5.1

Table Of Contents
Add or Edit App Firewall Rule from the Flow Monitoring Report
By drilling down into the traffic data, you can evaluate the use of your resources and send session information
to App Firewall to create a new allow or block rule at any level.
Procedure
1 In the vSphere Client, select a datacenter, virtual machine, port group, network adapter, or virtual wire.
Option Action
Select a datacenter or virtual
machine
a Go to Inventory > Hosts and Clusters.
b Select a datacenter or virtual machine.
c Click the vShield tab.
Select a port group or network
adapter
a Go to Inventory > Networking.
b Select a port group or network adapter.
c Click the vShield tab.
Select a virtual wire
a Go to Inventory > Hosts and Clusters and select the Network
Virtualization tab.
b Click the Networks tab.
c In the Name column, click the virtual wire for which you want to add a
rule.
NOTE The Flow Monitoring tab for a virtual wire is available only if vShield
App is installed on at least one of the hosts in the cluster from which the
virtual wire has been created. Flow monitoring data is displayed only for the
traffic passing through the host which has vShield App installed on it.
2 Click Flow Monitoring.
The charts update to display the most current information for the last twenty four hours. This might take
several seconds.
3 Click the Details tab.
Click Load More Records to display additional flows.
4 Click a service to view the traffic flow for it.
All rules that allowed or denied traffic for this service are displayed.
5 Click a rule ID to view rule details.
6 Do one of the following:
n
To edit a rule:
1 Click Edit Rule in the Actions column.
vShield Administration Guide
158 VMware, Inc.