This section discusses the server requirements for deploying Virtual Sensors.
VMware ESX server requirements
Following table provides the compatible versions for the Trellix vIPS deployment in the ESXi server:
| Sensor model | ESX | Virtual IPS Sensor | Manager |
|---|---|---|---|
| IPS-VM600 |
ESXi 6.5 Update 3 ESXi 6.7 Update 1 ESXi 6.7 Update 2 ESXi 6.7 Update 3 ESXi 7.0 Update 1 ESXi 7.0 Update 2 ESXi 7.0 Update 3 |
10.1.7.1, 10.1.7.42, 10.1.7.51, 10.1.7.65, 10.1.7.86, 10.1.7.96, 10.1.7.123, 10.1.7.135, 10.1.7.155 | 10.1.7.7, 10.1.7.29, 10.1.7.35, 10.1.7.40, 10.1.7.44, 10.1.7.50, 10.1.7.55, 10.1.7.61, 10.1.7.65 |
Note
If you are using a distributed virtual switch, you can install Manager and Sensor only on hosts running ESXi 6.0 or ESXi 6.7 Update 3 versions.
Other requirements
- To install the Virtual Sensor (that is to deploy the OVA file), you need VMware vCenter Server. Using the VMware vSphere Client to deploy the Virtual Sensor OVA file is not recommended. For subsequent management of your VMware ESXi server, you might use VMware vSphere Client.
- You must exclude the Virtual Sensor from VMware Distributed Resource Scheduler (DRS).
- Do not install VMware tools for a Virtual Sensor.
- For optimal and predictable performance, follow these guidelines.
- You must configure each Virtual Sensor VM to execute on as many cores as required for the Sensor model by assigning CPU affinity to the VM. For example, an IPS-VM600 VM must be affinitized to 4 logical cores.
- No other virtual machines running on the same ESXi host can be allowed to share the CPU cores that are assigned to a Virtual Sensor virtual machine. For example, if there are 16 CPU cores on a ESX server, the Virtual Sensor VM can be affinizied to the first 4 CPUs. All other VMs running on the same ESX server must be excluded from using the first 4 CPUs by affinitizing them to use the remaining CPUs on the host.