[VMC on AWS] Old IP addresses of VM is displayed in the inventory as a member of Management/Compute groups group
search cancel

[VMC on AWS] Old IP addresses of VM is displayed in the inventory as a member of Management/Compute groups group

book

Article ID: 313651

calendar_today

Updated On:

Products

VMware Cloud on AWS

Issue/Introduction

Symptoms:
Adding VM to Management/Compute groups, previously assigned IP address of the VM is displayed in the inventory of the groups as a member.
ss01.png
ss02.png

Cause

A segment with SpoofGuard approves a new IP address in TOFU(Trust On First Use) mode and retains IP addresses internally as a trusted one.
 

 

Resolution

This issue is not a bug.  This is an expected behavior in NSX and there is no option to disable TrustOnFirstUse in a VMC SDDC.

For more information please refer KB2101277

Workaround:
You can move the vNIC of VM from one segment to another and back.
Note: This will cause the VM to lose network connectivity temporarily.

Additional Information

Impact/Risks:
A former IP address which was assigned to VM is included into the Management/Compute group.