Using an AWS CloudFormation template to deploy a Network Security instance

Prev Next

Note

For more information about AWS CloudFormation, see the Amazon AWS CloudFormation documentation.

The following table summarizes the steps to deploy a Network Security instance in AWS using a CloudFormation template.

Task

Description

1. Ensure that requirements are met.

AWS requirements

2. Deploy the CloudFormation template to create the instance.

Template and instructions

3. Start the instance and perform the initial configuration.

Performing the initial Network Security configuration using AWS

4. Configure IP addressing for the monitoring interfaces on the Network Security instance.

Configuring monitoring ports on the Network Security instance

5. Inline mode: Perform the procedures in a supported use case scenario.

Deploying Network Security instances in AWS in inline mode

6. TAP or SPAN mode: Create traffic mirror sessions to copy the traffic from network interfaces.

Configuring traffic mirroring on AWS for TAP or SPAN mode

7. Optional: Enable HTTP health checks for AWS network load balancing (NLB).

Enabling HTTP health checks for network load balancing on AWS

8. Optional: If you determine your instance is too small or too large for your needs, you can change the instance type.

Changing an AWS instance type