VM-Series
Deployment
Guide
75
Set Up a VM-Series NSX Edition Firewall
Create Policies
Apply Policies to the VM-Series Firewall
Now that you have created the security policies on the NSX Manager, the names of the security groups that are
referenced in security policy will be available on Panorama. You can now use Panorama for centrally
administering policies on the VM-Series firewalls.
To manage centralized policy, you must first create Dynamic Address Group(s) that match on the name of the
security group(s) you defined on the NSX Manager. Then, you attach the Dynamic Address Group as a source
or destination address in security policy and push it to the firewalls; the firewalls can dynamically retrieve the IP
addresses of the virtual machines that are included in each security group to enforce compliance for traffic that
originates from or is destined to the virtual machines in the specified group.