The NSX Edge provides routing services and connectivity to networks that are external to the NSX-T deployment. An NSX Edge is required if you want to deploy a tier-0 router or a tier-1 router with network address translation (NAT).

NSX Edge has the following supported deployments methods:


  • ISO with PXE

  • ISO without PXE

NSX Edge is supported only on ESXi or on bare metal. NSX Edge is not supported on KVM.

For PXE installation, you must provide the Password string encrypted with sha-512 algorithm for the root and admin user password.

NSX-T appliances have the following password complexity requirements:

  • At least eight characters

  • At least one lower-case letter

  • At least one upper-case letter

  • At least one digit

  • At least one special character

  • At least five different characters

  • No dictionary words

  • No palindromes

The installation succeeds even if the password does not meet the complexity requirements. However, when you log in for the first time, you will be prompted to change the password.


The core services on the appliance will not start until a password with sufficient complexity has been set.

After you deploy NSX Edge from an OVA file, you cannot change the VM's IP settings by powering off the VM and modifying the OVA settings from vCenter Server.

When installing NSX Manager, choose a hostname that does not contain underscores. If you specify a hostname that contains an underscore, after deployment the appliance will have a default hostname such as nsx-manager.


The NSX component virtual machine installations include VMware Tools. Removal or upgrade of VMware Tools is not supported for NSX appliances.