Error occurred in the backing network provider: Unsupported App Level Gateway (ALG) Type : MS_RPC_TCP., error code 515009
The backing NSX infrastructure limits the built-in App Level Gateway (ALG) items that can be assigned to gateway firewalls, as noted in the following document:
"Note:
The following built-in ALGs for DFW are supported: FTP, TFTP, MS_RPC_TCP, MS_RPC_UDP, ORACLE_TNS, SUN_RPC_TCP and SUN_RPC_UDP.
The following built-in ALGs for Gateway Firewall are supported: FTP and TFTP."
Assigning an unsupported ALG via VMware Cloud Director to the Edge Gateway Firewall will fail in the underlying NSX implementation, resulting in this error. This includes assigning a service that contains an unsupported ALG service entry, as in the following example:
If alternate existing Default Application port profiles cannot provide the desired configuration, a custom application port profile can be created in VMware Cloud Director:
Add an Application Port Profile to a Data Center Group in the VMware Cloud Director Tenant Portal
Examples of ALG service port replacements can be found in the following article: