When NSX IDS/IPS is enabled, the TKG pod network becomes unstable immediately
NSX IDS/IPS doesn't support VM layer overlay network (e.g. Encapsulated packet by Antrea), so the checksum in the packet is broken.
As a result, the k8s node VM drops the return packet, making the pod-to-pod network unstable.