Installation guide

18
Chapter 2 Planning the Installation
Overview to the Installation Procedure
1. Check the surrounding network environment as explained in Capture Interfaces (page 19).
2. Install licenses for the engines. See Installing Licenses (page 23).
3. If network address translation (NAT) is applied to communications between SMC
components and the engines, define Contact Addresses. See Configuring NAT Addresses
(page 27).
4. Define the IPS and/or Layer 2 Firewall element(s) in the Management Client. See Defining
IPS Engines (page 33) and Defining Layer 2 Firewalls (page 43).
5. Define the Master Engine element(s) and Virtual IPS and/or Virtual Layer 2 Firewall
element(s) in the Management Client. See Configuring Master Engines and Virtual IPS
Engines (page 53) and Configuring Master Engines and Virtual Layer 2 Firewalls
(page 67).
6. Generate the initial configuration for the IPS engine(s), Layer 2 Firewall engine(s), and/or
Master Engine(s). See Saving the Initial Configuration (page 83). No initial configuration is
needed for Virtual IPS engines or Virtual Layer 2 Firewalls.
7. Install and configure the IPS engine(s), Layer 2 Firewall engine(s), and/or Master
Engine(s).
For hardware installation and initial configuration of McAfee NGFW appliances, see the
Appliance Installation Guide that is delivered with each appliance.
For software installations, see Installing the Engine on Other Platforms (page 97).
No installation is needed for Virtual IPS engines and Virtual Layer 2 Firewalls.
8. Configure routing and install a policy on the engine(s). See Configuring Routing and
Installing Policies (page 89). No routing is needed for Virtual IPS engines or Virtual Layer
2 Firewalls.
The chapters and sections of this guide proceed in the order outlined above.