Add an ESXi to a protected NSX cluster

If you have already protected ESXi servers inside a cluster with Deep Security Virtual Appliance, and you now want to add another ESXi to that cluster, read the instructions below to ensure the new ESXi server is protected.

  1. Before you begin, make sure you have deployed the appliance to the cluster. See Deploy the appliance (NSX-T 3.x) or Deploy the appliance (NSX-V) for instructions.
  2. Add the ESXi to the Data Center but not directly to the cluster.
  3. Connect ESXi to the the virtual distributed switch (vDS) if necessary. For NSX-T, make sure the ESXi host has available NIC(s) for the NSX-T Virtual Distributed Switch (N-VDS). These NICs will be automatically configured by NSX-T Manager according to your Fabric settings.

  4. Move the ESXi into the cluster. If the cluster has been configured with NSX-T, you will see the installation progress in NSX-T Manager under System > Fabric > Host Transport Nodes.

Once the ESXi host is moved into the cluster, NSX should automatically deploy the Deep Security service.

Connecting to an NSX Manager is supported in FIPS mode. See FIPS 140 support.