To create firewall rules and add them to an NSX edge gateway, you must first create IP sets. IP sets are groups of objects to which the firewall rules apply. Combining multiple objects into IP sets helps reduce the total number of firewall rules to be created.


  1. In the top navigation bar, click Networking and click the Edge Gateways tab.
  2. Click the NSX edge gateway.
  3. Under Security, click IP Sets tab and click New.
  4. Enter a name and, optionally, a description for the IP set.
  5. Enter an IP address or an IP addresses range for the virtual machines that the IP set includes, and click Add.
  6. To save the firewall group, click Save.


You created an IP set and added it to the NSX edge gateway.

What to do next

Add an NSX Edge Gateway Firewall Rule