Create IP sets for all management applications in the consolidated cluster. You use the IP sets later to create security groups for use with the distributed firewall rules.

You perform this procedure multiple times to configure all necessary IP sets. For applications that are load balanced, include their VIP in the IP Set.

Table 1. IP Sets for the Management Components in the Consolidation Cluster

Name

IP Addresses

vRealize Automation Proxy Agents

vRealize-Automation-Proxy-Agents-IP's

vRealize Business Data Collector

vRealize-Business-Data-Collector_IP's

VMware VADP Solution

vStorage-API for Data-Protection-Solution_IP's

vRealize Operations Manager Remote Collectors

vRealize-Operations-Manager-Remote-Collectors_IP's

vRealize Log Insight

vRealize-Log-Insight_IP's

vRealize Suite Lifecycle Manager

vRealize-Suite-Lifecycle-Manager_IP's

Update Manager Download Service

UMDS_IP's

ROBO SDDC

Management-VLAN_Subnets, Management-VXLAN_Subnets

Administrators

Administrators_Subnet

Note:

Management-VLAN_Subnets and Management-VXLAN_Subnets includes the subnets in the ROBO site as well as the subnets in the SDDC hub sites. You must also add the ROBO Management-VLAN_Subnets and Management-VXLAN_Subnets to the SDDC IP Set in the Hub.

Procedure

  1. Log in to vCenter Server by using the vSphere Web Client.
    1. Open a Web browser and go to https://nyc01r01vc01.rainpole.local/vsphere-client.
    2. Log in using the following credentials.

      Setting

      Value

      User name

      administrator@vsphere.local

      Password

      vsphere_admin_password

  2. Create an IP set.
    1. In the Navigator, click Networking & Security.
    2. Click Groups and Tags and select the 172.18.11.65 instance.
    3. Click IP Sets.
    4. Click the Add icon.
    5. In the New  IP Set dialog box, configure the values for the IP set that you are adding, and click Add.

      Setting

      Value

      Name

      vRealize Automation Proxy Agents

      IP Addresses

      172.18.19.52,172.18.19.53

      Universal Synchronization

      On

  3. Repeat this procedure to create IP sets for all remaining components.