In 4.2, a totally new version of NSX Network Detection and Response is delivered with NSX Application Platform. Data will not migrate from the earlier NSX Network Detection and Response versions to 4.2. You need an Advanced form factor configured in the NSX Application Platform to proceed with upgrade. Upgrade with the Standard form factor is not allowed.

Prerequisites

Update your existing form factor to the Advanced form factor in the NSX Application Platform as described in the Deploying and Managing the VMware NSX Application Platform.

Important: Data will not migrate from the earlier NSX Network Detection and Response versions to 4.2. The action is permanent and results in loss of previously collected NSX Network Detection and Response data.

Procedure

  1. From your browser, log in with Enterprise Admin privileges to an NSX Manager at https://<nsx-manager-ip-address>.
  2. Navigate to System > Upgrade and upgrade the NSX Application Platform. For details, see "Upgrade the NSX Application Platform" topic in the Deploying and Managing the VMware NSX Application Platform document in the VMware NSX Documentation set.

    Continue to upgrade the NSX Application Platform till you reach the Network Detection & Response tab.

  3. For the Network Detection & Response feature, click Upgrade.

    The system proceeds to check that the NSX Application Platform is deployed with the Advanced form factor, which is required to activate NSX Network Detection and Response. If not, update your existing form factor as described in the Deploying and Managing the VMware NSX Application Platform document in the VMware NSX Documentation set.

    For the 4.1.x to 4.2 upgrade, Analytics Common is installed and not upgraded. After Analytics Common succeeds, NDR upgrade begins automatically. If you do not have the NSX Malware Prevention feature installed, the NSX Cloud Connector component will be deleted.

    There are multiple ways to track the progress of the upgrade.

    1. To view the logs generated as the upgrade progresses, click Recent Logs.
    2. To monitor the upgrade status for each component group, use the Group Status column.
    3. To see the upgrade status for each item in a particular group, expand the grid row for that group and verify the status shown for each group item.

    If an error occurs for a group upgrade, expand the row for the group and click the Failed link to see the reason for the failure. Use that information to resolve the reported problem and to work with your infrastructure administrator or VMware support. When you have resolved the cause of the failure, click Retry to try to complete the upgrade.

  4. After the upgrade is successful, click Run Post Checks. After post checks are successful, click Finish.
    NSX Network Detection and Response is upgraded to the 4.2 version.

Results

After you have upgraded all of the NSX features activated on the NSX Application Platform, navigate to System > NSX Application Platform. Verify the Platform Version and Feature Version details for NSX Network Detection and Response is correct. The feature card displays an UP status.

What to do next

Refresh the NSX Manager UI. The Threat Detection & Response tab becomes available on the UI. You can start monitoring and analyzing network threats.