Setup guide
Add Internal and Uplink Interfaces
You can add up to ten internal and uplink interfaces to a vShield Edge virtual machine.
Procedure
1
On the Interfaces page, click the Add (
) icon and type a name for the interface.
2 Select Internal or Uplink to indicate whether this is an internal or external interface.
You must add at least one internal interface for HA to work.
3 Select the port group or VXLAN virtual wire to which this interface should be connected.
a Click Select next to the Connected To field.
b Dpending on what you want to connect to the interface, click the Virtual Wire, Standard
Portgroup, or Distributed Portgroup tab.
c Select the appropriate virtual wire or portgroup.
d Click Select.
4 Select the connectivity status for the interface.
5
In Configure Subnets, click the Add ( ) icon to add a subnet for the interface.
An interface can have multiple non-overlapping subnets.
6
In Add Subnet, click the Add ( ) icon to an IP address.
If you enter more than one IP address, you can select the Primary IP address. An interface can have one
primary and multiple secondary IP addresses. vShield Edge considers the Primary IP address as the
source address for locally generated traffic.
You must add an IP address to an interface before using it on any feature configuration.
7 Type the subnet mask for the interface and click Save.
8 (Optional) Type the MAC address for the interface. If HA is enabled, type two management IP
addresses in CIDR format.
Heartbeats of the two vShield Edge HA virtual machines are communicated through these
management IP addresses. The management IP addresses must be in the same L2/subnet and be able to
communicate with each other.
9 Change the default MTU if required.
10 In Options, select the required options.
Option Description
Enable Proxy ARP
Supports overlapping network forwarding between different interfaces.
Send ICMP Redirect
Conveys routing information to hosts.
11 Type the fence parameters and click Add.
12 Repeat steps Step 1 through Step 11 to add additional interfaces.
13 Click Next.
The Default Gateway page appears.
Chapter 4 Installing vShield Edge, vShield App, vShield Endpoint, and vShield Data Security
VMware, Inc. 31