VMware HCX
VMware NSX
When using a Stateful Firewall within the NSX Gateway Firewall, if the firewall cannot track TCP ACKs returned for transmitted data, it determines that data transmission exceeding the default TCP window size is occurring and blocks the communication. This behavior impacts asymmetric TCP communication passing through the affected Gateway Firewall.