NSX workload groups and firewall policies are translated through their security intent into Azure and hybrid controls, then validated to preserve communication boundaries.

Network Policy Translation: Mapping NSX Segmentation into Azure and Hybrid Controls

Translate the intent behind NSX segmentation into Azure and hybrid controls. Preserve workload membership, enforcement boundaries, required connections, and prohibited paths through a phased validation process.