Types of interfaces that can be allocated to USG6000 series virtual firewalls

6

Layer 3 GigabitEthernet interfaces and GigabitEthernet subinterfaces.
The Eth-Trunk interface cannot be added to a virtual firewall.

Other related questions:
Configuring virtual systems on the USG6000 series
The virtual system has the following application scenarios: 1. An enterprise may have multiple departments, and each department has specific functions and responsibilities and requires specific network management policies, which complicate the configuration. As the egress gateway of the enterprise network, the NGFW uses virtual systems to manage departments separately, simplifying the configuration. For configuration details, search for "Web Example for Configuring Virtual Systems to Isolate Enterprise Departments (Layer-3 Access, Virtual Systems Sharing the WAN Interface of the Root System)" in the product documentation. 2. The NGFW functions as the access gateway of the office area of a large campus network to protect the intranet. The intranet has multiple service departments, and the administrator configures virtual systems for each department to implement independent management over department networks. For configuration details, search for "Web Example for Configuring Virtual Systems to Isolate Enterprise Departments (Layer-3 Access, Virtual Systems Having Independent WAN Interfaces)" in the product documentation. 3. When the NGFW connects to an intranet through Layer-2 access, configure virtual systems to isolate enterprise departments and facilitate configuration management by different administrators. For configuration details, search for "Web Example for Configuring Virtual Systems to Isolate Enterprise Departments (Layer-2 Access)" in the product documentation.

Accessing the virtual system configuration view on the USG6000
In the system view, run the switch vsys vsys-name command.

Problem and solution when the USG6000 virtual system cannot be configured
Check the permission of the administrator account used for login. If you use the root system administrator account to configure the virtual system, the level of the root system administrator shall be the system administrator. If you use the virtual system administrator account to configure the virtual system, the level of the virtual system administrator shall be the system administrator or the configuration administrator with the read and write permissions. Choose System > Admin > Administrator Role and configure the administrator account.

Whether the USG6000 virtual firewall supports DHCP
The USG6000 virtual system supports configuring DHCP and DHCP relay but not DHCPv6 or DHCP Snooping. The configuration commands are the same as those for the root system. For details, see the DHCP chapter of the product documentation.

If you have more questions, you can seek help from following ways:
To iKnow To Live Chat
Scroll to top