Visibility Level
You can choose from three levels of visibility for workloads. These modes allow you to specify how much data the VEN collects from a workload when in the Full Enforcement state:
Off: The VEN does not collect any information about traffic connections. This option provides no Illumination detail and demands the least amount of system resources from a workload.
This property is only available for workloads in the Full Enforcement state.
Blocked: The VEN only collects the blocked connection details (source IP, destination IP, protocol, source port, and destination port), including all dropped packets. This option provides less Illumination detail but demands fewer system resources from a workload than high detail.
Blocked + Allowed: The VEN collects connection details (source IP, destination IP, protocol, source port, and destination port) for both allowed and blocked connections. This option provides rich Illumination detail but requires some system resources from a workload.