Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

 
 

Juniper Security Director System Requirements for ESXi Server

Ensure that your system meets the hardware and software requirements.

Hardware Requirements

Table 1 outlines the recommended VM configurations, and the device management, log analytics, and storage capabilities supported by each configuration. You can choose any one of the recommended configurations for optimal performance.

Table 1: Hardware Requirements for ESXi Server
VM Configuration Device Management Capability Log Analytics and Storage Capability

VM Configuration 1

  • 16 vCPU

  • 80 GB RAM

  • 2.1 TB storage

  • Up to 1000 devices

  • Up to 10000 policy rules per device

  • Up to 6000 NAT rules per device

  • Up to 1000 VPNs per device/system

  • Up to 17000 logs per second

  • Out of the total 2.1 TB storage, 1.5 TB is dedicated for log analytics.

VM Configuration 2

  • 40 vCPU

  • 208 GB RAM

  • 4.2 TB storage

  • Up to 3000 devices

  • Up to 20000 policy rules per device

  • Up to 10000 NAT rules per device

  • Up to 1500 VPNs per device/system

  • Up to 40000 logs per second

  • Out of the total 4.2 TB storage, 3.5 TB is dedicated for log analytics.

Note:
  • We do not recommend hyperthreading on VMware hypervisor (ESXi) Server. You must use dedicated resources for CPU, RAM, and storage.

  • We do not recommend sharing resources.

  • You can switch from VM configuration 1 to VM configuration 2, if necessary. However, once you switch to VM configuration 2, you cannot revert to VM configuration 1. For instructions to modify the VM configuration in VMware vSphere, see Modify VM Configuration.

Software Requirements

  • Juniper Security Director runs on a VMware hypervisor (ESXi) Server. Use vCenter and vSphere version 7.0 and later. You must deploy the OVA through vCenter Server only. We do not support OVA deployment on ESXi directly.

  • You must have the following dedicated IP addresses in the same subnet:

    • Management IP address—IP address for the VM that provides access to the Juniper Security Director CLI.

    • UI virtual IP address—Virtual IP address to access the Juniper Security Director GUI.

    • Device connection virtual IP address—Virtual IP address to establish connection between the managed devices and Juniper Security Director.

    • Log collector virtual IP address—Virtual IP address to receive logs from devices.

    To ensure a smooth deployment of the OVA, you must make sure that the UI virtual IP address, device connection virtual IP address, and log collector virtual IP address are accessible through the default gateway. Additionally, verify that the Fully Qualified Domain Names (FQDN) associated with these IP addresses can be resolved before you start the OVA deployment process.

  • Ensure that you have access to SMTP, NTP, and DNS servers from the VM network (Juniper Security Director).

    Note:

    We support NTP server with IPv4 address only.