Configure the Controller VM for your vSphere with Tanzu environment.
To connect the load balancer control plane with the vCenter Server environment, the Controller requires several post-deployment configuration parameters.
- Verify that your environment meets the system requirements for configuring the NSX Advanced Load Balancer. See System Requirements for Setting Up vSphere with Tanzu with vSphere Networking and NSX Advanced Load Balancer.
- Deploy the Controller. See Deploy the Controller
- Using a browser, navigate to the IP address that you specified when deploying the Controller.
- Create an Administrator Account.
Option Description Username The administrator user name for initial configuration. You cannot edit this field. Password Enter an administrator password for the Controller VM.
The password must be at least 8 characters and contain a combination of numeric, special, uppercase, and lowercase characters.
Confirm Password Enter the administrator password again. Email Address (optional) Enter an administrator email address.
It is recommended that you provide an email address for password recovery in a production environment.
- Configure System Settings.
Option Description Passphrase Enter a passphrase for the Controller backup. The Controller configuration is automatically backed up to the local disk on a periodic basis. For more information, see Backup and Restore.
The passphrase must be at least 8 characters and contain a combination of numeric, special, uppercase, and lowercase characters.
Confirm Passphrase Enter the backup passphrase again. DNS Resolver Enter an IP address for the DNS server you are using in the vSphere with Tanzu environment. For example,
DNS Search Domain Enter a domain string.
- (Optional) Configure Email/SMTP
Option Description SMTP Source None, Local Host, SMTP Server, or Anonymous Server From Address Email address
- Click Next.
- Configure the multi-tenant settings.
- Retain the default tenant access.
- Select Setup Cloud After and click Save .
Note: If you did not select Setup Cloud After option before saving, the initial configuration wizard exits. The Cloud configuration window does not automatically launch and you are directed to a Dashboard view on the controller. In this case browse to and edit the Default-Cloud and continue with below steps.
- Configure Default-Cloud.
The Default-Cloud settings page is displayed.
- Edit Default-Cloud settings.
- Select VMware vCenter/vSphere ESX as the infrastructure type.
vSphere with Tanzu supports only Default-Cloud.
- Select Yes, Continue.
- Configure the General settings.
Option Description Name Optionally enter a name for the Default-Cloud. Type The cloud type is VMware vCenter/vSphere ESX.
- (Optional) Select DHCP Enabled if DHCP is available on the vSphere port groups.
Leave the option unselected if you want the Service Engine interfaces to use only static IP addresses. You can configure them individually for each network.
For more information, see Configure a Virtual IP Network.
- Configure the Virtual Service Placement settings.
Option Description Prefer Static Routes vs Directly Connected Network for Virtual Service Placement Select this option to force the Service Engine VM to access the server network by routing it through the default gateway.
By default, the Controller directly connects a NIC to the server network and you must force the Service Engine to connect only to the Data Network and route to the Workload Network.
Use Static Routes for Network Resolution of VIP for Virtual Service Placement Leave this option unselected.
- Configure the vCenter/vSphere credentials.
Option Description vCenter Address Enter the vCenter Server hostname or IP address for the vSphere with Tanzu environment. Username
Enter the vCenter administrator user name, such as email@example.com.
To use lesser permissions, create a dedicated role. See VMware User Role for details.
Password Enter the user password. Access Permissions
Read: You create and manage the service engine VMs.
Write: Controller creates and manages the service engine VMs.
You must select Write.
- Configure the Data Center settings.
- Select the vSphere Data Center where you want to enable Workload Management.
- Select the Use Content Library option and select the local content library from the list.
- Select SAVE & RELAUNCH to create the VMware vCenter/vSphere ESX cloud with the settings you configured.
- Configure the Network settings and click Save.
Option Description Management Network Select the VM Network. This network interface is used by the Service Engines to connect with the Controller. Service Engine Leave the Template Service Engine Group empty. Management Network IP Address Management Select DHCP Enabled.
- (Optional) Configure the following network settings only if you do not select DHCP Enabled.
Option Description IP Subnet Enter the IP subnet for the Management Network.Note: Enter an IP subnet only if DHCP is not available. Add Static IP Address Pool Enter one or more IP addresses or IP address range.Note: Enter an IP subnet only if DHCP is not available. Default Gateway Enter the default gateway for the Management Network.Note: Enter an IP subnet only if DHCP is not available.
- Create an IPAM profile and configure IPAM/DNS settings.
IPAM is required to allocate virtual IP addresses when virtual services get created.
- From the More actions menu of IPAM Profile, select Create.
The NEW IPAM/DNS PROFILE page is displayed.
- Configure the IPAM Profile.
Option Description Name User-defined string, such as ipam-profile Type
Select AVI Vantage IPAM
Allocate IP in VRF Deselect this option. Cloud Select Default-Cloud from the drop-down list.
- Click Add in the Usable Network and select the Virtual IP network that you configured. This network is the primary network.
- Click SAVE.
- From the More actions menu of IPAM Profile, select Create.
- (Optional) Configure NTP settings if you want to use an internal NTP server.
- Select .
- Delete existing NTP servers if any and enter the IP address for the DNS server you are using.
Once you complete the configuration, you see the Controller Dashboard. Select the and verify that the status of the Controller for Default-Cloud is green. Sometimes the status can be yellow for some time till the Avi Controller discovers all the port groups in the vCenter environment, before it turns green.