Deploy the VM-Series Firewall

Learn how to deploy the VM-Series firewall on VMware NSX-T.
After completing the configuration on Panorama, perform the following procedure to launch the VM-Series firewall in your NSX-T Data Center.
When deploying the VM-Series firewall on NSX-T in high availability, both firewalls are deployed to the same Device Group and Template Stack.
  1. Log in to NSX-T Manager.
  2. Select
    Service Deployments
  3. Select your service definition from the
    Partner Service
  4. Click
    Deploy Service
  5. Enter a descriptive
    Service Deployment Name
    for your VM-Series firewall.
  6. Select a tier-0 or tier-1 router under
    Attachment Points
    . NSX-T Manager attaches the VM-Series firewall to the selected router and redirects traffic passing through that router to the VM-Series firewall for inspection. You must select a router with no service insertion attached.
  7. Select a
    Compute Manager
    . The compute manager is the vCenter server managing your datacenter.
  8. Select a
    . You can deploy the VM-Series firewall on any cluster that does not include any Edge Transport Nodes.
  9. Select a
  10. Configure your network settings.
    1. Click
      Edit Details
      in the
    2. Select the
      Primary Interface Network
    3. Enter the
      Primary Interface IP
    4. Enter the
      Primary Gateway Address
    5. Enter the
      Primary Subnet Mask
    6. Click
  11. NSX-T Manager prepopulates the
    Deployment Specification
    Deployment Template
    based on the Partner Service you selected.
  12. Set the
    Failure Policy
    to Allow or Block. The failure policy defines how NSX-T Manager handles traffic that is directed to the VM-Series firewall if the firewall becomes unavailable.
  13. Select the
    Deployment Mode
    for your VM-Series firewall—Standalone or High Availability. If you have an edge node cluster and select High Availability, NSX-T Manager will deploy an additional VM-Series firewall on the standby edge node in addition to the firewall deployed on the active edge node.
  14. Click
    to deploy the VM-Series firewall.
  15. Verify that your firewalls connected to Panorama.
    1. Log in to Panorama.
    2. Select
      Managed Devices
    3. Confirm that your firewalls are listed under the correct device group and the
      Device State
      The Device Name for the VM-Series firewall is displayed on Panorama as
      for NSX-T (N-S) deployment and as
      for NSX-T (E-W) deployment.

Recommended For You