Symptoms: When setting port group security policy from vSphere Client, "Allow MacAddr Change" is not selected from Host Client.
Impact/Risks: Host Client not showing the correct value "Allow MacAddr Change".
This is a known Host UI issue that is incorrectly reporting the status of the "Allow MacAddr Change" value.
VMware Engineering is actively working towards a resolution for this issue.
Workaround: The vSphere Client UI and the esxcfg-info
command can confirm the "Allow MacAddr Change" value's true configuration.
MAC Address Changes
https://techdocs.broadcom.com/us/en/vmware-cis/vsphere/vsphere/7-0/vsphere-security-7-0/securing-vsphere-networking/securing-vsphere-standard-switches/mac-address-changes.html