Deploy NFV value-added security services

  • This section uses the Web interface of a next-generation firewall as an example. The deployment method for other components is similar.

  • You can deploy NFV value-added security components only at the egress of a data center. To deploy an application control gateway and a next-generation firewall separately, first deploy the next-generation firewall.

 

Restrictions and guidelines

If the management network address of a NFV value-added security component is in a different subnet from the management PC, configure a static route to connect the two subnets when you configure component parameters. If you do not do so, the login page of the security component cannot be accessed.

Procedure

  1. On the top navigation bar, click Network Services.

  1. From the left navigation pane, select VDC Topology.

Figure-1 Virtual data center topology

 

  1. Click and drag the target NFV value-added security component icon to the egress of a data center. For information about the icons, see "Concepts."

Figure-2 Deploying a component at the data center egress

 

  1. Configure component parameters. For more information, see "Parameters."

Figure-3 Configuring component parameters

 

  1. Click Deploy.

Figure-4 Deploying the component

 

Parameters