This section describes how to install a virtual File Protect appliance on a KVM server using the KVM Virtual Machine Manager UI.
Important
This procedure uses KVM version libvert 4.5 on Ubuntu 18.04. The navigation instructions and user interface may vary if you are using CentOS or a different version of Ubuntu.
Note
This procedure covers the required settings for a Trellix virtual appliance. You can accept the default values for the other settings, or specify values that are appropriate for your setup.
Before starting the virtual appliance installation, ensure you have the required prerequisite software installed. See KVM requirements .
In the following procedure, you will create the virtual appliance and configure its management, OOB, and data ports.
Important
A virtual File Protect appliance supports ten NICs: one management interface, one out-of-band interface, and eight monitoring (data) interfaces. You must provision a NIC for each interface. This is because KVM needs to know the total number of interfaces, even if some of those interfaces are not used.
Tab | Action |
|---|---|
Controller |
|
Network (for OOB) | Add the OOB (ether2) port for the virtual File Protect appliance.
|
Network (for data ports) | Repeat the following steps to configure each of the data ports required for your virtual Network Security appliance.
|
Download the File Protect KVM deployment
.zipfile from the Trellix DTI network to a KVM server and extract the files within it. The.zipfile name is based on your appliance model. For example, the.zipfile for FX 2500 isimage-wmps-Trellixfx2500v.zip.In KVM Virtual Machine Manager, select File > New Virtual Machine.
Complete the Create a new virtual machine screens:
Screen
Action
Step 1 of 4
Select Import existing disk image.
Click Forward.
Step 2 of 4
Browse to and select the folder to which you extracted the
.zipfile in the first step.Select the
.qcow2file, such asimage-fmps-fireeyefx2500v.qcow2, and click Choose Volume.Select OS type Linux and in Version select your version of CentOS or Ubuntu.
Click Forward.
Step 3 of 4
Set Memory and CPU settings to the values for your virtual File Protect model.
The base platform must have the required amount of disk space, memory, and CPU cores to support the specific virtual File Protect model.
For example, for model FX 2500V, enter 16GB (16384MB) for Memory (RAM) and 8 for CPUs.
Click Forward.
Step 4 of 4
Enter a name, such as
Trellix-FX-2500V.Click Customize configuration before install and select Network selection
Bridge br0. This software bridge is the management (ether1) connection to the virtual File Protect appliance. The bridge must already exist in the host OS, as described in KVM Requirements.Click Finish.
The KVM installation page opens.
In the KVM installation page, configure the basic information and disk IO for the virtual File Protect
Tab
Action
Overview
Enter a domain name, such as
Trellix-FX-2500V, for the virtual File Protect appliance in Name and optionally enter a Title and Description.Click Apply.
VirtIO Disk 1
Click Advanced options.
Select
SCSIin the Disk bus field.Click Apply.
In the KVM installation page, add the virtual hardware for the controller and networks:
At the bottom left of the KVM installation page, click Add Hardware.
In the Add New Virtual Hardware page, select the tab for the type of hardware to add and enter the values according to the following table.
You must click Finish after adding each hardware entry and click Add Hardware again to select the next type of hardware to add.
After adding the data ports, click Begin installation.
Check the console for the virtual File Protect appliance boot status.
Continue with Performing the initial File Protect configuration for the virtual appliance.