Components of the VM-Series Firewall on NSX-T

The following tables show the components of this joint Palo Alto Networks and VMware NSX-T solution.
VMware Components
The vCenter server is the centralized management tool for the vSphere suite. ESXi is a hypervisor that enables compute virtualization.
Refer to VMware’s Compatibility Matrix for vCenter compatibility with your version of NSX-T.
NSX-T Manager
VMware NSX-T Data Center 2.4.0 and later must be installed and registered with the vCenter server. The NSX-T Manager is required to deploy the VM-Series firewall on the ESXi hosts within a ESXi cluster.
Palo Alto Networks Components
The VM-Series base image ( is required for deploying the VM-Series firewall on NSX-T.
The minimum system requirement for deploying the VM-Series firewall for NSX on the ESXi server depends on your VM-Series model. See VM-Series Models for the minimum hardware requirements for your VM-Series model.
Panorama must be running the same release version or later version that the firewalls that it will manage.
The VM-Series firewall on NSX-T requires Panorama 9.0.4 or later.
Panorama is the centralized management tool for the Palo Alto Networks next-generation firewalls. In this solution, Panorama works with the NSX-T Manager to deploy, license, and centrally administer—configuration and policies—the VM-Series firewall for NSX-T.
Panorama must be able to connect to the NSX-T Manager, the VM-Series firewalls and the Palo Alto Networks update server.
See the 9.0 Panorama Administrator’s Guide for information about deploying your Panorama appliance.
Panorama Plugin for VMware NSX
3.0.0 or later
VM-Series Plugin
1.0.6 or later
VM-Series Firewall Models
The VM-100, VM-300, VM-500, and VM-700 support NSX-T.

Recommended For You