Components of the VM-Series Firewall on NSX-T (North-South)

The following tables show the components of this joint Palo Alto Networks and VMware NSX-T solution.
VMware Components
The vCenter server is the centralized management tool for the vSphere suite. ESXi is a hypervisor that enables compute virtualization.
Refer to VMware’s Compatibility Matrix for vCenter compatibility with your version of NSX-T.
NSX-T Manager
VMware NSX-T Data Center 2.4.0 and later must be installed and registered with the vCenter server. The NSX-T Manager is required to deploy the VM-Series firewall on the ESXi hosts within a ESXi cluster.
Palo Alto Networks Components
The VM-Series base image ( is required for deploying the VM-Series firewall on NSX-T.
The minimum system requirement for deploying the VM-Series firewall for NSX on the ESXi server depends on your VM-Series model. See VM-Series Models for the minimum hardware requirements for your VM-Series model.
Panorama must be running the same release version or later version that the firewalls that it will manage.
The VM-Series firewall on NSX-T requires Panorama 9.1 or later.
Panorama is the centralized management tool for the Palo Alto Networks next-generation firewalls. In this solution, Panorama works with the NSX-T Manager to deploy, license, and centrally administer—configuration and policies—the VM-Series firewall for NSX-T.
Panorama must be able to connect to the NSX-T Manager, the VM-Series firewalls and the Palo Alto Networks update server.
See the Panorama Administrator’s Guide for information about deploying your Panorama appliance.
Panorama Plugin for VMware NSX
3.0.0 or later
VM-Series Plugin
1.0.6 or later
VM-Series Firewall Models
The VM-100, VM-300, VM-500, and VM-700 support NSX-T.

Recommended For You