Alarm for gateway_firewall.service_router_with_gfw_per_edge_exceeded
search cancel

Alarm for gateway_firewall.service_router_with_gfw_per_edge_exceeded

book

Article ID: 378458

calendar_today

Updated On:

Products

VMware vDefend Firewall

Issue/Introduction

Event ID: gateway_firewall.service_router_with_gfw_per_edge_exceeded

Added in release: 9.0.0

Alarm Description:

  • Purpose: The number of Tier0/Tier1 Logical Routers or bridges with Gateway Firewall feature enabled with non zero rules on edge has exceeded the maximum limit.
  • Impact : Dataplane functions may be impacted due to high scale. Increased time for configuration to get realized.

Environment

VMware NSX Data Center 9.0.0

Cause

Number of T0/T1s have scaled beyond the allowed limits.

Limits: medium form factor edge - 5; L/XL/Bare metal edge - 100

Resolution

Reduce the number of gateways configured on the edge node. Map additional gateways to a new edge in the cluster.

Disable Gateway Firewall feature on the gateway if no firewall rules are configured.