
vShield Quick Start Guide
26 VMware, Inc.
YoucaninstallonevShieldEdgeperportgroup,vDSportgroup,orCisco
®
Nexus1000V.
IfDRSandHAareenabled,avShieldEdgewillbemigrateddynamically.
To install a vShield Edge
1LogintothevSphereClient.
2GotoView>Inventory>Networking.
3OnavDS,createaportgroup.
ThisportgroupistheInternalportgroup.
4Moveatenant’sguestvirtualmachinestothe
Internalportgroup.
5 SelectthenewInternalportgroup.
6ClicktheEdgetab.
7UnderNetworkInterfaces,enterthefollowinginformation.
8 (Optional)SelecttheIsolatecheckboxtoenablePortGroupIsolationonthevShieldEdge.
ThispreventsvirtualmachinesontheInternalportgroupfromcommunicatingwithsystemsoutsideof
thatportgroup.
9UnderEdgedeploymentresourceselection,enterthefollowinginformation
10 ClickInstall.
Afterinstallationiscomplete,configureservicesandfirewallrulestoprotectthevirtualmachinesinthe
securedportgroup.ToconfigureavShieldEdge,seethevShieldAdministrationGuide.
Field Action
External
PortGroup SelecttheexternalportgroupinthevDS.Thisportgrouphomesaphysical
NICandconnectstotheexternalnetwork.
IPAddress TypetheIPaddressoftheexternalportgroup.
SubnetMask TypetheIPsubnetmaskassociatedwiththespecifiedexternalIPaddress.
DefaultGateway TypetheIPaddress
ofthedefaultnetworkgateway.
Internal
PortGroup Thisistheselectedinternalportgroup.
IPAddress TypetheIPaddressoftheinternalportgroup.
SubnetMask TypetheIPsubnetmaskassociatedwiththespecifiedinternalIPaddress.
Field Action
ResourcePool SelecttheresourcepoolwherethevShieldEdgeshouldbedeployed.
Host Select
theESXhostonwhichthedatastoreresides.
Datastore SelectthedatastoreonwhichtostorethevShieldEdgevirtualmachinefiles.
Comentarios a estos manuales