VMware, Inc. 67
Chapter 12 Flow Monitoring
7 SelectadestinationIPaddress.
8 SelectasourceIPaddress.
AtthesourceIPaddresslevel,youcancreateanAppFirewallrulebasedonthespecificsourceand
destinationIPaddresses.
To view the Flow Monitoring report
1InthevSphereClient,gotoInventory>HostsandClusters.
2 Selectadatacenterorclusterresourcefromtheresource
tree.
3ClickthevShieldApptab.
4ClickFlowMonitoring.
Thechartsupdatetodisplaythemostcurrentinformationforthelastsevendays.Thismighttakeseveral
seconds.
5ClickShowReport.
6Drilldownintothereport.
7ClickShowLatesttoupdatethereportstatistics.
Add an App Firewall Rule from the Flow Monitoring Report
Bydrillingdownintothetrafficdata,youcanevaluatetheuseofyourresourcesandsendsessioninformation
toAppFirewalltocreateanewLayer4allowordenyrule.AppFirewallrulecreationfromFlowMonitoring
dataisavailableatthedatacenterandclusterlevelsonly.
To add an App Firewall rule from the Flow Monitoring report
1Inthe
vSphereClient,gotoInventory>HostsandClusters.
2 Selectadatacenterresourcefromtheresourcetree.
3ClickthevShieldApptab.
4ClickFlowMonitoring.
Thechartsupdatetodisplaythemostcurrentinformationforthelastsevendays.Thismighttakeseveral
seconds.
5ClickShowReport.
6 Expandthefirewallactionlist.
7 ExpandtheLayer4protocollist.
8 Expandthetrafficdirectionlist.
9 Expandtheporttypelist.
10 Expandtheapplicationorportlist.
11 ExpandthedestinationIPaddresslist.
12 ReviewthesourceIPaddresses.
13 SelecttheZonesFirewallcolumnradiobuttonforasourceIPaddresstocreateanAppFirewallrule.
Apop‐upwindowopens.ClickOktoproceed.
TheAppFirewalltableappears.AnewtablerowisdisplayedatthebottomoftheDataCenterLow
PrecedenceRulesorClusterLevelRulessectionwiththesessioninformationcompleted.
Commentaires sur ces manuels