Install a Virtual Advanced Threat Defense instance

Place an order, download the software, then deploy it on the ESXi server.

Before you begin

  • Enable the nested virtualization on the VMware ESXi server. In an SSH session of ESXi server, add this property to the configuration file at /etc/vmware/config.

    vhv.enable = "TRUE"

  • Disable EVC mode before creating VMs on VMWare ESXi.
  • Deploy vATD always on Sandy Bridge or on updated processor architecture.
  • Note: vATD is not supported on Haswell, Nehalem, and older version processors. For Example, vm creation fails if vATD is deployed on a processor architecture which is of an older version than Nehalem.
  • From the ESX Web GUI or VCenter VM settings, enable Expose hardware assisted virtualization to the guest OS.
    Note: Power off your VM before you change the VM settings.
  • Attention: Virtual Advanced Threat Defense does not support Dynamic MAC address. Make sure that you set a static MAC address for your Virtual Advanced Threat Defense.

To upgrade from an existing version of McAfee Virtual Advanced Threat Defense, see the Upgrade the software and Android analyzer VM topic in the McAfee Advanced Threat Defense product guide. If you upgrade from a trial version of the software, obtain the license key and grant number from the McAfee order fulfillment team at again and activate it.


  1. Place a Purchase Order (PO) for McAfee Virtual Advanced Threat Defense, and receive an email with your grant number and license key.
  2. Log on to with the grant number and download the software.
    Package name format: vATD-MIO-4_x_x_xx-xxxxx-xxxxx.ova
  3. Deploy the software on an ESXi server.
    1. From a vSphere client, select FileDeploy OVF Template.
    2. Click Browse, locate and select the McAfee Virtual Advanced Threat Defense software, click Open, then click Next.
    3. Type a name the OVF template, then click Next.
    4. On Disk Format, select Thin Provision, then click Next.
    5. On Network Mapping, select a network, then click Next.
    6. Review the deployment settings, select Power on after deployment, then click Finish.

What to do next

For multiple McAfee Virtual Advanced Threat Defense instances, deploy the OVA again.