Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

 
 

Juniper Security Director System Requirements

Ensure that your system meets the hardware and software requirements.

Hardware Requirements

Table 1: Hardware Requirements for ESXi Server
VM Configuration Device Management Capability Log Analytics and Storage Capability
16 vCPU, 80 GB RAM, 2.1 TB storage
  • Up to 1000 devices

  • Up to 10000 policy rules per device

  • Up to 6000 NAT rules per device

  • Up to 1000 VPNs per device/system

  • Up to 17000 logs per second

  • Out of the 2.1 TB storage, 1.5 TB is dedicated for log analytics.

40 vCPU, 208 GB RAM, 4.2 TB storage
  • Up to 3000 devices

  • Up to 20000 policy rules per device

  • Up to 10000 NAT rules per device

  • Up to 1500 VPNs per device/system

  • Up to 40000 logs per second

  • Out of the 4.2 TB storage, 3.5 TB is dedicated for log analytics.

Note:

We do not recommend hyperthreading on VMware hypervisor (ESXi) Server. You must use dedicated resources for CPU, RAM, and disk as per the hardware requirement. We do not recommend oversubscription or sharing resources.

Software Requirements

  • Juniper Security Director runs on a VMware hypervisor (ESXi) Server. Use vCenter and vSphere version 7.0 and later. You must deploy the OVA through vCenter Server only. We do not support OVA deployment on ESXi directly.

  • You must have the following dedicated IP addresses in the same subnet:

    • Management IP address—IP address for the VM that provides access to the Juniper Security Director CLI.

    • UI virtual IP address—Virtual IP address to access the Juniper Security Director GUI.

    • Device connection virtual IP address—Virtual IP address to establish connection between the managed devices and Juniper Security Director.

    • Log collector virtual IP address—Virtual IP address to receive logs from devices.

  • Ensure that you have access to SMTP, NTP, and DNS servers from the VM network (Juniper Security Director).

    Note:

    We support NTP server with IPv4 address only.