Prerequisites to Deploy Firewall Threat Defense Container in Kubernetes Environment
Following are the prerequisites to deploy Firewall Threat Defense container in a Kubernetes environment:
-
Operating System: Ubuntu, Version - 20.04 LTS (minimum), 22.04 LTS (maximum)
-
Kubernetes Environment:
-
Kubernetes cluster version - 1.29.15 (minimum), 1.31.14 (maximum)
-
Cluster must include master and worker nodes.
-
Multus CNI installed for multi-network support
-
MetalLB installed for LoadBalancer services
-
-
Kubernetes CNI
-
POD management CNI - Calico
-
FTDc data network CNI - Multus macvlan
-
FTDc data network CNI - Multus SR-IOV
-
-
Worker Node Requirements:
-
Hugepages configured (2Mi pages)
-
Use SSD/NVMe storage on worker nodes. HDD-based storage is not supported.
-
For Macvlan: Host interfaces available for data traffic
-
For SR-IOV: SR-IOV Network Operator installed and VFs configured
-
-
Helm: Helm version minimum 3.8 or later for deploying FTD using Helm charts (YAML-based Infrastructure-as-Code)
-
Firewall Threat Defense Container (FTDc) image available in an accessible registry
-
Management Center accessible from the cluster (if using ftd-manager)
For more information on general Kubernetes operations mentioned in these prerequisites, see Kubernetes documentation.
Feedback