0

Installing NSX Manager GUEST INTROSPECTION NSX Data Security

Guest introspection is a service that is deployed from NSX Manager to offload security functions. Guest Introspection installs a new vib and a service virtual machine on each host in the cluster. Guest Introspection is required for NSX Data Security, Activity Monitoring, and several third-party security solutions.

System Requirements for NSX

To install Guest Introspection First need to login into the vSphere web client and browse to Networking & Security.
on the left hand side click on Installation. Click the green plus symbol to add a new service deployment.

After this select Guest introspection

 

Select Storage and Network

Create IP Pool for the VM which NSX install for AV purpose.

 

 

Now select the IP Pool and click next

After that it will appear here in last tab

If you closely monitor vCenter task then it will start installing VM

In NSX manager you can see status.

Now your Guest Introspection is ready.

 

You can check this in vCenter under Newly created resource pool > ESX Agent.
This resource pool is auto created by NSX manager for these VM’s only.

 

If this VM giving you error or warning like Failed then just click on Resolve and it will delete the VM and create new VM.

0

VMware vSphere NSX 6.3.3 Step-By-Step Installation : Howto

 

NSX Manager Deployment

1. NSX Manager

It will automatically install all the required component as per request Like NSX controller.

2. NSX Controllers: Need to be deploy in odd number like 3 or 5.

3. Edge

4. Distributed Router Controllers

 

Now First you need to Create NSX Cluster this is not compulsion but suggested or i have created one Resource pool with Expandable check.

image

Download the OVA file from VMware website.

image

 

NSX Components Layer where they Installed.

Data Plane: On ESXi host

          a) Kernel Modules: VXLAN (16 Million VXLAN Segment)

b) Distributed Logical Router (DLR)

c) Distributed Firewall (DFW)

d) VDS switch and Edge Service Appliance.

Control Plane:

             a) NSX Controllers

b) User World Agent

c) Logical Router Control VM

Management Plane:

             a) vCenter Server

b) NSX Manager

             c) Message Bus

 

Deployment of NSX Manager:

1. Only One NSX manager per vCenter Server.

2. Deploy as a VM.

3. What if my NSX manager is Shutdown: No worries, everything continues to work but you will not able to change anything. No Service impact.

Solution: Protect with vSphere HA.

NSX manager Virtual Machine Requirement: reference vmware doc.

1. 4 vCPUs

2. 16 GB of RAM

3. 60 GB of Storage

Steps for Installation:

1. Right-Click on the cluster in which you would like to deploy the NSX Manager OVA and choose “Deploy OVF Template”

2017-09-12 14_46_23-vSphere Web Client

image

2. Browse the file and Click next.

image

3. Select the Resources

2017-09-12 14_50_12-vSphere Web Client

4. Review the details and click Next.

image

5. Accept the License agreements and click next.

image

6. Select Storage and click next.

image

7. Now Provide Network from VDS.

image

8. Provide IP details, CLI password and DNS sever click next and finish.

image

After installation you will see new icon with Networking & Security.

image

when you click on Dashboard option on the left hand side then you can see that status of NSX Manager and Host Preparation Status.

image

When you click on Installation Option then it will show you NSX manager and it’s controller nodes name and status.

2017-09-12 16_07_09-vSphere Web Client

Now under Installation you have multiple tabs like Management, Host Preparation, Logical Network Preparation and Service deployments

Click on the Host Preparation and you can see whether NSX manager module vCenter, NSX Manager, EAM(ESX Agent Manager) is installed or not.

These are the VIB which will be install.

esx-vsip
esx-vxlan

 

image

Open Putty session for ESXi host.

 

[root@esx002291:~] esxcli software vib list
Name                                                           Version                                Vendor  Acceptance Level  Install Date
—————————–  ——————————————————————-  ——  —————-  ————

esx-vsip                                            6.5.0-0.0.5534171                      VMware  VMwareCertified   2017-07-19
esx-vxlan                                         6.5.0-0.0.5534171                      VMware  VMwareCertified   2017-07-19

0

How to upgrade NSX Manager from 6.2.6 to 6.3.2

Today i was updating NSX manager from 6.2.6 to 6.3.2 version.

Environment running with vCloud director 8.20 and ESXi 6.5 U1.

1. Check VMware Product Interoperability Matrices for more information “Link”.
2. Check Update sequence for vSphere “KB“.

Before upgrade to NSX 6.3.2.

1. NSX Manager VM Snapshot.
2. NSX Manager Appliance Backup.(FTP server required)

3. Check “Lookup service” and “vCenter” server status in NSX management service.

4. Download the NSX 6.3.2 version from VMware website.

5. After this upload the bundle file into NSX manager console from Upgrade option.

 

 

 

 

it will start uploading this image to NSX manager and will start installing.

After uploading bundle it will give you Warning! Please create an NSX Manager backup before proceeding with upgrade also it will ask you whether you want to enable SSH and Finally hit Upgrade button.

After this it will pop up with new version with 6.3.2 version.

After this Need to upgrade NSX Controller if you have.

Also install the agent in Agency.

Final Status after upgrade.