VM-Series
Deployment
Guide
77
Set Up a VM-Series NSX Edition Firewall
Create Policies
Step 2
Create security policies.
1.
Select
Policies > Security
.
2.
Select the
Device Group
that
you
created for managing the VM-Series NSX edition firewalls in
Create a Device Group and Template on Panorama
.
3.
Click
Add
and enter a
Name
and a
Description
for the rule. In
this example, the security rule allows all traffic between the
WebFrontEnd servers and the Application servers.
4.
For the
Source Address
and
Destination Address
, select or
type in an address, address group or region. In this example, we
select an address group, the Dynamic address group you created
in
Step 1
above.
5.
Select the
Application
to allow. In this example, we create an
Application Group
that includes a static group of specific
applications that are grouped together.
a.
Click
Add
and select
New Application Group
.
b.
Click
Add
to select the application to include in the group. In
this example, we select the following:
c.
Click
OK
to create the application group.
6.
Specify the action—
Allow
or
Deny
—for the traffic, and
optionally attach the default security profiles for antivirus,
anti-spyware, and vulnerability protection, under
Profiles.
7.
Repeats Steps
3
-
6
above to create the pertinent policy rules.
8.
Click
Commit
, select Commit Type as
Panorama
. Click
OK.
Define Policy on Panorama