Deploy NSX Edge Devices for North-South routing in the shared edge and compute cluster.

About this task

Perform this procedure two times to deploy two NSX Edge devices: lax01w0esg01 and lax01w0esg0.

Table 1. NSX Edge Devices

NSX Edge Device

Device Name

NSX Edge Device 1

lax01w01esg01

NSX Edge Device 2

lax01w01esg02

Table 2. NSX Edge Interface Settings

Interface

Primary IP Address

lax01w01esg01

Primary IP Address

lax01w01esg02

Uplink01

172.17.35.2

172.17.35.3

Uplink02

172.27.21.3

172.27.21.2

sfo01w01udlr01

192.168.100.50

192.168.100.51

lax01w01dlr01

192.168.102.1

192.168.102.2

Prerequisites

To complete this procedure you must configure datastore for the shared edge and compute cluster in Region B.

Procedure

  1. Log in to the Compute vCenter Server by using the vSphere Web Client.
    1. Open a Web browser and go to https://lax01w01vc01.lax01.rainpole.local/vsphere-client.
    2. Log in using the following credentials.

      Setting

      Value

      User name

      administrator@vsphere.local

      Password

      vsphere_admin_password

  2. Under Inventories, click Networking & Security.
  3. In the Navigator, click NSX Edges.
  4. Select 172.17.11.66 from the NSX Manager drop-down menu.
  5. Click the Add icon to deploy a new NSX Edge.

    The New NSX Edge wizard appears.

    1. On the Name and description page, enter the following settings and click Next.

      Setting

      lax01w01esg01

      lax01w02esg02

      Install Type

      Edge Service Gateway

      Edge Service Gateway

      Name

      lax01w01esg01

      lax01w01esg02

      Deploy NSX Edge

      Selected

      Selected

      Enable High Availability

      Deselected

      Deselected

    2. On the Settings page, enter the following settings and click Next.

      Setting

      Value

      User Name

      admin

      Password

      edge_admin_password

      Enable SSH access

      Selected

      Enable FIPS mode

      Deselected

      Enable auto rule generation

      Selected

      Edge Control Level logging

      INFO

    3. On the Configure Deployment page, select the Large radio button to specify the Appliance Size and click the Add icon.

      The Add NSX Edge Appliance dialog box appears. 

    4. In the Add NSX Edge Appliance dialog box, enter the following settings, click OK, and click Next.

      Setting

      Value

      Cluster/Resource Pool

      lax01-w01rp-sddc-edge

      Datastore

      lax01_shared_edge_and_compute_datastore

    5. Click the Add icon to configure the Uplink01 interface, enter the following settings and click OK.

      Setting

      lax01w01esg01

      lax01w01esg02

      Name

      Uplink01

      Uplink01

      Type

      Uplink

      Uplink

      Connected To

      lax01-w01-vds01-uplink01

      lax01-w01-vds01-uplink01

      Connectivity Status

      Connected

      Connected

      Primary IP Address

      172.17.35.2

      172.17.35.3

      Subnet Prefix Length

      24

      24

      MTU

      9000

      9000

      Send ICMP Redirect

      Selected

      Selected

    6. Click the Add icon to configure the Uplink02 interface, enter the following settings, and click OK.

      Setting

      lax01w01esg01

      lax01w01esg02

      Name

      Uplink02

      Uplink02

      Type

      Uplink

      Uplink

      Distributed Portgroup

      lax01-w01-vds01-uplink02

      lax01-w01-vds01-uplink02

      Connectivity Status

      Connected

      Connected

      Primary IP Address

      172.27.21.3

      172.27.21.2

      Subnet Prefix Length

      24

      24

      MTU

      9000

      9000

      Send ICMP Redirect

      Selected

      Selected

    7. Click the Add icon to configure the sfo01w01udlr01 interface, enter the following settings, click OK, and click Next.

      Setting

      lax01w01esg01

      lax01w01esg02

      Name

      sfo01w01udlr01

      sfo01w01udlr01

      Type

      Internal

      Internal

      Connected To

      Universal Transit Network

      Universal Transit Network

      Connectivity Status

      Connected

      Connected

      Primary IP Address

      192.168.100.50

      192.168.100.51

      Subnet Prefix Length

      24

      24

      MTU

      9000

      9000

      Send ICMP Redirect

      Selected

      Selected

    8. Click the Add icon to configure the lax01w01dlr01 interface, enter the following settings, click OK, and click Next.

      Setting

      lax01w01esg01

      lax01w01esg02

      Name

      lax01w01dlr01

      lax01w01dlr01

      Type

      Internal

      Internal

      Connected To

      Global Transit Network

      Global Transit Network

      Connectivity Status

      Connected

      Connected

      Primary IP Address

      192.168.102.1

      192.168.102.2

      Subnet Prefix Length

      24

      24

      MTU

      9000

      9000

      Send ICMP Redirect

      Selected

      Selected

    9. On the Default Gateway Settings page, deselect the Configure Default Gateway check box and click Next.
    10. On the Firewall and HA page click Next.
    11. On the Ready to Complete page, review the configuration settings you entered and click Finish.
  6. Repeat this procedure to configure another NSX edge by using the settings for the second NSX Edge device.
  7. Configure DRS affinity rules for the Edge Services Gateways.
    1. Go back to the Home page.
    2. In the Navigator, click Hosts and Clusters, and expand the lax01w01vc01.lax01.rainpole.local tree.
    3. Select the lax01-w01-comp01 cluster, and click the Configure tab.
    4. Under Configuration, click VM/Host Rules.
    5. Click Add.
    6. In the lax01-w01-comp01 - Create VM/Host Rule dialog box, enter the following settings and click Add.

      Setting

      Value

      Name

      anti-affinity-rule-ecmpedges

      Enable rule

      Selected

      Type

      Separate Virtual Machine

    7. In the Add Rule Member dialog box, select the check box next to each of the two, newly deployed NSX ESGs and click OK.
    8. In the lax01-w01-comp01 - Create VM/Host Rule dialog box, click OK.