When you deploy UIS-Sec gateway component VMs, the system by default uses the vSwitch named vs_gateway. Using any other vSwitch might affect services. As a best practice, create vSwitch vs_gateway before deploying UIS-Sec gateway component VMs and use this vSwitch for deployment.
UIS-Sec gateway component VMs can operate in either of the following modes:
DPDK disabled—Has no special requirements on hardware and applicable to most scenarios.
DPDK enabled—Provides high network performance but has high requirements on hardware. To deploy a VM with DPDK enabled, the physical NIC of the destination host must support DPDK and be bound to specific CPUs.
Requirements on vSwitch vs_gateway:
To deploy VMs with DPDK disabled, you do not need to enable DPDK for vSwitch vs_gateway. This mode has no special requirements on the host hardware.
To deploy VMs with DPDK enabled, you must enable DPDK for vSwitch vs_gateway. To enable DPDK for the vSwitch, the host and the physical NIC to which the vSwitch is bound must support DPDK.
To deploy UIS-Sec gateway component VMs in a UIS cluster, make sure the cluster meets the following requirements:
Contains a minimum of three service hosts.
Each service host has a minimum of one available physical NIC. As a best practice, select two available physical NICs and configure interface aggregation on each host. To deploy UIS-Sec gateway component VMs with DPDK enabled, the selected physical NICs must also support DPDK.