The network security settings have the same impact on traffic, regardless of the switch type it is configured on:
- A vDS allows for an additional level of granularity by making the same settings configurable at the dvPort level. For this to work, the dvPortGroup should be configured to allow dvPort-level policy overrides.
- With a vSS, security settings can only be applied at the port group level.
The three network security settings that can be set to either Accept/Reject are as follows:
- Promiscuous mode
- MAC address changes
- Forged transmits