Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

 
 

Juniper Security Director System Requirements for ESXi Server

Ensure that your system meets the hardware and software requirements.

Hardware Requirements

Table 1 outlines the recommended VM configuration options, device management, and storage capabilities. You can choose any one of the recommended configuration options for optimal performance.

Table 1: Hardware Requirements for ESXi Server
VM Configuration Device Management Capability EPS

Option 1—By default, VM is deployed with the following parameters:

  • CPUs—8 vCPUs

  • Memory—64 GB RAM

  • Total disk—1 TB

  • OS disk (Hard disk 1)—200 GB

  • Config disk (Hard disk 2)—250 GB

  • Log disk (Hard disk 3)—500 GB

Existing tenants who need minimal resource configuration must install the latest version of Juniper Security Director. Simply upgrading an existing deployment is not sufficient.

  • Up to 200 devices

  • Up to 2500 policy rules per device

  • Up to 2000 NAT rules per device

  • Up to 250 VPNs per device/system

  • Up to 5000 logs per second

Option 2

  • CPU—16 vCPU

  • Memory—80 GB RAM

  • Total disk—2.1 TB storage

  • OS disk (Hard disk 1)—200 GB

  • Config disk (Hard disk 2)—400 GB

  • Log disk (Hard disk 3)—1.5 TB

  • Up to 1000 devices

  • Up to 10000 policy rules per device

  • Up to 6000 NAT rules per device

  • Up to 1000 VPNs per device/system

  • Up to 14000 logs per second

Option 3

  • CPU—40 vCPU

  • Memory—208 GB RAM

  • Total disk—4.2 TB storage

  • OS disk (Hard disk 1)—200 GB

  • Config disk (Hard disk 2)—525 GB

  • Log disk (Hard disk 3)—3.5 TB

  • Up to 3000 devices

  • Up to 20000 policy rules per device

  • Up to 10000 NAT rules per device

  • Up to 1500 VPNs per device/system

  • Up to 35000 logs per second

Note:
  • We do not recommend hyperthreading on VMware hypervisor (ESXi) Server. You must use dedicated resources for CPU, RAM, and storage.

  • We do not recommend sharing resources.

  • You can switch from VM configuration option 1 to VM configuration option 2 or option 3, if necessary. However, once you switch to VM configuration option 2 or option 3, you cannot revert to VM configuration option 1. For instructions to modify the VM configuration in VMware vSphere, see Modify VM Configuration Using VMware vSphere.

Software Requirements

  • Use vCenter and vSphere version 7.0 and later. You must deploy the OVA through vCenter Server only. We do not support OVA deployment on ESXi directly.

  • You must have the following dedicated IP addresses in the same subnet:

    • Management IP address—IP address for the VM that provides access to the Juniper Security Director CLI.

    • UI virtual IP address—Virtual IP address to access the Juniper Security Director GUI.

    • Device connection virtual IP address—Virtual IP address to establish connection between the managed devices and Juniper Security Director.

    • Log collector virtual IP address—Virtual IP address to receive logs from devices.

    To ensure a smooth deployment of the VM, you must make sure that the UI virtual IP address, device connection virtual IP address, and log collector virtual IP address are accessible through the default gateway. Additionally, verify that the Fully Qualified Domain Names (FQDN) associated with these IP addresses can be resolved before you start the OVA deployment process.

  • Ensure that you have access to SMTP, NTP, and DNS servers from the VM network (Juniper Security Director).

    Note:

    We support NTP server with IPv4 address only.