Networking appliances

VM Squared provides L2 networking and L3 VM security. To integrate routing and perform enhanced L3 features you may use VM Appliances such as:

Appliance vendors

  • Cisco
    • FirePOWER Virtual
    • SD-WAN Virtual Router
  • Fortinet
    • Fortigate-VM
  • Palo Alto
    • VM-Series
  • pfSense
  • VyOS

Appliance installation process

In general the process is the same for each network appliance:

  • A KVM-compatible build can be used on VM Squared (cloudInit is available)
    • Upload disk image
    • Create a VM Template for the Appliance
  • Deploy the VM Appliance like any other VM
    • Attach the upstream IP network
    • Select external IP address
    • Configure external IP address in VM Appliance OS
  • Create Virtual Networks to place behind the VM Appliance
    • Connect these VLANs to all hosts in the clusters
    • Pick IP range and gateway address
    • Allocate a dedicated IP address range to the Virtual Networks (excluding gateway address)
    • Configure Virtual Network context with gateway IP
  • Add Virtual Networks to the VM Appliance
    • Allocate gateway IP address to the VM Appliance
    • Configure VM Appliance software to use gateway IP address
    • Configure VM Appliance with next-hop routing rule
  • Configure next-hop routing
    • Route traffic for the new IP CIDRs to VM Appliance’s IP address
    • Validate that traffic flows to the appliance
    • Connect test VM behind VM Appliance and verify routes and ACLs