
The standout strength for me is micro-segmentation—the ability to enforce granular, workload-level firewall policies that isolate applications and prevent threats from moving laterally across the network. Beyond security, NSX also delivers real operational value with its single-pane-of-glass management: we can manage switching, routing, load balancing, VPN, and monitoring from one console instead of juggling separate physical devices. It’s highly automatable through APIs, which fits naturally into our automated provisioning and DevOps workflows. It also keeps networking and security policies consistent whether workloads run on-prem, in the cloud, or in containers, giving us a lot of flexibility without sacrificing control. Review collected by and hosted on G2.com.
The learning curve is steep, especially for admins who aren’t already deep in the VMware ecosystem. The UI isn’t very intuitive, and getting truly comfortable with the platform takes significant time and hands-on experience. We’ve also run into occasional bugs and added complexity during implementation, and support isn’t always quick to resolve issues when they come up. On top of that, licensing has become more complicated since Broadcom’s acquisition: NSX is now bundled inside VMware Cloud Foundation rather than sold as a standalone product, and advanced security features are priced separately on a per-core basis. All of this makes cost planning less straightforward than it used to be. Review collected by and hosted on G2.com.