System Defined alert reporting a waring that one default rule is being masked by another default rule.
A firewall rule is masked by one of more preceding rules. This condition may indicate a configuration error, such as redundant rule.
Refer to Screenshots as below:
VMware vRealize Network Insight 6.9
Aria Operations for Networks 6.10.0
Aria Operations for Networks 6.11.0
Aria Operations for Networks 6.12.0
Aria Operations for Networks 6.12.1
Aria Operations for Networks 6.13.0
Aria Operations for Networks 6.14.0
Computation of the Alert in VMware Aria Operations for Networks should be as below:
ETHERNET > EMERGENCY > INFRASTRUCTURE > ENVIRONMENT > APPLICATION
But in VMware Aria Operations for Networks were evaluating it as :
EMERGENCY > INFRASTRUCTURE > ENVIRONMENT > APPLICATION > ETHERNET
This is a known issue and will be fixed in upcoming release.
As a workaround we can either ignore or Deactivate an Alert.
The order of precedence in which the rules should be evaluated is mentioned in below documentation under section Distributed Firewall policy