Overview
Learn about the guidelines and limitations for deploying Firewall Management Center Virtual on Cisco HyperFlex, including unsupported features such as cloning and snapshots, OVF file naming requirements for vCenter, and high availability prerequisites like matching appliance models and license entitlements.
Limitations
The following limitations exist when you deploy the Firewall Management Center Virtual for Cisco HyperFlex:
-
The Firewall Management Center Virtual appliances do not have serial numbers. The page shows either None or Not Specified depending on the virtual platform.
-
Cloning a virtual machine is not supported.
-
Restoring a virtual machine with snapshot is not supported.
-
VMware Workstation, Player, Server, and Fusion do not recognize OVF packaging and are not supported.
OVF File Guidelines
Virtual appliances use Open Virtual Format (OVF) packaging. You deploy a virtual appliance with a virtual infrastructure (VI) OVF template. The selection of the OVF file is based on the deployment target-
For deployment on vCenter—Cisco_Secure_FW_Mgmt_Center_Virtual_VMware-VI-X.X.X-xxx.ovf
where X.X.X-xxx is the version and build number of the System software you want to deploy. The installation process allows you to perform the entire initial setup for the Firewall Management Center Virtual appliance. You can specify:
-
A new password for the admin account.
-
Network settings that allow the appliance to communicate on your management network.
High Availability Support
You can establish high availability (HA) between two Firewall Management Center Virtual appliances deployed on Hyperflex host:
-
The two Firewall Management Center Virtual appliances in a high availability configuration must be the same model.
-
To establish the Firewall Management Center Virtual HA, Firewall Management Center Virtual requires an extra Firewall Management Center Virtual license entitlement for each the Firewall Threat Defense device that it manages in the HA configuration. However, the required Firewall Threat Defense feature license entitlement for each the Firewall Threat Defense device has no change regardless of the Firewall Management Center Virtual HA configuration. See License Requirements for Threat Defense Devices in a High Availability Pair in the Cisco Secure Firewall Management Center Device Configuration Guide for guidelines about licensing.
-
If you break the Firewall Management Center Virtual HA pair, the extra Firewall Management Center Virtual license entitlement is released, and you need only one entitlement for each the Firewall Threat Defense device.
See High Availability in the Cisco Secure Firewall Management Center Administration Guide for guidelines about high availability.
Related Documents
Release Notes for Cisco HX Data Platform
Configuration Guides for Cisco HX Data Platform
Cisco HyperFlex 4.0 for Virtual Server Infrastructure with VMware ESXi