Specifications

VM-Series Deployment Guide 59
Set Up a VM-Series NSX Edition Firewall Deploy the VM-Series NSX Edition Firewall
Deploy the VM-Series Firewall
After registering the VM-Series firewall as a service (Palo Alto Networks NGFW) on the NSX Manager,
complete the following tasks on the NSX Manager.
Enable SpoofGuard
Define an IP Address Pool
Specify the Port Groups from Which to Redirect Traffic
Prepare the ESXi Host for the VM-Series Firewall
Deploy the Palo Alto Networks NGFW Service
Step 8 Verify the connection status on
Panorama
Displays the connection status between Panorama and the NSX
Manager. When the connection is successful, the status displays
as
Registered. This indicates that Panorama and the NSX
Manager are in sync and the VM-Series firewall is registered as a
service on the NSX Manager.
The unsuccessful status messages are:
Not connected: Unable to reach/establish a network
connection to the NSX Manager.
Not authorized: The access credentials (username and/or
password) are incorrect.
Not registered: The service, service manager, or service
profile is unavailable or was deleted on the NSX Manager.
Out of sync: The configuration settings defined on Panorama
are different from what is defined on the NSX Manager.
No service/ No service profile: Indicates an incomplete
configuration on the NSX Manager.
Step 9 Verify that the firewall is registered as a service on the NSX Manager.
1. On the vSphere web client, select
Networking & Security > Service Definitions.
2. Verify that
Palo Alto Networks NGFW displays in the list of services available for installation.
Use Panorama to Register the VM-Series Firewall as a Service