Deployment of FireSIGHT Management Center on VMware ESXi

Similar documents
Install and Configure FindIT Network Manager and FindIT Network Probe on a VMware Virtual Machine

Installing Cisco Virtual Switch Update Manager

Deploy IBM Spectrum Control Virtual Appliance into VMware ESXi V5.1 IBM

Installing Cisco CMX in a VMware Virtual Machine

Installing the Cisco Nexus 1000V Software Using ISO or OVA Files

ITCorporation HOW DO I INSTALL A FRESH INSTANCE OF ANALYZER? DESCRIPTION RESOLUTION. Knowledge Database KNOWLEDGE DATABASE

Installing Cisco MSE in a VMware Virtual Machine

Installing and Upgrading Cisco Network Registrar Virtual Appliance

VMware Skyline Collector Installation and Configuration Guide. VMware Skyline 1.4

Hands-on Lab Manual. Introduction. Dell Storage Hands-on Lab Instructions. Estimated Completion Time: 30 minutes. Audience. What we will be doing

UDP Director Virtual Edition Installation and Configuration Guide (for Stealthwatch System v6.9.0)

Cisco VVB Installation

Getting Started Guide

Getting Started Guide

Installing the Cisco Virtual Network Management Center

Quick Start Guide ViPR Controller & ViPR SolutionPack

Implementing Infoblox Data Connector 2.0

Installing and Configuring vcloud Connector

Installation. Power on and initial setup. Before You Begin. Procedure

OpenManage Integration for VMware vcenter Quick Install Guide for vsphere Client Version 3.0

Contents. Limitations. Prerequisites. Configuration

OpenManage Integration for VMware vcenter Quick Install Guide for vsphere Client, Version 2.3.1

Deploying the Cisco ASA 1000V

HiveManager Virtual Appliance QuickStart

VMware ESX ESXi and vsphere. Installation Guide

Quick Start Guide ViPR Controller & ViPR SolutionPack

Installing Your System Using Manual Deployment

SonicWall Secure Mobile Access SMA 500v Virtual Appliance 8.6. Getting Started Guide

OpenManage Integration for VMware vcenter Quick Install Guide for vsphere Client, Version 2.3

Installing and Configuring vcloud Connector

SRA Virtual Appliance Getting Started Guide

Installing or Upgrading ANM Virtual Appliance

Installing Cisco Virtual Switch Update Manager

Cisco IMC Supervisor Installation Guide for VMware vsphere and Microsoft Hyper-V, Release 2.0

VMware Identity Manager Connector Installation and Configuration (Legacy Mode)

VMware vsphere 5.5: Install, Configure, Manage Lab Addendum. Lab 3: Configuring VMware ESXi

Storage Manager 2018 R1. Installation Guide

UDP Director Virtual Edition

QUICK START GUIDE Cisco Virtual Network Management Center 2.0 Quick Start Guide

Vembu VMware Virtual Appliance Installation Guide - OffsiteDR


Cisco Mini ACI Fabric and Virtual APICs

Stealthwatch Flow Sensor Virtual Edition Installation and Configuration Guide (for Stealthwatch System v6.9.0)

OpenManage Integration for VMware vcenter Quick Installation Guide for vsphere Web Client Version 3.2

Free Download: Quick Start Guide

Scrutinizer Virtual Appliance Deployment Guide Page i. Scrutinizer Virtual Appliance Deployment Guide. plixer

Deploy the ExtraHop Discover Appliance with VMware

Installing and Configuring vcenter Support Assistant

VMware Skyline Collector Installation and Configuration Guide. VMware Skyline Collector 2.0

OneSign Virtual Appliance Guide

Initial Configuration Steps of FireSIGHT Systems

Integration of FireSIGHT System with ISE for RADIUS User Authentication

Installation of Cisco Business Edition 6000H/M

ECDS MDE 100XVB Installation Guide on ISR G2 UCS-E and VMWare vsphere Hypervisor (ESXi)

Deploy the ExtraHop Discover Appliance with VMware

SOA Software API Gateway Appliance 6.3 Administration Guide

Cisco Expressway on Virtual Machine

Controller Installation

Dell Storage Compellent Integration Tools for VMware

Dell Storage Compellent Integration Tools for VMware

IBM Spectrum Protect Plus Version Installation and User's Guide IBM

BIG-IP Virtual Edition and VMware ESXi: Setup. Version 12.1

Product Version 1.1 Document Version 1.0-A

Dell Storage Integration Tools for VMware

HyTrust Appliance Installation Guide

VMware vfabric Data Director Installation Guide

akkadian Provisioning Manager Express

Cisco TelePresence VCS on Virtual Machine

Installing vrealize Network Insight. VMware vrealize Network Insight 3.3

Connectra Virtual Appliance Evaluation Guide

akkadian Global Directory 3.0 System Administration Guide

HyTrust CloudControl Installation Guide

Installing VMware vsphere 5.1 Components

Configuring the SMA 500v Virtual Appliance

vrealize Network Insight Installation Guide

on VMware Deployment Guide November 2018 Deployment Guide for Unitrends Free on VMware Release 10.3 Version Provide feedback

Using a Virtual Machine for Cisco IPICS on a Cisco UCS C-Series Server

KEMP360 Central - VMware vsphere. KEMP360 Central using VMware vsphere. Installation Guide

Cisco Integrated Management Controller (IMC) Supervisor is a management system that allows you to manage rack mount servers on a large scale.

QUICK SETUP GUIDE VIRTUAL APPLIANCE - VMWARE, XEN, HYPERV CommandCenter Secure Gateway

Forcepoint Sidewinder Control Center, Virtual Appliance. Installation Guide 5.3.x. Revision A

VMware vsphere: ICM v6 Pod. Installation and Configuration Guide

Deployment Guide for Unitrends Backup on VMware

VMware vsphere: Install, Configure, and Manage v6.5 Pod. Installation and Configuration Guide

Plexxi Control Installation, Upgrade and Administration Guide Release 3.2.0

vrealize Network Insight Installation Guide

Installing vrealize Network Insight

McAfee Boot Attestation Service 3.5.0

Gnostice StarDocs On-Premises API Virtual Appliance

vrealize Suite Lifecycle Manager 1.0 Installation and Management vrealize Suite 2017

Cisco Business Edition 7000 Installation Guide, Release 10.6

Configuring High Availability for VMware vcenter in RMS All-In-One Setup

GX-V. Quick Start Guide. VMware vsphere / vsphere Hypervisor. Before You Begin SUMMARY OF TASKS WORKSHEET

SteelCentral AppResponse 11 Virtual Edition Installation Guide

Version 2.3 User Guide

dctrack Quick Setup Guide (Recommended) Obtain a dctrack Support Website Username and Password

VMware AirWatch Certificate Authentication for Cisco IPSec VPN

OpenManage Integration for VMware vcenter Using the vsphere Client Quick Install Guide Version 2.0

Cisco Modeling Labs OVA Installation

Cisco IMC Supervisor Installation Guide for VMware vsphere and Microsoft Hyper-V, Release 2.1

Transcription:

Deployment of FireSIGHT Management Center on VMware ESXi Contents Introduction Prerequisites Components Used Configuration Deploy an OVF Template Power On and Complete Initialization Configure the Network Settings Perform Initial Setup Related Information Introduction This document describes the initial setup of a FireSIGHT Management Center (also known as Defense Center) that runs on VMware ESXi. A FireSIGHT Management Center allows you to manage one or more FirePOWER Appliances, Next Generation Intrusion Prevention System (NGIPS) Viirtual Appliances, and Adaptive Security Appliance (ASA) with FirePOWER Services. Note: This document is a supplement of the FireSIGHT System Installation Guide and User Guide. For an ESXi specific configuration and troubleshooting question, refer to the VMware knowledge base and documentation. Prerequisites Components Used The information on this document is based on these platforms: Cisco FireSIGHT Management Center Cisco FireSIGHT Management Center Virtual Appliance VMware ESXI 5.0 In this document, a "device" refers to these platforms: Sourcefire FirePOWER 7000 Series Appliances and 8000 Series Appliances Sourcefire NGIPS Virtual Appliances for VMware ESXi Cisco ASA 5500-X Series with FirePOWER service The information in this document was created from the devices in a specific lab environment. All of the devices used in this document started with a cleared (default) configuration. If your network is live, make sure that you understand the potential impact of any command.

Configuration Deploy an OVF Template 1. Download the Cisco FireSIGHT Management Center Virtual Appliance from the Cisco Support & Downloads site. 2. Extract the contents of the tar.gz file to a local directory. 3. Connect to your ESXi server with a VMware vsphere Client. 4. Once you log in to the vsphere Client, choose File > Deploy OVF Template. 5. Click Browse and locate the files that you extracted in step 2. Choose the OVF file

Sourcefire_Defense_Center_Virtual64_VMware-ESXi-X.X.X-xxx.ovf and click Next. 6. On the OVF Template Details screen, click Next in order to accept the default settings.

7. Provide a name for the Management Center and click Next.

8. Choose a Datastore on which you want to create the virtual machine and click Next. 9. Click the Thick provisioned format radio button for the Disk Format and click Next. Thick provisioning format allocates the necessary disk space at the time of creating a virtual disk, whereas the thin provisioning format uses space on demand.

10. On the Network Mapping section, associate the management interface of the FireSIGHT Management Center to a VMware network and click Next.

11. Click Finish in order to complete the OVF template deployment.

Power On and Complete Initialization 1. Navigate to the newly created virtual machine. Right-click the server name and choose Power > Power On in order to boot up the server for the first time.

2. Navigate to the Console tab in order to monitor the server console. The LILO Boot Menu appears. Once the BIOS data check is successful, the initialization process starts. The first boot might take additional time to complete as the configuration database is initialized for the first time.

Once complete, you might see a message for No such device. 3. Press Enter in order to get a login prompt. Note: A message "WRITE SAME failed. Manually zeroing." may appear after the system is booted up for the first time. This does not indicate a defect, it correctly indicates that the VMware storage driver does not support the WRITE SAME command. The system displays this message, and proceeds with a fallback command to perform the same operation. Configure the Network Settings 1. On the Sourcefire3D login prompt, use these credentials to log in: For version 5.xUsername: adminpassword: SourcefireFor version 6.x and laterusername: adminpassword: Admin123Tip: You will be able to change the default password in the initial setup process in the GUI. 2. Initial configuration of the network is done with a script. You need to run the script as a root user. In order to switch to the root user, enter the sudo su - command along with the password Sourcefire or Admin123 (for 6.x). Exercise caution when logged into the Management Center command line as a root user. admin@sourcefire3d:~$ sudo su - Password: 3. In order to begin the network configuration, enter the configure-network script as root.

You will be asked to provide a Management IP Address, netmask, and default gateway. Once you confirm the settings, the network service restarts. As a result, the management interface goes down and then comes back. Perform Initial Setup 1. After the network settings are configured, open a web browser and browse to the configured IP via HTTPS (https://192.0.2.2 in this example). Authenticate the default SSL certificate if prompted. Use these credentials in order to log in:for version 5.x Username: adminpassword: SourcefireFor version 6.x and laterusername: adminpassword: Admin123 2. On the screen that follows, all of the GUI configuration sections are optional except for the password change and acceptance of the terms of service. If the information is known, it is recommended to use the setup wizard in order to simplify the initial configuration of the Management Center. Once configured, click Apply in order to apply the configuration to the Management Center and registered devices. A brief overview of the configuration options is as follows:change Password: Allows you to change the password for the default admin account. It is required to change the password. Network Settings: Allows you to modify the previously configured IPv4 and IPv6 network settings for the management interface of the appliance or virtual machine.time Settings: It is recommended that you sync the Management Center with a reliable NTP source. The IPS sensors can be configured through system policy to synchronize their time with the Management Center. Optionally, the time and display time zone can be set manually.recurring Rule Update Imports: Enable recurring Snort rule updates and optionally install now during the initial setup.recurring Geolocation Updates: Enable recurring geolocation rule updates and optionally install now during the initial setup.automatic Backups: Schedule automatic configuration backups.license Settings: Add the feature license.device Registration: Allows you to add, license, and apply initial access control policies to preregistered devices. The

hostname/ip address and registration key should match the IP address and registration key configured on the FirePOWER IPS module.end User License Agreement: Acceptance of the EULA is required. Related Information Firepower Management Center Virtual Quick Start Guide for VMware, Version 6.0 Technical Support & Documentation - Cisco Systems