Understanding vGW Series
vGW Series delivers complete virtualization security for multitenant public and private clouds, and clouds that are a hybrid of the two. vGW Series comprises the following three main components:
- The vGW Security Design VM that provides a central management
server. It consists of a set of modules that you use to configure
the vGW Series features for your virtualized environment. It provides
charts, tables, and graphs that allow you to view information that
vGW Series produces about your environment and use in determining
how to adjust your security policy.
You use it to install and manage the vGW Security VMs that you deploy to secure hosts in your virtualized environment.
- The vGW Security VM that is installed on each host to
be secured. The vGW Security VM acts as a conduit to the vGW kernel
module that it inserts into the hypervisor of the host that vGW Series
protects. The vGW Security VM maintains policy and logging information.
A vGW Security VM remains attached to the ESX/ESXi host that it is
installed on.
The vGW Security Design VM pushes the appropriate security policy to the vGW Security VM which, in turn, inserts it into the vGW kernel module.
- The vGW kernel module
Virtualized network traffic is secured and analyzed against the security policy for all VMs on the ESX/ESXi host in the vGW kernel module installed on the host. All connections are processed and firewall security is enforced in the vGW Series kernel module.