Sunteți pe pagina 1din 12

VMware vRealize Automation:

Install, Configure, Manage


Lab Handouts

© 2017 VMware Inc. All rights reserved.


Management Network – 172.20.10.0/24
vclass.local

Note: the domain controller


DC-RRAS (dc.vclass.local)
Domain
Controller / DC- Student NSX vCenter is providing Active
RRAS desktop Manager Server Directory Domain Controller
sa- services (vclass.local),
dc. Student-a-
nsxmanager- sa-vcsa-01 DHCP, DNS, and router
vclass.local 01
01 services to your lab
environment.
.10 .80 .42 .94
DC-RRAS is also providing
iSCSI storage.

management network

SA Management SA Compute-01
cluster cluster

vmnic0
vmnic0
vmnic0
vmnic0

.51 .52 .53 .54

SA-ESXi-01 SA-ESXi-02 SA-ESXi-03 SA-ESXi-04

VMware vRealize Automation: Install Configure Manage 2


© 2017 VMware Inc. All rights reserved.
Management Network (vRA components) – 172.20.10.0/24
vclass.local
Install Lab only

vRealize vRealize
Domain Automation Automation
Controller / vRealize Infrastructure as a vRealize Infrastructure as a
RRAS Automation Service Automation Service

dc.
sa-vRA-01 sa-IaaS-01 sa-vRA-02 sa-IaaS-02
vclass.local

.10 .101 .121 .102 .122

management network

SA Management SA Compute-01
cluster cluster

vmnic0
vmnic0
vmnic0
vmnic0

.51 .52 .53 .54

SA-ESXi-01 SA-ESXi-02 SA-ESXi-03 SA-ESXi-04

VMware vRealize Automation: Install Configure Manage 3


© 2017 VMware Inc. All rights reserved.
Production Network – 172.20.11.0/24
vclass.local
Note: the domain controller
management network (172.20.10.0/24) DC-RRAS (dc.vclass.local)
is routing between the
production network and the
Domain fence network (172.20.0.0/24)
management network. The
Controller /
RRAS DC-RRAS is also connected
.10 to the fence network which
dc. connects the vApp to the
vclass.local
.10 outside.

.10
Internet

production network (172.20.11.0/24)

SA Management SA Compute-01
cluster cluster

vmnic0
vmnic0
vmnic0
vmnic0

SA-ESXi-01 SA-ESXi-02 SA-ESXi-03 SA-ESXi-04

VMware vRealize Automation: Install Configure Manage 4


© 2017 VMware Inc. All rights reserved.
vMotion Network – 172.20.12.0/24
vclass.local

vMotion network

SA Management SA Compute-01
cluster cluster

vmnic0
vmnic0
vmnic0
vmnic0

.51 .52 .53 .54

SA-ESXi-01 SA-ESXi-02 SA-ESXi-03 SA-ESXi-04

VMware vRealize Automation: Install Configure Manage 5


© 2017 VMware Inc. All rights reserved.
NSX Networks

Internet
SA-Production 172.20.11.0/24

172.20.11.12
Border-ESG

172.20.16.1 172.20.15.1
RD-Transport
172.20.14.1
172.20.16.2

Fin-Transport
RD-LDR

Eng-Transport 172.20.15.2
172.20.14.2
Fin-LDR
Eng-LDR SL-Application
RD-Application 110.20.100.1 110.20.100.0/24
110.10.100.0/24 110.10.100.1
SL-Data
RD-Data 110.20.101.1 110.20.101.0/24
110.10.101.0/24 110.10.101.1
SL-Web
RD-Web 110.20.102.1 110.20.102.0/24
110.10.102.0/24 110.10.102.1
BL-Application
110.20.103.1 110.20.103.0/24
QA-Application
110.10.103.0/24 110.10.103.1
BL-Data
110.20.104.1 110.20.104.0/24
QA-Data
110.10.104.0/24 110.10.104.1
BL-Web
110.20.105.1 110.20.105.0/24
QA-Web
110.10.105.0/24 110.10.105.1

VMware vRealize Automation: Install Configure Manage 6


© 2017 VMware Inc. All rights reserved.
Custom Groups
This course uses some custom groups and user accounts.
• There are three custom groups that exist in this course:
• <xx>-IT-Admin – a group that has all IT-related functions
• <xx>-BG-Admin – a group that has all business related functions
• <xx>-TA – a group that has all tenant administrator related functions
Note: The assignment of roles to a category (“IT” roles, “business” roles,
and so on) in this course is not based on a universal standard. For
example in this course the business group administrator has the ability to
create software blueprints (software arch). This is based on the idea that
a business group within a company will want control over their software
packages. Some companies will keep the software architecture role
assigned only to IT organizations.

VMware vRealize Automation: Install Configure Manage 7


© 2017 VMware Inc. All rights reserved.
Custom Users, Groups, and Roles

Users Groups Roles

<XX>-IT-Admin01 (QA-IT- <XX>-IT-Admin, (QA-IT- All IT Roles. Application arch,


Admin01, RD-IT-Admin01, Admin, RD-IT-Admin, and so Tenant admin, IaaS admin, Fabric
admin, XaaS arch, Heath, Secure
and so on) on)
Export, Software arch, Container
admin, Container, arch,
Infrastructure arch
<XX>-BG-Admin01 (QA-BG- <XX>-BG-Admin (QA-BG- All business roles. BG-Mgrs,
Admin01, RD-BG-Admin01, Admin, RD-BG-Admin, and so Share, Application arch, Approval
admin, Catalog admin, Container
and so on) on)
Admin, Health, Software Architect

<XX>-TA01 (QA-TA01, RD- <XX>TA (QA-TA, RD-TA, and Tenant Administrator and related
TA01, and so on) so on) roles. Application arch, Catalog
admin, Container admin, Container
arch, Health, IaaS admin,
Infrastructure arch, Secure Export,
Software arch, XaaS arch

VMware vRealize Automation: Install Configure Manage 8


© 2017 VMware Inc. All rights reserved.
AD-based Groups
This course uses some active directory groups and user accounts.
• Each AD group is assigned only a single role in vRealize Automation
(with the exception of the Fabric group which is assigned both Fabric
administrator and IaaS administrator)
• There will be a single user pre-defined in AD for each AD-based
group:
• example QA-XaaS01
– a user assigned to the QA-XaaS group
– assigned the XaaS role
– Member of the QA business group

VMware vRealize Automation: Install Configure Manage 9


© 2017 VMware Inc. All rights reserved.
AD-Based Users, Groups, and Roles

Users Groups Roles

<XX>-IaaS01 (QA-IaaS01, <XX>-IaaS (QA-IaaS, RD- IaaS Administrator (assigned


RD-IaaS01, and so on) IaaS, and so on) to tenant by Administrator)

<XX>-Fabric01 (QA-Fabric01, <XX>-Fabric (QA-Fabric, RD- Fabric Administrator (assigned


RD-Fabric01, and so on) Fabric, and so on) to fabric group) and IaaS
Administrator (assigned to
tenant)
<XX>-App01 (QA-App01, RD- <XX>-App (QA-App, RD-App, Application Architect
App01, and so on) and so on)

<XX>-Approv01 (QA- <XX>-Approv (QA-Approv, Approval Administrator


Approv01, RD-Approv01, and RD-Approv, and so on)
so on)
<XX>-Cat01 (QA-Cat01, RD- <XX>-Cat (QA-Cat, RD-Cat, Catalog Administrator
Cat01, and so on) and so on)

<XX>-ContAdmin01 (QA- <XX>-ContAdmin (QA- Container Administrator


ContAdmin01, RD- ContAdmin, RD-ContAdmin,
ContAdmin01, and so on) and so on)

VMware vRealize Automation: Install Configure Manage 10


© 2017 VMware Inc. All rights reserved.
AD-Based Users, Groups, and Roles

Users Groups Roles

<XX>-ContArch01 (QA- <XX>-ContArch (QA- Container Architect


ContArch01, RD-ContArch01, ContArch, RD-ContArch, and
and so on) so on)
<XX>-Health01 (QA-Health01, <XX>-Health (QA-Health, RD- Health report consumer
RD-Health01, and so on) Health, and so on)

<XX>-InfraArch01 (QA- <XX>-InfraArch (QA- Infrastructure Architect


InfraArch01, RD-InfraArch01, InfraArch, RD-InfraArch, and
and so on) so on)
<XX>-SecExp01 (QA- <XX>-SecExp (QA-SecExp, Secure Export consumer
SecExp01, RD-SecExp01, RD-SecExp, and so on)
and so on)
<XX>-Soft01 (QA-Soft01, RD- <XX>-Soft (QA-Soft, RD- Software Architect
Soft01, and so on) SoftArch, and so on)

VMware vRealize Automation: Install Configure Manage 11


© 2017 VMware Inc. All rights reserved.
AD-Based Users, Groups, and Roles

Users Groups Roles

<XX>-XaaS01 (QA-XaaS01, <XX>-XaaS (QA-XaaS, RD- XaaS Architect


RD-XaaS01, and so on) XaaS, and so on)

<XX>-Share01 (QA-Share01, <XX>-Share (QA-Share, RD- Shared access role


RD-Sharer01, and so on) Share, and so on)

<XX>-User01 (QA-User01, <XX>-Users (QA-Users, RD- Business group user. No


RD-User01, and so on) Users, and so on) special roles except for being
a member of a business
group.

VMware vRealize Automation: Install Configure Manage 12


© 2017 VMware Inc. All rights reserved.

S-ar putea să vă placă și