Flows are showing "No Data to show" when trying to view protected data flows/matching DFW NSX rules in VCF Operations for Networks
search cancel

Flows are showing "No Data to show" when trying to view protected data flows/matching DFW NSX rules in VCF Operations for Networks

book

Article ID: 416646

calendar_today

Updated On:

Products

VCF Operations for Networks

Issue/Introduction

While analyzing network flows in Operations for networks, the flows are showing "No Data to show" when trying to view protected data flows/matching DFW rules in NSX. 

An example of this behavior can be seen with the query "flows order by firewall rule" and in the left panel of the results on Filters / Firewall Rule it displays "No values available". It is expected that a list of firewall rule displays as seen in the image below:

Environment

Aria Operations for Networks 6.13.0
Aria Operations for Networks 6.14.0

NSX 4.1 and above

Cause

For NSX Distributed Firewall (DFW) on Distributed Virtual Port Group (DVPG) topologies, VIF type received is labeled 'Independent' by NSX in version 4.1 onwards.

VCF Operations for Networks does not process this type of VIF attachment, hence firewall rules are not associated with the flows. 

Resolution

This issue is fixed in VCF Operations for Networks 6.14.1

If you cannot upgrade to 6.14.1, this fix is also available in 6.14.0 Patch 4.

Additional Information

See Release Notes for complete details.