Views:
How to add NSX-T Manager Cluster Virtual IP Address(VIP) to Deep Security Manager (DSM).

Prerequisites:

The NSX-T Manager Cluster has been deployed and a VIP has been assigned. You may follow this VMware article for instructions: Assign a Virtual IP Address and Certificate to the NSX-T Manager Cluster (vmware.com)

EXPAND ALL
 
  1. Open DSM Web console
  2. Go to the Computers Tab and click Add
  3. Select "Add VMware vCenter..." and provide the NSX-T manager binding and input the NSX-T Cluster VIP IP address/FQDN name
  4. Complete the Wizard instructions
  1. Open DSM Web console
  2. Go to the Computers Tab
  3. Right-click on the target VMware vCenter connector and go to Properties
  4. Under the NSX Manager Tab, input the NSX-T Cluster VIP IP address/FQDN name and Credentials
  5. Apply the settings
  1. Check for any Deep Security Virtual Appliance(DSVA) deployed or Security profile binding on NSX-T
    • If yes, Manually remove the DSVA and/or Security profile binding.
    • If no, proceed with step 2
  2. Login to DSM Web Console and Go to the Computers Tab
  3. Right-click on the target VMware vCenter connector and go to Properties
  4. Under the NSX Manager Tab, click "Remove NSX Manager"
     
    Wait for a few minutes to complete to process of removing the NSX Manager. Make sure the removal is successful before moving to the next step
  5. Input the Manager Cluster VIP address/FQDN name, Credentials from the NSX Manager Tab

    Manage Address

  6. Click the "Add/Update the Certificate" button to import new Certificate to DSM server
  7. Click the "Test Connection" to ensure the DSM can connect to the NSX-T Manager VIP with correct Certificate
  8. Click "Apply" to register service to NSX-T
  9. Deploy DSVA

    Deplpyment Tab