Skip to main content
sganpat
Staff
Staff
January 26, 2026

Technical Tip: How to install FortiDeceptor VM on Proxmox

  • January 26, 2026
  • 0 replies
  • 432 views
Description This article describes how to install FortiDeceptor VM on Proxmox with VLAN interfaces.
Scope FortiDeceptor v6.2.x; Proxmox v9.x.
Solution

Proxmox is an open-source enterprise-grade hypervisor that uses KVM for virtualization. As FortiDeceptor deploys decoys on different networks, it is useful to know specific steps to implement on KVM.

 

Step 1: Create the virtual machine with a relevant Name and take note of the VM ID.

 

sganpat_0-1769204179539.png

 

At the OS tab, select 'Do not use any media'.

 

sganpat_1-1769204179565.png

 

Leave the defaults for the System tab.

 

sganpat_2-1769204179567.png

 

At the disks tab, delete the initial disk by selecting the trash can button. There should be no disks.

 

sganpat_3-1769204179569.png

 

sganpat_4-1769204179570.png

 

At the CPU tab, select the number of vCPUs to assign to the VM. Two vCPUs for the core FortiDeceptor OS are needed, and then two vCPUs for each decoy. For example, for four decoys, ten vCPUs (2 for core and 2 x 4 for the decoys) are needed.

Ensure that 'nested-virt' is selected in the 'on' position.  

 

sganpat_5-1769204179573.png

 

For the memory, four GBs for the core FortiDeceptor OS is required, and then four GBs for each decoy. For example, for four decoys, 20GBs memory is needed (4 for the core and 4 x 4 for the decoys).

 

sganpat_6-1769204179574.png

 

For the network, select the network interface for the FortiDeceptor management network. This is not the decoy deployment network interface that will be added later.

 

sganpat_7-1769204179575.png

 

Confirm the settings and select Finish. Ensure that 'Start after created' is deselected.

 

sganpat_8-1769204179577.png

 

sganpat_9-1769204179580.png

 

Step 2: Add the virtual disks to the VM.

First, extract the FortiDeceptor KVM Installation files downloaded from the Fortinet Support portal. Proxmox uses KVM as the hypervisor, so the KVM VM package is required.

 

sganpat_10-1769204179581.png

 

Then upload the required disks to the Proxmox server. Go to the Proxmox storage where the virtual disks will be installed, then go to Import. Select Upload.

 

sganpat_11-1769204179583.png

 

sganpat_12-1769204179584.png

 

Browse to the location where the FortiDeceptor KVM installation files were extracted and select the 'FDC-bootdrive.qcow2' file, and select Upload.

 

sganpat_13-1769204179588.png

 

sganpat_14-1769204179589.png

 

Once the 'FDC-bootdrive.qcow2' file is uploaded, select the uploaded file and select Import.

 

sganpat_15-1769204179591.png

 

Select the FortiDeceptor VM as the Target Guest and add it.

 

sganpat_16-1769204179592.png

 

sganpat_17-1769204179593.png

 

Now add the data drive. Repeat the above steps to upload the 'FDCVMS-datadrive.qcow2' virtual disk from the FDCVMS folder in the location where the FortiDeceptor KVM installation files were extracted.

 

Note: When deploying a FortiDeceptor VME appliance, the 'FDCVME-datadrive.qcow2' will be attached. See the README.txt file in the extracted location for more information.

 

sganpat_18-1769204179595.png

 

Both disks should be attached as shown in the image below.

 

sganpat_19-1769204179598.png

 

Step 3: Configure the deployment network.

On the Proxmox server, configure a bridge interface to allow VLANs for the deployment network. In the Proxmox GUI, select the host server and go to System, then Network.

 

Edit the bridge interface for the decoy network and ensure that 'VLAN aware' is selected.

 

sganpat_20-1769204179599.png

 

sganpat_21-1769204179602.png

 

Return to the FortiDeceptor VM settings and add the deployment network virtual bridge interface. Select the FortiDeceptor virtual machine and go to Hardware. Select Add and 'Network Device'.

 

sganpat_22-1769204179607.png

 

Select the virtual bridge for the decoy network. Ensure Firewall is deselected.

 

sganpat_23-1769204179609.png

 

sganpat_24-1769204179612.png

 

Ensure that the physical switch interface that the virtual bridge that will be used for the decoy deployment networks is set up as a tagged interface and allows the relevant VLANs.

 

sganpat_25-1769204179616.png

 

sganpat_26-1769204179624.png

 

Step 4: Boot the FortiDeceptor VM. First, edit the Boot Order by going to Options.

 

sganpat_27-1769204179629.png

 

Move the virtual disks (usually scsi0 and scsi1) to the top. Deselect all the devices and select ONLY scsi0 as the boot device.

 

sganpat_28-1769204179630.png

 

sganpat_29-1769204179633.png

 

Step 5: Start the FortiDeceptor Virtual Machine.

Note that the Port1 IP address and gateway settings will need to be configured to access the GUI. See the FortiDeceptor CLI Reference for more information.

 

sganpat_30-1769204179634.png

 

Step 6: Create the Deployment Networks.

In FortiDeceptor, go to Deception, then Deployment Network. Select Add new VLAN/Subnet. When adding a VLAN interface, turn the 'Tagged Interface' selector to On, then enter the VLAN ID of the VLAN. Configure the monitor IP address and gateway and select save.

 

sganpat_31-1769204179637.png

 

Repeat the process for the additional VLANs.

 

sganpat_32-1769204179640.png

 

Note that if a deployment network is being created where the VLAN is the Native VLAN of the interface, then turn the 'Tagged Interface' selector to Off.

 

sganpat_33-1769204179641.png

 

Step 7: Deploy the decoys, selecting the relevant deployment networks.

 

sganpat_34-1769204179645.png

 

sganpat_35-1769204179649.png

 

sganpat_36-1769204179652.png

 

Test and verify that the decoys can be accessed from a device on the same network.

 

sganpat_37-1769204179658.png

 

sganpat_38-1769204179664.png

 

Related documents:

Technical Tip: How to install FortiGate VM on Proxmox 

Deploying a FortiGate-VM into Proxmox 

Deploying FortiDeceptor VM on KVM

CLI Reference

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!