Learn how to deploy the VM-Series firewall on VMware
NSX-T.
After completing the configuration on Panorama,
perform the following procedure to launch the VM-Series firewall
in your NSX-T Data Center.
When deploying the VM-Series firewall
on NSX-T in high availability, both firewalls are deployed to the
same Device Group and Template Stack.
Log in to NSX-T Manager.
Select
System
Service
Deployments
Deployment
.
Select your service definition from the
Partner
Service
drop-down.
Click
Deploy Service
.
Enter a descriptive
Service Deployment Name
for
your VM-Series firewall.
Select a tier-0 or tier-1 router under
Attachment
Points
. NSX-T Manager attaches the VM-Series firewall
to the selected router and redirects traffic passing through that
router to the VM-Series firewall for inspection. You must select
a router with no service insertion attached.
Select a
Compute Manager
. The
compute manager is the vCenter server managing your datacenter.
Select a
Cluster
. You can deploy
the VM-Series firewall on any cluster that does not include any
Edge Transport Nodes.
Select a
Datastore
.
Configure your network settings.
Click
Edit Details
in
the
Networks
column.
Select the
Primary Interface Network
.
Enter the
Primary Interface IP
.
Enter the
Primary Gateway Address
.
Enter the
Primary Subnet Mask
.
Click
Save
.
NSX-T Manager prepopulates the
Deployment
Specification
and
Deployment Template
based
on the Partner Service you selected.
Set the
Failure Policy
to Allow
or Block. The failure policy defines how NSX-T Manager handles traffic
that is directed to the VM-Series firewall if the firewall becomes
unavailable.
Select the
Deployment Mode
for
your VM-Series firewall—Standalone or High Availability. If you
have an edge node cluster and select High Availability, NSX-T Manager
will deploy an additional VM-Series firewall on the standby edge
node in addition to the firewall deployed on the active edge node.
Click
Save
to deploy the VM-Series
firewall.
Verify that your firewalls connected to Panorama.
Log in to Panorama.
Select
Panorama
Managed Devices
Summary
.
Confirm that your firewalls are listed under the correct
device group and the
Device State
shows
Connected
.
The Device Name for the VM-Series firewall is displayed
on Panorama as