plane
      Management Plane
      Consumption Platform
    NSX Edge
    NSX Services
  Overview of Cross-vCenter Networking and Security
    Benefits of Cross-vCenter NSX
    How Cross-vCenter NSX Works
    Support Matrix for NSX Services in Cross-vCenter NSX
    Universal Controller Cluster
    Universal Transport Zone
    Universal Logical Switches
    Universal Logical (Distributed) Routers
    Universal Firewall Rules
    Universal Network and Security Objects
    Cross-vCenter NSX Topologies
      Multi-Site and Single Site Cross-vCenter NSX
      Local Egress
    Modifying NSX Manager Roles
  Preparing for Installation
    System Requirements for NSX
    Ports and Protocols Required by NSX
    NSX and vSphere Distributed Switches
    Example: Working with a vSphere Distributed Switch
    NSX Installation Workflow and Sample Topology
    Cross-vCenter NSX and Enhanced Linked Mode
  Tasks for Primary and Secondary NSX Managers
    Install the NSX Manager Virtual Appliance
    Configure Single Sign On
    Register vCenter Server with NSX Manager
    Configure a Syslog Server for NSX Manager
    Install and Assign NSX for vSphere License
    Exclude Virtual Machines from Firewall Protection
  Configuring the Primary NSX Manager
    Deploy NSX Controllers on the Primary NSX Manager
    Prepare Hosts on the Primary NSX Manager
    Configure VXLAN from the Primary NSX Manager
    Assign a Segment ID Pool and Multicast Address for the Primary NSX Manager
    Assign Primary Role to NSX Manager
    Assign a Universal Segment ID Pool and Universal Multicast Address on the Primary NSX Manager
    Add a Universal Transport Zone on the Primary NSX Manager
    Add a Universal Logical Switch on the Primary NSX Manager
    Connect Virtual Machines to a Logical Switch
    Add a Universal Logical (Distributed) Router on the Primary NSX Manager
  Configuring Secondary NSX Managers
    Add a Secondary NSX Manager
    Prepare Hosts on a Secondary NSX Manager
    Configure VXLAN from the Secondary NSX Manager
    Assign a Segment ID Pool and Multicast Address for a Secondary NSX Manager
    Add Clusters to the Universal Transport Zone
  After Configuring Primary and Secondary NSX Managers
  Uninstalling NSX Components
    Remove a Host from an NSX Prepared Cluster
    Uninstall an NSX Edge Services Gateway or a Distributed Logical Router
    Uninstall a Logical Switch
    Uninstall NSX from Host Clusters
    Safely Remove an NSX Installation
  Overview of NSX
    NSX Components
      Data Plane
      Control Plane
      Management Plane
      Consumption Platform
    NSX Edge
    NSX Services
  Overview of Cross-vCenter Networking and Security
    Benefits of Cross-vCenter NSX
    How Cross-vCenter NSX Works
    Support Matrix for NSX Services in Cross-vCenter NSX
    Universal Controller Cluster
    Universal Transport Zone
    Universal Logical Switches
    Universal Logical (Distributed) Routers
    Universal Firewall Rules
    Universal Network and Security Objects
    Cross-vCenter NSX Topologies
      Multi-Site and Single Site Cross-vCenter NSX
      Local Egress
    Modifying NSX Manager Roles
  Preparing for Installation
    System Requirements for NSX
    Ports and Protocols Required by NSX
    NSX and vSphere Distributed Switches
    Example: Working with a vSphere Distributed Switch
    NSX Installation Workflow and Sample Topology
    Cross-vCenter NSX and Enhanced Linked Mode
  Tasks for Primary and Secondary NSX Managers
    Install the NSX Manager Virtual Appliance
    Configure Single Sign On
    Register vCenter Server with NSX Manager
    Configure a Syslog Server for NSX Manager
    Install and Assign NSX for vSphere License
    Exclude Virtual Machines from Firewall Protection
  Configuring the Primary NSX Manager
    Deploy NSX Controllers on the Primary NSX Manager
    Prepare Hosts on the Primary NSX Manager
    Configure VXLAN from the Primary NSX Manager
    Assign a Segment ID Pool and Multicast Address for the Primary NSX Manager
    Assign Primary Role to NSX Manager
    Assign a Universal Segment ID Pool and Universal Multicast Address on the Primary NSX Manager
    Add a Universal Transport Zone on the Primary NSX Manager
    Add a Universal Logical Switch on the Primary NSX Manager
    Connect Virtual Machines to a Logical Switch
    Add a Universal Logical (Distributed) Router on the Primary NSX Manager
  Configuring Secondary NSX Managers
    Add a Secondary NSX Manager
    Prepare Hosts on a Secondary NSX Manager
    Configure VXLAN from the Secondary NSX Manager
    Assign a Segment ID Pool and Multicast Address for a Secondary NSX Manager
    Add Clusters to the Universal Transport Zone
  After Configuring Primary and Secondary NSX Managers
  Uninstalling NSX Components
    Remove a Host from an NSX Prepared Cluster
    Uninstall an NSX Edge Services Gateway or a Distributed Logical Router
    Uninstall a Logical Switch
    Uninstall NSX from Host Clusters
    Safely Remove an NSX Installation
NSX Administration Guide
  System Requirements for NSX
  Ports and Protocols Required by NSX
  Overview of NSX
    NSX Components
      Data Plane
      Control Plane
      Management Plane
      Consumption Platform
    NSX Edge
    NSX Services
  Overview of Cross-vCenter Networking and Security
    Benefits of Cross-vCenter NSX
    How Cross-vCenter NSX Works
    Support Matrix for NSX Services in Cross-vCenter NSX
    Universal Controller Cluster
    Universal Transport Zone
    Universal Logical Switches
    Universal Logical (Distributed) Routers
    Universal Firewall Rules
    Universal Network and Security Objects
    Cross-vCenter NSX Topologies
      Multi-Site and Single Site Cross-vCenter NSX
      Local Egress
    Modifying NSX Manager Roles
  Transport Zones
    Add a Transport Zone
    View and Edit a Transport Zone
    Expand a Transport Zone
    Contract a Transport Zone
    Controller Disconnected Operation (CDO) Mode
      Enable Controller Disconnected Operation (CDO) Mode
      Disable Controller Disconnected Operation (CDO) Mode
  Logical Switches
    Add a Logical Switch
      Add a Logical Switch
      Connect a Logical Switch to an NSX Edge
      Deploy Services on a Logical Switch
    Connect Virtual Machines to a Logical Switch
    Test Logical Switch Connectivity
    Prevent Spoofing on a Logical Switch
    Edit a Logical Switch
    Logical Switch Scenario
      John Admin Assigns Segment ID Pool and Multicast Address Range to NSX Manager
      John Admin Configures VXLAN Transport Parameters
      John Admin Adds a Transport Zone
      John Admin Creates a Logical Switch
  Configuring Hardware Gateway
    Scenario: Hardware Gateway Sample Configuration
      Set Up the Replication Cluster
      Connect the Hardware Gateway to the NSX Controllers
      Add Hardware Gateway Certificate
      Bind the Logical Switch to the Physical Switch
  L2 Bridges
    Add L2 Bridge
    Add L2 Bridge to a Logically Routed Environment
  Routing
    Add a Logical (Distributed) Router
    Add an Edge Services Gateway
    Specify Global Configuration
    NSX Edge Configuration
      Working with Certificates
        Configure a CA Signed Certificate
          Add a CA Certificate
        Configure a Self-Signed Certificate
        Using Client Certificates
        Add a Certificate Revocation List
      FIPS Mode
        Change FIPS Mode on NSX Edge
      Managing Appliances
        Add an Appliance
        Edit an Appliance
        Delete an Appliance
      Working with Interfaces
        Configure an Interface
        Delete an Interface
        Enable an Interface
        Disable an Interface
        Change Traffic Shaping Policy
      Add a Sub Interface
        Configure VLAN Trunk
      Change Auto Rule Configuration
      Change CLI Credentials
      About High Availability
        Change High Availability Configuration
      Force Sync NSX Edge with NSX Manager
      Configure Syslog Servers for NSX Edge
      View the Status of an NSX Edge
      Redeploy NSX Edge
      Download Tech Support Logs for NSX Edge
    Add a Static Route
    Configure OSPF on a Logical (Distributed) Router
    Configure OSPF on an Edge Services Gateway
    Configure BGP
    Configure Route Redistribution
    View the NSX Manager Locale ID
    Configure Locale ID on a Universal Logical (Distributed) Router
    Configure Locale ID on a Host or Cluster
  Logical Firewall
    Session Timers
      Create a Session Timer
        Edit a Session Timer
    Distributed Firewall
    Edge Firewall
    Working with Firewall Rule Sections
      Add a Firewall Rule Section
      Merge Firewall Rule Sections
      Delete a Firewall Rule Section
    Working with Firewall Rules
      Edit the Default Distributed Firewall Rule
      Add a Firewall Rule
      Firewall Rules with a Custom Layer 3 Protocol
      Load Firewall Configuration
      Add a Universal Firewall Rule
      Filter Firewall Rules
      Add a Rule and Publish It at a Later Time
      Change the Order of a Firewall Rule
      Delete a Firewall Rule
    Exclude Virtual Machines from Firewall Protection
    IP Discovery for Virtual Machines
      Change IP Detection Type
    View Firewall CPU and Memory Threshold Events
    Firewall Logs
    Working with NSX Edge Firewall Rules
      Edit the Default NSX Edge Firewall Rule
      Add an NSX Edge Firewall Rule
      Edit an NSX Edge Firewall Rule
      Change the Priority of an NSX Edge Firewall Rule
      Delete an NSX Edge Firewall Rule
      Managing NAT Rules
        Add an SNAT Rule
        Add a DNAT Rule
  Identity Firewall Overview
    Identity Firewall Workflow
  Working with Active Directory Domains
    Register a Windows Domain with NSX Manager
    Synchronize a Windows Domain with Active Directory
    Edit a Windows Domain
    Enable Security Read-Only Log Access on Windows 2008
    Verifying Directory Privileges
  Using SpoofGuard
    Create a SpoofGuard Policy
    Approve IP Addresses
    Edit an IP Address
    Clear an IP Address
  Virtual Private Networks (VPN)
    SSL VPN-Plus Overview
      Configure Network Access SSL VPN-Plus
        Add SSL VPN-Plus Server Settings
        Add an IP Pool
        Add a Private Network
        Add Authentication
        Add Installation Package
        Add a User
        Enable the SSL VPN-Plus Service
        Add a Script
        Install SSL Client on Remote Site
      SSL VPN-Plus Logs
      Edit Client Configuration
      Edit General Settings
      Edit Web Portal Design
      Working with IP Pools
        Edit an IP Pool
        Delete an IP Pool
        Enable an IP Pool
        Disable an IP Pool
        Change the Order of an IP Pool
      Working with Private Networks
        Delete a Private Network
        Enable a Private Network
        Disable a Private Network
        Change the Sequence of a Private Network
      Working with Installation Packages
        Edit an Installation Package
        Delete an Installation Package
      Working with Users
        Edit a User
        Delete a User
        Change the Password for a User
      Working with Login and Logoff Scripts
        Edit a Script
        Delete a Script
        Enable a Script
        Disable a Script
        Change the Order of a Script
    IPSec VPN Overview
      Configuring IPSec VPN Service
        Enable IPSec VPN Service
        Use OpenSSL to Generate CA-Signed Certificates for IPSec VPNs
        Specify Global IPSec VPN Configuration
        Enable Logging for IPSec VPN
        Configure IPSec VPN Parameters
      Edit IPSec VPN Service
      Disable IPSec Service
      Delete IPSec Service
    L2 VPN Overview
      Configuring L2 VPN
        L2 VPN Best Practices
          L2VPN Options to Mitigate Looping
          Configure a Sink Port
      Configure L2 VPN Server
      Add Peer Sites
      Enable L2 VPN Service on Server
      Configure L2 VPN Client
      Enable L2 VPN Service on Client
    Configure Standalone Edge as L2 VPN Client
    View L2 VPN Statistics
  Logical Load Balancer
    Setting Up Load Balancing
      Configure Load Balancer Service
      Create a Service Monitor
      Add a Server Pool
      Create an Application Profile
      Add an Application Rule
        Application Rule Examples
      Add Virtual Servers
    Managing Application Profiles
      Edit an Application Profile
      Configure SSL Termination for a Load Balancer
      Delete an Application Profile
    Managing Service Monitors
      Edit a Service Monitor
      Delete a Service Monitor
    Managing Server Pools
      Edit a Server Pool
      Configure a Load Balancer to Use Transparent Mode
      Delete a Server Pool
      Show Pool Statistics
    Managing Virtual Servers
      Edit a Virtual Server
      Delete a Virtual Server
    Managing Application Rules
      Edit an Application Rule
      Delete an Application Rule
    Load Balance Web Servers using NTLM Authentication
    Scenarios for NSX Load Balancer Configuration
      Configure a One-Armed Load Balancer
      Scenario: Configure NSX Load Balancer for Platform Service Controller
      Scenario: SSL Offloading
        Example: Certificate and Private Key
      Scenario: Import SSL Certificate
      Scenario: SSL Passthrough
      Scenario: SSL Client and Server Authentication
  Other Edge Services
    Managing DHCP Service
      Add a DHCP IP Pool
      Enable the DHCP Service
      Edit DHCP IP Pool
      Add a DHCP Static Binding
      Edit DHCP Binding
    Configuring DHCP Relay
      Add DHCP Relay Server
      Add Relay Agents
    Configure DNS Servers
  Service Composer
    Using Service Composer
      Create a Security Group in Service Composer
      Create a Security Policy
        Edit Service Composer Firewall Applied To Setting
      Apply a Security Policy to a Security Group
    Graphical View of Service Composer
    Working with Security Tags
      Unique ID Selection
      View Applied Security Tags
      Create a Security Tag
      Assign a Security Tag
      Edit a Security Tag
      Delete a Security Tag
    Viewing Effective Services
      View Effective Services on a Security Policy
      View Service Failures for a Security Policy
      View Effective Services on a Virtual Machine
    Working with Security Policies
      Manage Security Policy Priority
      Edit a Security Policy
      Delete a Security Policy
    Service Composer Scenarios
      Quarantining Infected Machines Scenario
      Backing up Security Configurations
  Guest Introspection
    Install Guest Introspection for Windows
      Install VMware Tools on the Windows Guest Virtual Machine
    Install Guest Introspection for Linux
    View Guest Introspection Status
    Guest Introspection Alarms
      Host Alarms
      SVM Alarms
    Guest Introspection Events
    Guest Introspection Audit Messages
    Collecting Guest Introspection Troubleshooting Data
    Uninstall a Guest Introspection Module
      Uninstall Guest Introspection for Linux
  Network Extensibility
    Distributed Service Insertion
    Edge-Based Service Insertion
    Integrating Third Party Services
    Deploy a Partner Service
    Consuming Vendor Services through Service Composer
    Redirecting Traffic to a Vendor Solution through Logical Firewall
    Using a Partner Load Balancer
    Remove Third-Party Integration
  User Management
    NSX Users and Permissions by Feature
    Configure Single Sign On
    Managing User Rights
    Managing the Default User Account
    Assign a Role to a vCenter User
    Edit a User Account
    Change a User Role
    Disable or Enable a User Account
    Delete a User Account
  Network and Security Objects
    Working with IP Address Groups
      Create an IP Address Group
      Edit an IP Address Group
      Delete an IP Address Group
    Working with MAC Address Groups
      Create a MAC Address Group
      Edit a MAC Address Group
      Delete a MAC Address Group
    Working with IP Pools
      Create an IP Pool
      Edit an IP Pool
      Delete IP Pool
    Working with Security Groups
      Create a Security Group
      Edit a Security Group
      Delete a Security Group
    Working with Services and Service Groups
      Create a Service
      Create a Service Group
      Edit a Service or Service Group
      Delete a Service or Service Group
  Operations and Management
    NSX Dashboard
    NSX Controller
      Change Controller Password
      Configure a Syslog Server for NSX Controller
      Download Technical Support Logs for NSX Controller
    Change VXLAN Port
    Check Communication Channel Health
    Customer Experience Improvement Program
      Edit the Customer Experience Improvement Program Option
    System Events and Audit Logs
      About NSX Logs
      Using NSX Ticket Logger
      View the System Event Report
      NSX Manager Virtual Appliance Events
      About the Syslog Format
      View the Audit Log
    Management System Settings
      Log In to the NSX Manager Virtual Appliance
      Edit the NSX Manager Date and Time
      Configure a Syslog Server for NSX Manager
      Change FIPS Mode and TLS Settings on NSX Manager
      Edit DNS Servers
      Edit Lookup Service Details
      Edit vCenter Server
      Download Technical Support Logs for NSX
      NSX Manager SSL Certification
        Use the Built-In CSR Generator
        Convert the NSX Manager Certificate File to PKCS#12 Format
        Import an SSL Certificate
    Working with SNMP Traps
      Configure SNMP Settings
      Verify SNMP Trap Configuration
      Edit System Traps
    NSX Backup and Restore
      Back Up NSX Manager Data
        Restore an NSX Manager Backup
      Back Up NSX Edges
      Back Up vSphere Distributed Switches
      Back Up vCenter
    Flow Monitoring
      View Flow Monitoring Data
      Change the Date Range of the Flow Monitoring Charts
      Add or Edit a Firewall Rule from the Flow Monitoring Report
      View Live Flow
      Configure Flow Monitoring Data Collection
    Application Rule Manager
      Create a Monitoring Session
      Analyze Flows
      Flow Consolidation and Customization
      Customizing Services in Flow Records
      Customizing Source and Destination in Flow Records
      Creating Firewall Rules from Application Rule Manager
      Publishing and Managing Firewall Rules From Application Rule Manager
    NSX Edge VPN Configuration Examples
      Terminology
      IKE Phase 1 and Phase 2
      Configuring IPSec VPN Service Example
        Configure NSX Edge VPN Parameters Example
        Enable IPSec VPN Service Example
      Using a Cisco 2821 Integrated Services Router
      Using a Cisco ASA 5510
      Configuring a WatchGuard Firebox X500
      Troubleshooting NSX Edge Configuration Example
        Successful Negotiation (both Phase 1 and Phase 2)
        Phase 1 Policy Not Matching
        Phase 2 Not Matching
        PFS Mismatch
        PSK not Matching
        Packet Capture for a Successful Negotiation
    Activity Monitoring
      Set Up Activity Monitoring
      Activity Monitoring Scenarios
        User Access to Applications
        Applications on Datacenter
        Verify Open Ports
      Enable Data Collection
        Enable Data Collection on a Single Virtual Machine
        Enable Data Collection for Multiple Virtual Machines
      View Virtual Machine Activity Report
      View Inbound Activity
      View Outbound Activity
      View Interaction between Inventory Containers
      View Outbound AD Group Activity
      Override Data Collection
    Endpoint Monitoring Data Collection
      Endpoint Monitoring
    Traceflow
      About Traceflow
      Use Traceflow for Troubleshooting
  NSX Edge VPN Configuration Examples
    Terminology
    IKE Phase 1 and Phase 2
    Configuring IPSec VPN Service Example
      Configure NSX Edge VPN Parameters Example
      Enable IPSec VPN Service Example
    Using a Cisco 2821 Integrated Services Router
    Using a Cisco ASA 5510
    Configuring a WatchGuard Firebox X500
    Troubleshooting NSX Edge Configuration Example
      Successful Negotiation (both Phase 1 and Phase 2)
      Phase 1 Policy Not Matching
      Phase 2 Not Matching
      PFS Mismatch
      PSK not Matching
      Packet Capture for a Successful Negotiation
  System Requirements for NSX
  Ports and Protocols Required by NSX
  Overview of NSX
    NSX Components
      Data Plane
      Control Plane
      Management Plane
      Consumption Platform
    NSX Edge
    NSX Services
  Overview of Cross-vCenter Networking and Security
    Benefits of Cross-vCenter NSX
    How Cross-vCenter NSX Works
    Support Matrix for NSX Services in Cross-vCenter NSX
    Universal Controller Cluster
    Universal Transport Zone
    Universal Logical Switches
    Universal Logical (Distributed) Routers
    Universal Firewall Rules
    Universal Network and Security Objects
    Cross-vCenter NSX Topologies
      Multi-Site and Single Site Cross-vCenter NSX
      Local Egress
    Modifying NSX Manager Roles
  Transport Zones
    Add a Transport Zone
    View and Edit a Transport Zone
    Expand a Transport Zone
    Contract a Transport Zone
    Controller Disconnected Operation (CDO) Mode
      Enable Controller Disconnected Operation (CDO) Mode
      Disable Controller Disconnected Operation (CDO) Mode
  Logical Switches
    Add a Logical Switch
      Add a Logical Switch
      Connect a Logical Switch to an NSX Edge
      Deploy Services on a Logical Switch
    Connect Virtual Machines to a Logical Switch
    Test Logical Switch Connectivity
    Prevent Spoofing on a Logical Switch
    Edit a Logical Switch
    Logical Switch Scenario
      John Admin Assigns Segment ID Pool and Multicast Address Range to NSX Manager
      John Admin Configures VXLAN Transport Parameters
      John Admin Adds a Transport Zone
      John Admin Creates a Logical Switch
  Configuring Hardware Gateway
    Scenario: Hardware Gateway Sample Configuration
      Set Up the Replication Cluster
      Connect the Hardware Gateway to the NSX Controllers
      Add Hardware Gateway Certificate
      Bind the Logical Switch to the Physical Switch
  L2 Bridges
    Add L2 Bridge
    Add L2 Bridge to a Logically Routed Environment
  Routing
    Add a Logical (Distributed) Router
    Add an Edge Services Gateway
    Specify Global Configuration
    NSX Edge Configuration
      Working with Certificates
        Configure a CA Signed Certificate
          Add a CA Certificate
        Configure a Self-Signed Certificate
        Using Client Certificates
        Add a Certificate Revocation List
      FIPS Mode
        Change FIPS Mode on NSX Edge
      Managing Appliances
        Add an Appliance
        Edit an Appliance
        Delete an Appliance
      Working with Interfaces
        Configure an Interface
        Delete an Interface
        Enable an Interface
        Disable an Interface
        Change Traffic Shaping Policy
      Add a Sub Interface
        Configure VLAN Trunk
      Change Auto Rule Configuration
      Change CLI Credentials
      About High Availability
        Change High Availability Configuration
      Force Sync NSX Edge with NSX Manager
      Configure Syslog Servers for NSX Edge
      View the Status of an NSX Edge
      Redeploy NSX Edge
      Download Tech Support Logs for NSX Edge
    Add a Static Route
    Configure OSPF on a Logical (Distributed) Router
    Configure OSPF on an Edge Services Gateway
    Configure BGP
    Configure Route Redistribution
    View the NSX Manager Locale ID
    Configure Locale ID on a Universal Logical (Distributed) Router
    Configure Locale ID on a Host or Cluster
  Logical Firewall
    Session Timers
      Create a Session Timer
        Edit a Session Timer
    Distributed Firewall
    Edge Firewall
    Working with Firewall Rule Sections
      Add a Firewall Rule Section
      Merge Firewall Rule Sections
      Delete a Firewall Rule Section
    Working with Firewall Rules
      Edit the Default Distributed Firewall Rule
      Add a Firewall Rule
      Firewall Rules with a Custom Layer 3 Protocol
      Load Firewall Configuration
      Add a Universal Firewall Rule
      Filter Firewall Rules
      Add a Rule and Publish It at a Later Time
      Change the Order of a Firewall Rule
      Delete a Firewall Rule
    Exclude Virtual Machines from Firewall Protection
    IP Discovery for Virtual Machines
      Change IP Detection Type
    View Firewall CPU and Memory Threshold Events
    Firewall Logs
    Working with NSX Edge Firewall Rules
      Edit the Default NSX Edge Firewall Rule
      Add an NSX Edge Firewall Rule
      Edit an NSX Edge Firewall Rule
      Change the Priority of an NSX Edge Firewall Rule
      Delete an NSX Edge Firewall Rule
      Managing NAT Rules
        Add an SNAT Rule
        Add a DNAT Rule
  Identity Firewall Overview
    Identity Firewall Workflow
  Working with Active Directory Domains
    Register a Windows Domain with NSX Manager
    Synchronize a Windows Domain with Active Directory
    Edit a Windows Domain
    Enable Security Read-Only Log Access on Windows 2008
    Verifying Directory Privileges
  Using SpoofGuard
    Create a SpoofGuard Policy
    Approve IP Addresses
    Edit an IP Address
    Clear an IP Address
  Virtual Private Networks (VPN)
    SSL VPN-Plus Overview
      Configure Network Access SSL VPN-Plus
        Add SSL VPN-Plus Server Settings
        Add an IP Pool
        Add a Private Network
        Add Authentication
        Add Installation Package
        Add a User
        Enable the SSL VPN-Plus Service
        Add a Script
        Install SSL Client on Remote Site
      SSL VPN-Plus Logs
      Edit Client Configuration
      Edit General Settings
      Edit Web Portal Design
      Working with IP Pools
        Edit an IP Pool
        Delete an IP Pool
        Enable an IP Pool
        Disable an IP Pool
        Change the Order of an IP Pool
      Working with Private Networks
        Delete a Private Network
        Enable a Private Network
        Disable a Private Network
        Change the Sequence of a Private Network
      Working with Installation Packages
        Edit an Installation Package
        Delete an Installation Package
      Working with Users
        Edit a User
        Delete a User
        Change the Password for a User
      Working with Login and Logoff Scripts
        Edit a Script
        Delete a Script
        Enable a Script
        Disable a Script
        Change the Order of a Script
    IPSec VPN Overview
      Configuring IPSec VPN Service
        Enable IPSec VPN Service
        Use OpenSSL to Generate CA-Signed Certificates for IPSec VPNs
        Specify Global IPSec VPN Configuration
        Enable Logging for IPSec VPN
        Configure IPSec VPN Parameters
      Edit IPSec VPN Service
      Disable IPSec Service
      Delete IPSec Service
    L2 VPN Overview
      Configuring L2 VPN
        L2 VPN Best Practices
          L2VPN Options to Mitigate Looping
          Configure a Sink Port
      Configure L2 VPN Server
      Add Peer Sites
      Enable L2 VPN Service on Server
      Configure L2 VPN Client
      Enable L2 VPN Service on Client
    Configure Standalone Edge as L2 VPN Client
    View L2 VPN Statistics
  Logical Load Balancer
    Setting Up Load Balancing
      Configure Load Balancer Service
      Create a Service Monitor
      Add a Server Pool
      Create an Application Profile
      Add an Application Rule
        Application Rule Examples
      Add Virtual Servers
    Managing Application Profiles
      Edit an Application Profile
      Configure SSL Termination for a Load Balancer
      Delete an Application Profile
    Managing Service Monitors
      Edit a Service Monitor
      Delete a Service Monitor
    Managing Server Pools
      Edit a Server Pool
      Configure a Load Balancer to Use Transparent Mode
      Delete a Server Pool
      Show Pool Statistics
    Managing Virtual Servers
      Edit a Virtual Server
      Delete a Virtual Server
    Managing Application Rules
      Edit an Application Rule
      Delete an Application Rule
    Load Balance Web Servers using NTLM Authentication
    Scenarios for NSX Load Balancer Configuration
      Configure a One-Armed Load Balancer
      Scenario: Configure NSX Load Balancer for Platform Service Controller
      Scenario: SSL Offloading
        Example: Certificate and Private Key
      Scenario: Import SSL Certificate
      Scenario: SSL Passthrough
      Scenario: SSL Client and Server Authentication
  Other Edge Services
    Managing DHCP Service
      Add a DHCP IP Pool
      Enable the DHCP Service
      Edit DHCP IP Pool
      Add a DHCP Static Binding
      Edit DHCP Binding
    Configuring DHCP Relay
      Add DHCP Relay Server
      Add Relay Agents
    Configure DNS Servers
  Service Composer
    Using Service Composer
      Create a Security Group in Service Composer
      Create a Security Policy
        Edit Service Composer Firewall Applied To Setting
      Apply a Security Policy to a Security Group
    Graphical View of Service Composer
    Working with Security Tags
      Unique ID Selection
      View Applied Security Tags
      Create a Security Tag
      Assign a Security Tag
      Edit a Security Tag
      Delete a Security Tag
    Viewing Effective Services
      View Effective Services on a Security Policy
      View Service Failures for a Security Policy
      View Effective Services on a Virtual Machine
    Working with Security Policies
      Manage Security Policy Priority
      Edit a Security Policy
      Delete a Security Policy
    Service Composer Scenarios
      Quarantining Infected Machines Scenario
      Backing up Security Configurations
  Guest Introspection
    Install Guest Introspection for Windows
      Install VMware Tools on the Windows Guest Virtual Machine
    Install Guest Introspection for Linux
    View Guest Introspection Status
    Guest Introspection Alarms
      Host Alarms
      SVM Alarms
    Guest Introspection Events
    Guest Introspection Audit Messages
    Collecting Guest Introspection Troubleshooting Data
    Uninstall a Guest Introspection Module
      Uninstall Guest Introspection for Linux
  Network Extensibility
    Distributed Service Insertion
    Edge-Based Service Insertion
    Integrating Third Party Services
    Deploy a Partner Service
    Consuming Vendor Services through Service Composer
    Redirecting Traffic to a Vendor Solution through Logical Firewall
    Using a Partner Load Balancer
    Remove Third-Party Integration
  User Management
    NSX Users and Permissions by Feature
    Configure Single Sign On
    Managing User Rights
    Managing the Default User Account
    Assign a Role to a vCenter User
    Edit a User Account
    Change a User Role
    Disable or Enable a User Account
    Delete a User Account
  Network and Security Objects
    Working with IP Address Groups
      Create an IP Address Group
      Edit an IP Address Group
      Delete an IP Address Group
    Working with MAC Address Groups
      Create a MAC Address Group
      Edit a MAC Address Group
      Delete a MAC Address Group
    Working with IP Pools
      Create an IP Pool
      Edit an IP Pool
      Delete IP Pool
    Working with Security Groups
      Create a Security Group
      Edit a Security Group
      Delete a Security Group
    Working with Services and Service Groups
      Create a Service
      Create a Service Group
      Edit a Service or Service Group
      Delete a Service or Service Group
  Operations and Management
    NSX Dashboard
    NSX Controller
      Change Controller Password
      Configure a Syslog Server for NSX Controller
      Download Technical Support Logs for NSX Controller
    Change VXLAN Port
    Check Communication Channel Health
    Customer Experience Improvement Program
      Edit the Customer Experience Improvement Program Option
    System Events and Audit Logs
      About NSX Logs
      Using NSX Ticket Logger
      View the System Event Report
      NSX Manager Virtual Appliance Events
      About the Syslog Format
      View the Audit Log
    Management System Settings
      Log In to the NSX Manager Virtual Appliance
      Edit the NSX Manager Date and Time
      Configure a Syslog Server for NSX Manager
      Change FIPS Mode and TLS Settings on NSX Manager
      Edit DNS Servers
      Edit Lookup Service Details
      Edit vCenter Server
      Download Technical Support Logs for NSX
      NSX Manager SSL Certification
        Use the Built-In CSR Generator
        Convert the NSX Manager Certificate File to PKCS#12 Format
        Import an SSL Certificate
    Working with SNMP Traps
      Configure SNMP Settings
      Verify SNMP Trap Configuration
      Edit System Traps
    NSX Backup and Restore
      Back Up NSX Manager Data
        Restore an NSX Manager Backup
      Back Up NSX Edges
      Back Up vSphere Distributed Switches
      Back Up vCenter
    Flow Monitoring
      View Flow Monitoring Data
      Change the Date Range of the Flow Monitoring Charts
      Add or Edit a Firewall Rule from the Flow Monitoring Report
      View Live Flow
      Configure Flow Monitoring Data Collection
    Application Rule Manager
      Create a Monitoring Session
      Analyze Flows
      Flow Consolidation and Customization
      Customizing Services in Flow Records
      Customizing Source and Destination in Flow Records
      Creating Firewall Rules from Application Rule Manager
      Publishing and Managing Firewall Rules From Application Rule Manager
    NSX Edge VPN Configuration Examples
      Terminology
      IKE Phase 1 and Phase 2
      Configuring IPSec VPN Service Example
        Configure NSX Edge VPN Parameters Example
        Enable IPSec VPN Service Example
      Using a Cisco 2821 Integrated Services Router
      Using a Cisco ASA 5510
      Configuring a WatchGuard Firebox X500
      Troubleshooting NSX Edge Configuration Example
        Successful Negotiation (both Phase 1 and Phase 2)
        Phase 1 Policy Not Matching
        Phase 2 Not Matching
        PFS Mismatch
        PSK not Matching
        Packet Capture for a Successful Negotiation
    Activity Monitoring
      Set Up Activity Monitoring
      Activity Monitoring Scenarios
        User Access to Applications
        Applications on Datacenter
        Verify Open Ports
      Enable Data Collection
        Enable Data Collection on a Single Virtual Machine
        Enable Data Collection for Multiple Virtual Machines
      View Virtual Machine Activity Report
      View Inbound Activity
      View Outbound Activity
      View Interaction between Inventory Containers
      View Outbound AD Group Activity
      Override Data Collection
    Endpoint Monitoring Data Collection
      Endpoint Monitoring
    Traceflow
      About Traceflow
      Use Traceflow for Troubleshooting
  NSX Edge VPN Configuration Examples
    Terminology
    IKE Phase 1 and Phase 2
    Configuring IPSec VPN Service Example
      Configure NSX Edge VPN Parameters Example
      Enable IPSec VPN Service Example
    Using a Cisco 2821 Integrated Services Router
    Using a Cisco ASA 5510
    Configuring a WatchGuard Firebox X500
    Troubleshooting NSX Edge Configuration Example
      Successful Negotiation (both Phase 1 and Phase 2)
      Phase 1 Policy Not Matching
      Phase 2 Not Matching
      PFS Mismatch
      PSK not Matching
      Packet Capture for a Successful Negotiation
NSX Upgrade Guide
  Read the Supporting Documents
  System Requirements for NSX
  Ports and Protocols Required by NSX
  Upgrading NSX
    Preparing for the NSX Upgrade
      Evaluate License Needs when Upgrading NSX
      Operational Impacts of NSX Upgrades
      Understand FIPS Mode and NSX Upgrade
      Verify the NSX Working State
      Uninstall NSX Data Security
      NSX Backup and Restore
        Back Up NSX Manager Data
          Restore an NSX Manager Backup
        Back Up NSX Edges
        Back Up vSphere Distributed Switches
        Back Up vCenter
      Download the NSX Upgrade Bundle and Check the MD5
    Upgrade to NSX 6.3.x
      Upgrade NSX Manager
      Upgrade the NSX Controller Cluster
      Upgrade Host Clusters
      Change VXLAN Port
      Upgrade NSX Edge
      Upgrade Guest Introspection
      NSX Services That Do Not Support Direct Upgrade
      Post-Upgrade Checklist
    Upgrade to NSX 6.3.x with Cross-vCenter NSX
      Upgrade the Primary NSX Manager in Cross-vCenter NSX
      Upgrade all Secondary NSX Manager Appliances in Cross-vCenter NSX
      Upgrade NSX Controller Cluster in Cross-vCenter NSX
      Upgrade Host Clusters in Cross-vCenter NSX
      Change VXLAN Port in Cross-vCenter NSX
      Upgrade NSX Edge in Cross-vCenter NSX
      Upgrade Guest Introspection in Cross-vCenter NSX
      NSX Services That Do Not Support Direct Upgrade
      Post-Upgrade Checklist
  Upgrading vSphere in an NSX Environment
    Upgrade to ESXi 6.0 in an NSX Environment
    Upgrade to ESXi 6.5 in an NSX Environment
    Redeploy Guest Introspection after ESXi Upgrade
  Read the Supporting Documents
  System Requirements for NSX
  Ports and Protocols Required by NSX
  Upgrading NSX
    Preparing for the NSX Upgrade
      Evaluate License Needs when Upgrading NSX
      Operational Impacts of NSX Upgrades
      Understand FIPS Mode and NSX Upgrade
      Verify the NSX Working State
      Uninstall NSX Data Security
      NSX Backup and Restore
        Back Up NSX Manager Data
          Restore an NSX Manager Backup
        Back Up NSX Edges
        Back Up vSphere Distributed Switches
        Back Up vCenter
      Download the NSX Upgrade Bundle and Check the MD5
    Upgrade to NSX 6.3.x
      Upgrade NSX Manager
      Upgrade the NSX Controller Cluster
      Upgrade Host Clusters
      Change VXLAN Port
      Upgrade NSX Edge
      Upgrade Guest Introspection
      NSX Services That Do Not Support Direct Upgrade
      Post-Upgrade Checklist
    Upgrade to NSX 6.3.x with Cross-vCenter NSX
      Upgrade the Primary NSX Manager in Cross-vCenter NSX
      Upgrade all Secondary NSX Manager Appliances in Cross-vCenter NSX
      Upgrade NSX Controller Cluster in Cross-vCenter NSX
      Upgrade Host Clusters in Cross-vCenter NSX
      Change VXLAN Port in Cross-vCenter NSX
      Upgrade NSX Edge in Cross-vCenter NSX
      Upgrade Guest Introspection in Cross-vCenter NSX
      NSX Services That Do Not Support Direct Upgrade
      Post-Upgrade Checklist
  Upgrading vSphere in an NSX Environment
    Upgrade to ESXi 6.0 in an NSX Environment
    Upgrade to ESXi 6.5 in an NSX Environment
    Redeploy Guest Introspection after ESXi Upgrade
NSX Troubleshooting Guide
  Infrastructure
    NSX Infrastructure Preparation Steps
      Connecting NSX Manager to vCenter Server
      Deploying NSX Controllers
      Host Preparation
      VXLAN Preparation
    Using the NSX Dashboard
    Checking Communication Channel Health
    Troubleshooting NSX Manager Issues
    Logical Switch Port Group Out Of Sync
    VXLAN VMKNic Out Of Sync
    Using the show host health-status Command
    Troubleshooting Scenario: Secondary NSX Manager Stuck in Transit Mode in Cross-vCenter Environment
    Setting the Logging Level of NSX Components
    vSphere ESX Agent Manager
    NSX CLI Cheat Sheet
  Traceflow
    About Traceflow
    Use Traceflow for Troubleshooting
  NSX Routing
    Understanding the Distributed Logical Router
      High-Level DLR Packet Flow
      DLR ARP Resolution Process
    Understanding Routing Provided by the Edge Services Gateway
    ECMP Packet Flow
    NSX Routing: Prerequisites and Considerations
    DLR and ESG UIs
      NSX Routing UI
      NSX Edges UI
    New NSX Edge (DLR)
      ESG and DLR Differences
    Typical ESG and DLR UI Operations
      Syslog Configuration
      Static Routes
      Route Redistribution
    Troubleshooting NSX Routing
      NSX Routing CLI
      Brief Recap of Routing
      Verifying the DLR State Using a Sample Routed Topology
        Confirming DLR Instances
        DLR’s Logical Interfaces
        DLR’s Routes
        DLR’s ARP table
      DLR and Its Related Host Components Visualized
      Distributed Routing Subsystem Architecture
        DLR Creation Process
        Adding Dynamic Routing to a DLR
        DLR Control and Management Plane Components and Communications
      NSX Routing Subsystem Components
      NSX Routing Control Plane CLI
      NSX Routing Subsystem Failure Modes and Effects
      NSX Logs Relevant to Routing
      Common Failure Scenarios and Fixes
      Gathering Troubleshooting Data
  Edge Appliance Troubleshooting
  Distributed Firewall
    How to Use the show dfw CLI
    Troubleshooting Distributed Firewall
  Load Balancing
    Configure a One-Armed Load Balancer
    Troubleshooting Flowchart for Load Balancer
    Load Balancer Configuration Verification and Troubleshooting Using the UI
    Load Balancer Troubleshooting Using the CLI
    Common Load Balancer Issues
  Virtual Private Networks (VPN)
    L2 VPN Common Configuration Issues
    L2VPN Options to Mitigate Looping
    Troubleshooting Using the CLI
  NSX Controller
    Understanding the Controller Cluster Architecture
    View Disk Latency Alerts
    Controller Out Of Sync
    Troubleshooting Controller Cluster
      Delete an NSX Controller
      Redeploy an NSX Controller
    NSX Controller Issues
      Control Plane Agent (netcpa) Issues
      Disk Latency Issues
  Infrastructure
    NSX Infrastructure Preparation Steps
      Connecting NSX Manager to vCenter Server
      Deploying NSX Controllers
      Host Preparation
      VXLAN Preparation
    Using the NSX Dashboard
    Checking Communication Channel Health
    Troubleshooting NSX Manager Issues
    Logical Switch Port Group Out Of Sync
    VXLAN VMKNic Out Of Sync
    Using the show host health-status Command
    Troubleshooting Scenario: Secondary NSX Manager Stuck in Transit Mode in Cross-vCenter Environment
    Setting the Logging Level of NSX Components
    vSphere ESX Agent Manager
    NSX CLI Cheat Sheet
  Traceflow
    About Traceflow
    Use Traceflow for Troubleshooting
  NSX Routing
    Understanding the Distributed Logical Router
      High-Level DLR Packet Flow
      DLR ARP Resolution Process
    Understanding Routing Provided by the Edge Services Gateway
    ECMP Packet Flow
    NSX Routing: Prerequisites and Considerations
    DLR and ESG UIs
      NSX Routing UI
      NSX Edges UI
    New NSX Edge (DLR)
      ESG and DLR Differences
    Typical ESG and DLR UI Operations
      Syslog Configuration
      Static Routes
      Route Redistribution
    Troubleshooting NSX Routing
      NSX Routing CLI
      Brief Recap of Routing
      Verifying the DLR State Using a Sample Routed Topology
        Confirming DLR Instances
        DLR’s Logical Interfaces
        DLR’s Routes
        DLR’s ARP table
      DLR and Its Related Host Components Visualized
      Distributed Routing Subsystem Architecture
        DLR Creation Process
        Adding Dynamic Routing to a DLR
        DLR Control and Management Plane Components and Communications
      NSX Routing Subsystem Components
      NSX Routing Control Plane CLI
      NSX Routing Subsystem Failure Modes and Effects
      NSX Logs Relevant to Routing
      Common Failure Scenarios and Fixes
      Gathering Troubleshooting Data
  Edge Appliance Troubleshooting
  Distributed Firewall
    How to Use the show dfw CLI
    Troubleshooting Distributed Firewall
  Load Balancing
    Configure a One-Armed Load Balancer
    Troubleshooting Flowchart for Load Balancer
    Load Balancer Configuration Verification and Troubleshooting Using the UI
    Load Balancer Troubleshooting Using the CLI
    Common Load Balancer Issues
  Virtual Private Networks (VPN)
    L2 VPN Common Configuration Issues
    L2VPN Options to Mitigate Looping
    Troubleshooting Using the CLI
  NSX Controller
    Understanding the Controller Cluster Architecture
    View Disk Latency Alerts
    Controller Out Of Sync
    Troubleshooting Controller Cluster
      Delete an NSX Controller
      Redeploy an NSX Controller
    NSX Controller Issues
      Control Plane Agent (netcpa) Issues
      Disk Latency Issues
NSX Logging and System Events
  System Events, Alarms and Logs
    System Events
      View the System Event Report
      About the Syslog Format
    Alarms
      Guest Introspection Alarms
        Host Alarms
        SVM Alarms
    NSX and Host Logs
    Audit Logs
      View the Audit Log
    Configuring a Syslog Server
      Configure a Syslog Server for NSX Manager
      Configure Syslog Servers for NSX Edge
    Collecting Technical Support Logs
      Download Technical Support Logs for NSX
      Download Technical Support Logs for NSX Controller
      Download Tech Support Logs for NSX Edge
  System Events
  System Events, Alarms and Logs
    System Events
      View the System Event Report
      About the Syslog Format
    Alarms
      Guest Introspection Alarms
        Host Alarms
        SVM Alarms
    NSX and Host Logs
    Audit Logs
      View the Audit Log
    Configuring a Syslog Server
      Configure a Syslog Server for NSX Manager
      Configure Syslog Servers for NSX Edge
    Collecting Technical Support Logs
      Download Technical Support Logs for NSX
      Download Technical Support Logs for NSX Controller
      Download Tech Support Logs for NSX Edge
  System Events
PDF Product Documentation
  PDF Product Documentation
  PDF Product Documentation