Create IP sets for all management applications in the consolidated cluster. At a later stage, use the IP sets to create security groups to use with the distributed firewall rules.
Perform this procedure as many times as required to configure all necessary IP sets. For applications that are load balanced, include their VIP in the IP set.
Name |
IP Addresses |
---|---|
Platform Services Controller instances |
Platform-Service-Controller_IPs |
vCenter Server instances |
vCenter-Server_IPs |
vRealize Automation appliances |
vRealize-Automation-Appliances_IPs |
vRealize Automation Windows |
vRealize-Automation-Windows _IPs |
vRealize Automation Proxy Agents |
vRealize-Automation-Proxy-Agents-IPs |
vRealize Business Server |
vRealize-Business_IPs |
vRealize Business Data Collector |
vRealize-Business-Data-Collector_IPs |
VMware VADP Solution |
vStorage-API for Data-Protection-Solution_IPs |
vRealize Operations Manager |
vRealize-Operations-Manager_IP's |
vRealize Operations Manager Remote Collectors |
vRealize-Operations-Manager-Remote-Collectors_IPs |
vRealize Log Insight |
vRealize-Log-Insight_IPs |
vRealize Suite Lifecycle Manager |
vRealize-Suite-Lifecycle-Manager_IPs |
Site Recovery Manager |
Site-Recovery-Manger_IPs |
vSphere Replication |
vSphere-Replication_IPs |
Update Manager Download Service |
UMDS_IPs |
SDDC |
Management-VLAN_Subnets, Management-VXLAN_Subnets |
Administrators |
Administrators_Subnet |
Procedure
- Log in to vCenter Server by using the vSphere Client.
- Open a Web browser and go to https://sfo01w01vc01.sfo01.rainpole.local/ui.
- Log in by using the following credentials.
Setting Value User name administrator@vsphere.local Password vsphere_admin_password
- Create an IP set.
- From the Home menu, select Networking & Security.
- In the Navigator, click Groups and Tags and click the IP Sets tab.
- From the NSX Manager drop-down menu, select 172.16.11.66.
- Click Add.
- In the New IP Set dialog box, enter the values for the IP set that you want to add, and click Add.
Setting
Value
Name
vCenter Server Instances
IP Addresses
172.16.11.64 Universal Synchronization
On
- Repeat the previous step to create IP sets for all remaining components.