Manually deploying a Network Security instance in AWS

Prev Next

The following table summarizes the steps to manually deploy a Network Security instance in AWS.

Task

Description

1. Ensure that requirements are met.

AWS requirements

2. Launch the instance.

Creating the Network Security instance

3. Create and attach the network interfaces.

Configuring Network Securitynetwork interfaces on AWS

4. (Optional) Apply the activation code and configure the initial admin password for the instance.

Configuring the activation code and initial admin password

5. If using a static IP address for the ether1 interface: Configure the IP address.

Configuring a static IP address for the ether1 interface

6. Start the instance and perform the initial configuration.

Performing the initial Network Security configuration using AWS

7. Configure IP addressing for the monitoring interfaces on the Network Security instance.

Configuring monitoring ports on the Network Security instance

8. Inline mode: Perform the procedures in a supported use case scenario.

Deploying Network Security instances in AWS in inline mode

9. TAP or SPAN mode: Create traffic mirror sessions to copy the traffic from network interfaces.

Configuring traffic mirroring on AWS for TAP or SPAN mode

10. (Optional) Enable HTTP health checks for AWS network load balancing (NLB).

Enabling HTTP health checks for network load balancing on AWS

11. Optional: If you determine your instance is too small or too large for your needs, you can change the instance type.

Changing an AWS instance type

Note

You can alternatively create the virtual appliance using an AWS CloudFormation template, described in AWS CloudFormation template deployment.