After the Distributed Firewall configuration (DFW) is migrated, complete the post migration steps in this topic to migrate the workload VMs to NSX-T Data Center by using the Layer 2 bridge and vSphere vMotion.

If the DFW rules in your NSX-v environment use Security Groups with dynamic memberships based on Security Tags or use static memberships, do all the three steps in the following procedure.

If only IP-based DFW rules are used in your NSX-v environment, skip step 1, and go directly to step 2.