CISCO

Cisco DNA Center ka AWS Deployment Guide

Cisco-DNA-Center-on-AWS-Deployment-Guide

Tlhahisoleseding ya Sehlahiswa

Cisco DNA Center ho AWS ke tataiso ea phepelo e fanang ka litaelo tse qaqileng tsa ho theha le ho tsamaisa Cisco DNA Center ho Amazon. Web Sethala sa litšebeletso (AWS). Tataiso ena e etselitsoe ho thusa basebelisi ho tsamaisa Cisco DNA Center, setsi sa tsamaiso ea marang-rang se bohareng le sethala sa boiketsetso, ho AWS.

Litlhaloso

  • Phatlalatso ea Pele: 2023-08-02
  • Qetello e Fetotsoe: 2023-11-17
  • Khampani: Cisco Systems, Inc.
  • Ntlo-khōlō: 170 West Tasman Drive San Jose, CA 95134-1706 USA
  • Websebaka: http://www.cisco.com
  • Ikopanye: Mohala - 408 526-4000, Fax - 408 527-0883

Litaelo tsa Tšebeliso ea Sehlahisoa

Khaolo ea 1: Qala ka Cisco DNA Center ho AWS
Karolong ena, u tla fumana karaboview ea Cisco DNA Center ho AWS le mokhoa oa ho tsamaisa. E fana ka litataiso tsa ho lokisa le ho fihlella Cisco DNA Center ho AWS. Ho feta moo, e hlalosa ts'ebetso ea netefatso ea Cisco DNA Center VA TAR file.

Khaolo ea 2: Sebelisa ho Sebelisa Cisco DNA Center VA Launchpad
Khaolo ena e hlalosa mokhoa oa ho romelloa ho sebelisoa Cisco DNA Center VA Launchpad. E fana ka litaelo tsa mohato ka mohato bakeng sa ho khoasolla le ho kenya Cisco DNA Center VA Launchpad mochining oa lehae. E boetse e akaretsa ho fihlella mofuta o hlophisitsoeng oa Cisco DNA Center VA Launchpad e fanoeng ke Cisco. Khaolo e phethela ka litataiso tsa ho kopanya Cisco ISE ho AWS le Cisco DNA Center ho AWS.

Khaolo ea 3: Ho rarolla mathata
Khaolo ena e fana ka mehato ea ho rarolla mathata bakeng sa litaba tse fapaneng tse ka hlahang nakong ea ts'ebetso ea ho romelloa. E akaretsa mathata a ho rarolla mathata a amanang le Cisco DNA Center VA Launchpad, litaba tsa sebaka, liphoso tsa VA pod configuration, liphoso tsa khokahanyo ea marang-rang, Cisco DNA Center VA liphoso tsa tlhophiso, liphoso tsa concurrency, le litaba tse ling tsa phepelo.

Khaolo ea 4: Sebelisa ho Sebelisa AWS CloudFormation
Khaolo ena e hlalosa ts'ebetso ea phepelo e sebelisang AWS CloudFormation. E fana ka litaelo tsa ho tsamaisa Cisco DNA Center 2.3.5.3 ho AWS ho sebelisa AWS CloudFormation.

Khaolo ea 5: Sebelisa Setsi sa DNA sa Cisco ho AWS ka Botsona U sebelisa AWS CloudFormation
Khaolo ena e fana ka mokhoa oa ho tsamaisa mosebetsi ka letsoho ho sebelisa AWS CloudFormation. E akaretsa lintho tse hlokahalang bakeng sa ho tsamaisoa ka letsoho le litaelo tsa mohato ka mohato bakeng sa ho tsamaisa Cisco DNA Center ho AWS ka letsoho ho sebelisa AWS CloudFormation. Khaolo e boetse e kenyelletsa mokhoa oa ho netefatsa bakeng sa ho romelloa.

Khaolo ea 6: Tsamaisa U Sebelisa Sebaka sa Maraka sa AWS
Khaolo ena e hlalosa ts'ebetso ea phepelo e sebelisang AWS Marketplace. E fana ka litaelo tsa ho tsamaisa Cisco DNA Center 2.3.5.3 ho AWS ho sebelisa AWS Marketplace. E boetse e akaretsa phepelo ea matsoho e sebelisang Sebaka sa Maraka sa AWS mme e kenyelletsa phallo ea mosebetsi le lintho tse hlokahalang bakeng sa ho romelloa ka letsoho. Khaolo e phethela ka ts'ebetso ea netefatso bakeng sa ho romelloa.

LBH

P: Cisco DNA Center ke eng ho AWS?
A: Cisco DNA Center ho AWS ke tataiso ea phepelo e thusang basebelisi ho theha le ho laola Cisco DNA Center ho Amazon. Web Sethala sa litšebeletso (AWS).

P: Ho na le litsela tse kae tsa ho tsamaisa Cisco DNA Center ho AWS?
A: Ho na le mekhoa e meraro ea ho tsamaisa Cisco DNA Center ho AWS: ho sebelisa Cisco DNA Center VA Launchpad, AWS CloudFormation, kapa AWS Marketplace.

P: Cisco DNA Center VA Launchpad ke eng?
A: Cisco DNA Center VA Launchpad ke sesebelisoa se fanoeng ke Cisco se thusang ho kenya le ho laola Cisco DNA Center Virtual Appliance (VA).

P: Nka rarolla mathata a thomello joang?
A: Khaolo ea ho rarolla mathata e fana ka litaelo tsa mohato ka mohato bakeng sa ho rarolla mathata a fapa-fapaneng a ho romelloa, ho kenyelletsa le liphoso tse amanang le Cisco DNA Center VA Launchpad, khokahanyo ea marang-rang, tlhophiso, le tse ling.

Cisco DNA Center ka AWS Deployment Guide
E Phatlalalitsoe lekhetlo la pele: 2023-08-02 E Fetotsoe: 2023-11-17
Ntlo-kholo ea Amerika
Cisco Systems, Inc. 170 West Tasman Drive San Jose, CA 95134-1706 USA http://www.cisco.com Tlha: 408 526-4000
800 553-NETS (6387) Fax: 408 527-0883

Cisco le logo ea Cisco ke matšoao a khoebo kapa matšoao a ngolisitsoeng a Cisco le/kapa mafapha a eona a US le linaheng tse ling. Ho view lethathamo la matšoao a khoebo a Cisco, e ea ho sena URL: https://www.cisco.com/c/en/us/about/legal/trademarks.html. Matshwao a kgwebo a motho wa boraro a boletsweng ke thepa ya beng ba ona. Tšebeliso ea lentsoe molekane ha e bolele kamano ea tšebelisano pakeng tsa Cisco le k'hamphani efe kapa efe. (1721R)
© 2023 Cisco Systems, Inc. Litokelo tsohle li sirelelitsoe.

KHAOLO EA 1
KAROLO EA I KHAOLO EA 2

Qala ka Cisco DNA Center ho AWS 1 Cisco DNA Center ho AWS Overview 1 Deployment Overview 2 Itokisetse ho Tsamaisa 3 High Availability and Cisco DNA Center on AWS 3 Guidelines for Integrating Cisco ISE on AWS with Cisco DNA Center on AWS 4 Guidelines for Accessing Cisco DNA Center on AWS 4 Verify the Cisco DNA Center VA TAR File 6
Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad 9
Hlahisa Cisco DNA Center 2.3.5.3 ho AWS Ho Sebelisa Cisco DNA Center VA Launchpad 1.6 11 Sebelisa Setsi sa Cisco DNA ho AWS Ho Sebelisa Mokhoa o Ikemetseng oa Phatlalatso 11 Boikemisetso ba Phatlalatso Workflow 11 Litlhoko tse hlokahalang bakeng sa Automated Deployment DNA Access Center 12 DNA Access Ciscou 15 DNA Access Center 17 VA Launchpad 17 Theha Cisco Account 19 Theha Cisco DNA Portal Account 22 Kena ho Cisco DNA Portal ka Cisco 25 Theha VA Pod 35 ka Bowena Lokisa Tsela ea Lipalangoang le Lihekeng Tsa Bareki 37 Theha Setsi se Secha sa Cisco DNA Trouble VA 42 Trouble Center VA 42 the Deployment 43 Troubleshoot Docker Errors XNUMX Troubleshoot Login Liphoso XNUMX

Cisco DNA Center ka AWS Deployment Guide iii

Litaba

KHAOLO EA 3
KAROLO EA II KHAOLO EA 4

Troubleshoot a Hosted Cisco DNA Center VA Launchpad Error 43 Troubleshoot Region Issues 44 Troubleshoot VA Pod Configuration Liphoso 44 Troubleshoot a Network Connectivity Phoso 46 Troubleshoot Cisco DNA Center VA Configuration Liphoso 47 Troubleshoot Configuration 47 Troubleshoot Configuration47 Troubleshoot XNUMX Troubleshoot
Hlahisa Cisco DNA Center 2.3.5.3 ho AWS Ho Sebelisa Cisco DNA Center VA Launchpad 1.5 49 Deploy Cisco DNA Center ho AWS Ho Sebelisa Mokhoa o Ikemetseng oa Phatlalatso 49 Automated Deployment Workflow 49 Prerequisites for Automated Deployment DNA Center 50 DNA Access Ciscopad 53 VA Launchpad 55 Theha Cisco Account 55 Theha Cisco DNA Portal Account 57 Kena ho Cisco DNA Portal ka Cisco 60 Theha VA Pod 63 e Ncha ea VA Pod 72 ka Bowena Lokisa Tsela ea Lipalangoang le Liheke Tsa Bareki 74 Theha Setsi se Secha sa Cisco DNA Trouble VA 78 The Deployment 78 Troubleshoot Docker Errors 79 Troubleshoot Login Errors 79 Troubleshoot a Asted Cisco DNA Center VA Launchpad Error 80 Troubleshoot Region Issues 80 Troubleshoot VA Pod Configuration Errors 82 Troubleshoot a Hosted Cisco DNA Center VA Launchpad Error 83 Troubleshoot Region Issues 83 Troubleshoot VA Pod Configuration Errors 83 Troubleshoot a Horror DNA Configuration XNUMX Troubleshoot Concurrency Liphoso XNUMX Troubleshoot Litaba tse ling tsa Phano XNUMX
Tsamaisa u sebelisa AWS CloudFormation 85
Kenya Cisco DNA Center 2.3.5.3 ho AWS U Sebelisa AWS CloudFormation 87

Cisco DNA Center on AWS Deployment Guide iv

Litaba

KAROLO YA III KHAOLO 5

Tsamaisa Cisco DNA Center ho AWS ka letsoho U Sebelisa AWS CloudFormation 87 Manual Deployment Sebelisa AWS CloudFormation Workflow 87 Prerequisites for Manual Deployment U sebelisa AWS CloudFormation 88 Deploy Cisco DNA Center on AWS Manual Sebelisa AWS CloudFormation 93 Deploy 98 Validament
Tsamaisa U sebelisa Sebaka sa Maraka sa AWS 99
Tsamaisa Cisco DNA Center 2.3.5.3 ho AWS U Sebelisa AWS Marketplace 101 Deploy Cisco DNA Center on AWS Ka letsoho U Sebelisa AWS Marketplace 101 Manual Deployment U Sebelisa AWS Marketplace Workflow 101 Prerequisites for Manual Deployment U Sebelisa AW101 DNA Mahala Setsing sa AWS Maketeng ea AWS Makete ea AWS Mmaraka oa AWS DNA 107 Netefatsa Mosebetsi 107

Cisco DNA Center mabapi le AWS Deployment Guide v

Litaba
Cisco DNA Center ka AWS Deployment Guide vi

1 KHAOLO
Qala ka Cisco DNA Center ho AWS
· Cisco DNA Center ho AWS Overview, leqepheng la 1 · Deployment Overview, leqepheng la 2 · Itokisetse ho Felisoa, leqepheng la 3
Cisco DNA Center ho AWS Overview
Cisco DNA Center e fana ka taolo e bohareng, e hlakileng e e etsang hore e potlake hape e be bonolo ho e rala, ho e fana le ho e sebelisa ho pholletsa le tikoloho ea marang-rang ea hau. Sebopeho sa mosebedisi sa Cisco DNA Center se fana ka ponahalo ea marang-rang ea ho qetela le ho sebelisa lintlha tsa marang-rang ho ntlafatsa ts'ebetso ea marang-rang le ho fana ka phihlelo e ntle ka ho fetisisa ea mosebedisi le ts'ebeliso. Cisco DNA Center ho Amazon Web Services (AWS) e fana ka ts'ebetso e felletseng eo phepelo ea lisebelisoa tsa Cisco DNA Center e fanang ka eona. Cisco DNA Center ho AWS e sebetsa sebakeng sa hau sa maru sa AWS mme e laola marang-rang a hau ho tloha marung.
Cisco DNA Center mabapi le AWS Deployment Guide 1

Deployment Overview

Qala ka Cisco DNA Center ho AWS

Deployment Overview
Ho na le mekhoa e meraro ea ho kenya Cisco DNA Center ho AWS:
· Tšebeliso e Ikemetseng: Cisco DNA Center VA Launchpad e lokisa Cisco DNA Center ho AWS. E u thusa ho theha litšebeletso le likarolo tse hlokahalang bakeng sa lisebelisoa tsa maru. Bakeng sa mohlalaample, e thusa ho theha Virtual Private Clouds (VPCs), subnets, lihlopha tsa ts'ireletso, lithanele tsa IPsec VPN, le liheke. Joale Cisco DNA Center Amazon Machine Image (AMI) e sebetsa e le mohlala oa Amazon Elastic Compute Cloud (EC2) ka tlhophiso e behiloeng ho VPC e ncha hammoho le subnets, liheke tsa lipalangoang, le lisebelisoa tse ling tsa bohlokoa tse kang Amazon CloudWatch bakeng sa ho beha leihlo, Amazon DynamoDB bakeng sa polokelo ea mmuso, le lihlopha tsa ts'ireletso.
Cisco e fana ka mekhoa e 'meli ea hore u sebelise Cisco DNA Center VA Launchpad. U ka khoasolla le ho kenya Cisco DNA Center VA Launchpad mochining oa lehae, kapa o ka fihlella Cisco DNA Center VA Launchpad e hlophisitsoeng ke Cisco. Ho sa tsotellehe mokhoa oo, Cisco DNA Center VA Launchpad e fana ka lisebelisoa tseo u li hlokang ho kenya le ho laola Cisco DNA Center Virtual Appliance (VA).
Bakeng sa ts'ebetso ea boemo bo holimo, bona Deploy Using Cisco DNA Center VA Launchpad, leqepheng la 9.
· Phatlalatso ea Manual U Sebelisa AWS CloudFormation: U sebelisa ka letsoho Cisco DNA Center AMI ho AWS ea hau. Sebakeng sa ho sebelisa sesebelisoa sa phepelo sa Cisco DNA Center VA Launchpad, u sebelisa AWS CloudFormation, e leng sesebelisoa sa ho tsamaisa ka har'a AWS. Ebe u lokisa Cisco DNA Center ka ho theha lisebelisoa tsa AWS, ho theha kotopo ea VPN, le ho tsamaisa Cisco DNA Center VA ea hau. Bakeng sa ts'ebetso ea boemo bo holimo, bona Deploy Using AWS CloudFormation, leqepheng la 85.
· Ho tsamaisoa ka letsoho ho Sebelisa Sebaka sa Maraka sa AWS: U sebelisa Cisco DNA Center AMI akhaonteng ea hau ea AWS. Sebakeng sa ho sebelisa sesebelisoa sa phepelo sa Cisco DNA Center VA Launchpad, u sebelisa AWS Marketplace, e leng lebenkele la marang-rang la software ka har'a AWS. U hlahisa software ka Amazon EC2 launch console, ebe u sebelisa Cisco DNA Center ka ho theha lisebelisoa tsa AWS, ho theha kotopo ea VPN, le ho hlophisa Cisco DNA Center VA ea hau. Hlokomela hore bakeng sa mokhoa ona oa phepelo, ke Launch feela ka EC2 e tšehetsoang. Likhetho tse ling tse peli tsa ho qala (Qala ho tloha ho Websaete le Kopitsa ho Catalog ea Tšebeletso) ha li tšehetsoe. Bakeng sa ts'ebetso, bona Deploy Using AWS Marketplace, leqepheng la 99.
Haeba u na le boiphihlelo bo fokolang ka tsamaiso ea AWS, mokhoa o ikemetseng o nang le Cisco DNA Center VA Launchpad e fana ka ts'ebetso e hlophisitsoeng ka ho fetesisa, e tšehetsang. Haeba u tloaelane le tsamaiso ea AWS 'me u na le li-VPC tse teng, mekhoa ea matsoho e fana ka mokhoa o mong oa ho kenya.
Nahana ka melemo le mathata a mokhoa o mong le o mong ka tafole e latelang:

Cisco DNA Center mabapi le AWS Deployment Guide 2

Qala ka Cisco DNA Center ho AWS

Itokisetse ho Felisoa

Phepelo e Ikemetseng e nang le Cisco Manual Deployment U sebelisa AWS Manual Deployment U sebelisa AWS

Setsi sa DNA VA Launchpad

CloudFormation

Mmaraka

· E thusa ho theha meralo ea motheo ea AWS, joalo ka VPCs, subnets, lihlopha tsa ts'ireletso, lithanele tsa IPsec VPN, le liheke, akhaonteng ea hau ea AWS.
· E phethela ka bo eona ho kenya Cisco DNA Center.

· The AWS CloudFormation file ho hlokahala ho theha Cisco DNA Center VA ho AWS.
· U theha lisebelisoa tsa AWS, joalo ka li-VPC, li-subnet, le lihlopha tsa ts'ireletso, akhaonteng ea hau ea AWS.

· The AWS CloudFormation file ha e hlokehe ho theha Cisco DNA Center VA ho AWS.
· U theha lisebelisoa tsa AWS, joalo ka li-VPC, li-subnet, le lihlopha tsa ts'ireletso, akhaonteng ea hau ea AWS.

· E fana ka monyetla oa ho fumana li-VAs tsa hau.
· E fana ka taolo ea li-VA tsa hau.
· Nako ea ho tsamaisoa e batla e le lihora tse 1-1½.

· U theha kotopo ea VPN.
· U sebelisa Cisco DNA Center.
· Nako ea ho tsamaisoa e batla e le lihora tse 'maloa ho isa ho matsatsi a' maloa.

· U theha kotopo ea VPN.
· U sebelisa Cisco DNA Center.
· Nako ea ho tsamaisoa e batla e le lihora tse 'maloa ho isa ho matsatsi a' maloa.

· Litlhokomeliso tse itirisang li romelloa ho dashboard ea hau ea Amazon CloudWatch.

· U hloka ho hlophisa ho beha leihlo ka letsoho ka khomphutha ea AWS.

· U hloka ho hlophisa ho beha leihlo ka letsoho ka khomphutha ea AWS.

· U ka khetha pakeng tsa leru le itirisang kapa khoebo Network File Backup ea sistimi (NFS).

· U ka etsa feela NFS ea sebakeng seo bakeng sa li-backups.

· U ka etsa feela NFS ea sebakeng seo bakeng sa li-backups.

· Liphetoho life kapa life tse entsoeng ka mokhoa o ikemetseng oa Cisco DNA Center ho AWS li ka baka likhohlano le phepelo e ikemetseng.

Itokisetse ho Felisoa
Pele o romela Cisco DNA Center ho AWS, nahana ka litlhoko tsa marang-rang a hau le hore na u tla hloka ho kenya ts'ebetsong Cisco DNA Center e tšehetsoeng ka li-integration tsa AWS le hore na u tla fumana Cisco DNA Center ho AWS joang. Ntle le moo, Cisco e khothaletsa ka matla hore u netefatse hore Cisco DNA Center VA TAR file u jarollotse ke 'nete Cisco TAR file. Sheba Netefatsa Cisco DNA Center VA TAR File, leqepheng la 6 .
Ho fumaneha ho Phahameng le Cisco DNA Center ho AWS
Setsi sa Cisco DNA mabapi le ho fumaneha ha AWS holimo (HA) ts'ebetsong ke ka tsela e latelang: · Single-node EC2 HA ka har'a Sebaka sa Availability Zone (AZ) e lumelloa ke kamehla.

Cisco DNA Center mabapi le AWS Deployment Guide 3

Litaelo tsa ho Kopanya Cisco ISE ho AWS le Cisco DNA Center ho AWS

Qala ka Cisco DNA Center ho AWS

· Haeba ketsahalo ea Cisco DNA Center EC2 e senyeha, AWS e tla hlahisa ketsahalo e 'ngoe e nang le aterese ea IP e tšoanang. Sena se tiisa khokahanyo e sa sitisoeng le ho fokotsa litšitiso nakong ea ts'ebetso ea bohlokoa ea marang-rang.
Hlokomela Haeba u sebelisa Cisco DNA Center ho AWS u sebelisa Cisco DNA Center VA Launchpad, Release 1.5.0 kapa pejana 'me ketsahalo ea Cisco DNA Center EC2 e senyeha, AWS e tla itlhahisa ka mokhoa o mong ho eona AZ e tšoanang. Tabeng ena, AWS e ka abela Cisco DNA Center aterese e fapaneng ea IP.
· Boiphihlelo le Sepheo sa Nako ea ho Pholosa (RTO) li tšoana le matla otagtatellano ea sesebelisoa sa Cisco DNA Center e se nang tšepe.
Litaelo tsa ho Kopanya Cisco ISE ho AWS le Cisco DNA Center ho AWS
Cisco ISE ho AWS e ka kopanngoa le Cisco DNA Center ho AWS. Ho li kopanya hammoho leru, nahana ka litataiso tse latelang:
· Cisco ISE ho AWS e lokela ho kenngoa VPC e arohaneng le e boloketsoeng Cisco DNA Center VA Launchpad.
· VPC bakeng sa Cisco ISE ho AWS e ka ba sebakeng se le seng kapa sebakeng se fapaneng le VPC bakeng sa Cisco DNA Center ho AWS.
· U ka sebelisa VPC kapa Transit Gateway (TGW) ho sheba, ho latela tikoloho ea hau.
· Ho hokahanya Setsi sa Cisco DNA ho AWS le Cisco ISE ho AWS u sebelisa VPC kapa TGW peering, eketsa lintlha tse hlokahalang tsa litsela ho VPC kapa TGW litafole tsa litsela tse shebileng le tafoleng ea litsela e khomaretsoeng ho subnet e amanang le Cisco DNA Center. ho AWS kapa Cisco ISE ho AWS.
· Cisco DNA Center VA Launchpad ha e khone ho bona liphetoho leha e le life tse kantle ho sehlopha ho mekhatlo e entsoeng ke Cisco DNA Center VA Launchpad. Mekhatlo ena e kenyelletsa VPCs, VPNs, TGWs, TGW attachments, subnets, routing, joalo-joalo. Bakeng sa mohlalaample, hoa khoneha ho hlakola kapa ho fetola VA pod e entsoeng ke Cisco DNA Center VA Launchpad ho tloha kopo e 'ngoe,' me Cisco DNA Center VA Launchpad e ne e ke ke ea tseba ka phetoho ena.
Ntle le melao ea mantlha ea phihlello, o hloka ho lumella likou tse latelang tse kenang bakeng sa ho hokela sehlopha sa ts'ireletso ketsahalong ea Cisco ISE marung:
· Bakeng sa Cisco DNA Center ho AWS le Cisco ISE mabapi le kopanyo ea AWS, lumella TCP ports 9060 le 8910.
· Bakeng sa netefatso ea radius, lumella likou tsa UDP 1812, 1813, le likou life kapa life tse lumelletsoeng.
· Bakeng sa tsamaiso ea lisebelisoa ka TACACS, lumella TCP port 49.
· Bakeng sa litlhophiso tse ling, joalo ka Datagram Transport Layer Security (DTLS) kapa RADIUS Change of Authorization (CoA) e entsoeng ka Cisco ISE ho AWS, lumella likou tse tsamaellanang.
Litaelo tsa ho fihlella Cisco DNA Center ho AWS
Kamora hore u thehe mohlala oa Cisco DNA Center, u ka e fumana ka Cisco DNA Center GUI le CLI.

Cisco DNA Center mabapi le AWS Deployment Guide 4

Qala ka Cisco DNA Center ho AWS

Litaelo tsa ho fihlella Cisco DNA Center ho AWS

Bohlokoa

Cisco DNA Center GUI le CLI li fumaneha feela ka marang-rang a Khoebo, eseng marang-rang a sechaba. Ka mokhoa o ikemetseng oa ho tsamaisa, Cisco DNA Center VA Launchpad e netefatsa hore Cisco DNA Center e fumaneha feela ho tsoa ho intranet ea Enterprise. Ka mokhoa oa ho tsamaisa ka letsoho, o hloka ho netefatsa hore Cisco DNA Center ha e fumanehe ho intranet ea sechaba ka mabaka a ts'ireletso.

Litaelo tsa ho fihlella Cisco DNA Center GUI Ho fihlella GUI ea Cisco DNA Center:
· Sebelisa sebatli se tšehetsoang. Bakeng sa lenane la hajoale la libatli tse tšehelitsoeng, bona Lintlha tsa Phatlalatso bakeng sa Cisco DNA Center VA Launchpad.
· Ho sebatli, kenya aterese ea IP ea mohlala oa Cisco DNA Center ka mokhoa o latelang: http://ip-address/dna/home For ex.ampLe:
http://192.0.2.27/dna/home
· Sebelisa lintlha tse latelang ha u qala ho kena: Username: admin Password: maglev1@3

Hlokomela U tlameha ho fetola phasewete ena ha u kena ho Cisco DNA Center ka lekhetlo la pele. Phasewete e tlameha ho: · Tlohela tab efe kapa efe kapa dikgaohatso tsa mela · E be le bonyane ditlhaku tse robedi · E na le ditlhaku tse tswang bonyane ho tse tharo tsa mekgahlelo e latelang: · ditlhaku tse nyane (a-z) · ditlhaku tse kgolo (A-Z) · Dinomoro (0-9) · Litlhaku tse khethehileng (mohlalaample,! kapa #)

Litaelo tsa ho fihlella Cisco DNA Center CLI
Ho fihlella Cisco DNA Center CLI: · Sebelisa aterese ea IP le linotlolo tse tsamaellanang le mokhoa oo u o sebelisitseng ho tsamaisa Cisco DNA Center: · Haeba u sebelisitse Cisco DNA Center u sebelisa Cisco DNA Center VA Launchpad, sebelisa aterese ea IP le linotlolo tse fanoeng ke Cisco. Setsi sa DNA VA Launchpad.

Cisco DNA Center mabapi le AWS Deployment Guide 5

Netefatsa Cisco DNA Center VA TAR File

Qala ka Cisco DNA Center ho AWS

· Haeba u sebelisitse Cisco DNA Center ka letsoho u sebelisa AWS, sebelisa aterese ea IP le linotlolo tse fanoeng ke AWS.

Hlokomela Senotlolo e tlameha ho ba .pem file. Haeba senotlolo file e jarollwa e le senotlolo.cer file, u lokela ho rename the file ho senotlolo.pem.
· Fetola ka bowena ditumello tsa phihlello ho key.pem file ho isa ho 400. Sebelisa taelo ea chmod ea Linux ho fetola tumello ea ho kena. Bakeng sa mohlalaample: chmod 400 key.pem
· Sebelisa taelo e latelang ea Linux ho fihlella Cisco DNA Center CLI: ssh -i key.pem maglev@ip-address -p 2222 For exampLe:
ssh -i key.pem maglev@192.0.2.27 -p 2222
Netefatsa Cisco DNA Center VA TAR File
Pele o romella Cisco DNA Center VA, re khothaletsa ka matla hore o netefatse hore TAR file u jarollotse ke 'nete Cisco TAR file.
Pele o qala Netefatsa hore o khoasollotse Cisco DNA Center VA TAR file ho tloha sebakeng sa Cisco Software Download.
Tsamaiso

Mohato oa 1 Mohato oa 2 Mohato oa 3 Mohato oa 4

Khoasolla senotlolo sa sechaba sa Cisco (cisco_image_verification_key.pub) bakeng sa netefatso ea tekeno sebakeng se boletsoeng ke Cisco. Khoasolla tlhahlobo e sireletsehileng ea hash algorithm (SHA512). file bakeng sa TAR file ho tloha sebakeng se boletsoeng ke Cisco. Fumana TAR filetshaeno file (.sig) ho tsoa ho tšehetso ea Cisco ka lengolo-tsoibila kapa ka ho jarolla ho tsoa ho Cisco e sireletsehileng websebaka (haeba se le teng). (Ka boikhethelo) Etsa bonnete ba SHA ho fumana hore na TAR file e senyehile ka lebaka la download e sa fellang.
Ho latela sistimi ea hau ea ts'ebetso, kenya e 'ngoe ea litaelo tse latelang:
· Ho sistimi ea Linux: sha512sum <tar-file-filelebitso>
Ho sistimi ea Mac: shasum -a 512 <tar-file-filelebitso>
Microsoft Windows ha e kenyelle ts'ebeliso e kentsoeng ea cheke, empa u ka sebelisa sesebelisoa sa certutil:
certutil -hashfile <filelebitso> sha256
Bakeng sa mohlalaampLe:
certutil -hashfile D:CustomersFINALIZE.BIN sha256

Cisco DNA Center mabapi le AWS Deployment Guide 6

Qala ka Cisco DNA Center ho AWS

Netefatsa Cisco DNA Center VA TAR File

Mohato oa 5

Ho Windows, o ka sebelisa Windows PowerShell ho hlahisa tshilo. Bakeng sa mohlalaampLe:
PS C: UsersAdministrator> Fumana-FileHash -Path D:CustomersFINALIZE.BIN Algorithm Hash Path SHA256 B84B6FFD898A370A605476AC7EC94429B445312A5EEDB96166370E99F2838CB5 D:CustomersFINALIZE.BINALIZE.
Bapisa tlhahiso ea taelo le SHA512 checksum file tseo o di jarollotseng. Haeba tlhahiso ea taelo e sa lumellane, khoasolla TAR file hape 'me u tsamaise taelo e loketseng lekhetlo la bobeli. Haeba tlhahiso e ntse e sa lumellane, ikopanye le tšehetso ea Cisco.

Netefatsa hore TAR file ke ea 'nete ebile e tsoa ho Cisco ka ho netefatsa ho saena ha eona:

openssl dgst -sha512 -netefatsa cisco_image_verification_key.pub -signaturefilelebitso> <tar-file-filelebitso>

Hlokomela

Taelo ena e sebetsa maemong a Mac le Linux. Bakeng sa Windows, o tlameha ho khoasolla

'me u kenye OpenSSL (e fumanehang webosaeteng ea OpenSSL Downloads) haeba ha o so e etse

joalo.

Haeba TAR file ke 'nete, ho tsamaisa taelo ena ho hlahisa molaetsa o netefalitsoeng oa OK. Haeba molaetsa ona o hloleha ho hlaha, o se ke oa kenya TAR file 'me u ikopanye le tšehetso ea Cisco.

Cisco DNA Center mabapi le AWS Deployment Guide 7

Netefatsa Cisco DNA Center VA TAR File

Qala ka Cisco DNA Center ho AWS

Cisco DNA Center mabapi le AWS Deployment Guide 8

KE P A R T
Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad
· Sebelisa Cisco DNA Center 2.3.5.3 ho AWS Ho Sebelisa Cisco DNA Center VA Launchpad 1.6, leqepheng la 11 · Sebelisa Cisco DNA Center 2.3.5.3 ho AWS Ho Sebelisa Cisco DNA Center VA Launchpad 1.5, leqepheng la 49

2 KHAOLO
Kenya Cisco DNA Center 2.3.5.3 ho AWS Ho Sebelisa Cisco DNA Center VA Launchpad 1.6
· Hlahisa Setsi sa Cisco DNA ho AWS Ho Sebelisa Mokhoa oa Boipheliso oa Boipheliso, leqepheng la 11 · Automated Deployment Workflow, leqepheng la 11 · Lintho tse hlokahalang bakeng sa ho Deployment Automated, leqepheng la 12 · Kenya Cisco DNA Center VA Launchpad, leqepheng la 15 · Access Hosted Cisco DNA Center VA Launchpad, leqepheng la 17 · Theha VA Pod e Ncha, leqepheng la 25 · Lokisa ka Bohona Tsela ea ho Tsamaisa Tsela ea Lipalangoang tse Teng le Bareki, leqepheng la 35 · Theha Setsi se Secha sa Cisco DNA VA, leqepheng la 37 · Tharollo ea mathata ka Phallo, leqepheng la 42
Tsamaisa Cisco DNA Center ho AWS Ho Sebelisa Mokhoa o Ikemetseng oa ho Tsamaisa
U fana ka Cisco DNA Center VA Launchpad ka lintlha tse hlokahalang ho theha lisebelisoa tsa AWS akhaonteng ea hau ea AWS, e kenyelletsang VPC, kotopo ea IPsec VPN, liheke, li-subnet le lihlopha tsa ts'ireletso. Ka lebaka leo, Cisco DNA Center VA Launchpad e sebelisa Cisco DNA Center AMIs e le mohlala oa Amazon EC2 ka tlhophiso e behiloeng VPC e arohaneng. Tlhophiso e kenyelletsa li-subnets, liheke tsa lipalangoang, le lisebelisoa tse ling tsa bohlokoa joalo ka Amazon CloudWatch bakeng sa ho beha leihlo, Amazon DynamoDB bakeng sa polokelo ea mmuso, le lihlopha tsa ts'ireletso. U sebelisa Cisco DNA Center VA Launchpad, u ka khona ho fihlella le ho laola li-VA tsa hau, hammoho le ho laola litlhophiso tsa basebelisi. Bakeng sa tlhaiso-leseling, bona Tataiso ea Tsamaiso ea Cisco DNA Center VA Launchpad 1.6.
Automated Deployment Workflow
Ho tsamaisa Cisco DNA Center ho AWS ho sebelisa mokhoa o ikemetseng, latela mehato ena ea boemo bo phahameng: 1. Kopana le lintho tse hlokahalang. Sheba Lintho Tse Hlokahalang Bakeng sa Tšebeliso e Ikemetseng, leqepheng la 12. 2. (Boikhethelo) Kopanya Cisco ISE ho AWS le Cisco DNA Center VA ea hau hammoho. Sheba Tataiso bakeng sa
Ho kopanya Cisco ISE ho AWS le Cisco DNA Center ho AWS, leqepheng la 4.
Cisco DNA Center mabapi le AWS Deployment Guide 11

Litlhoko tse hlokahalang bakeng sa ho Deployment ka boiketsetso

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

3. Kenya Cisco DNA Center VA Launchpad kapa fihlella Cisco DNA Center VA Launchpad e tsamaisoang ke Cisco. Sheba Kenya Cisco DNA Center VA Launchpad, leqepheng la 15 kapa AccessHoststed Cisco DNA Center VA Launchpad, leqepheng la 17.
4. Theha VA pod e ncha ho kenya mohlala oa Cisco DNA Center VA. Sheba Theha VA Pod e Ncha, leqepheng la 25.
5. (Ka boikhethelo) Beakanya ka bouena tafole ea litsamaiso ea TGW ho AWS 'me u kenye litlhophiso tsa litsela ho Customer Gateway (CGW) ea hau e teng haeba u sebelisa TGW e teng le lihokelo tse seng li ntse li le teng, joalo ka VPC, joalo ka khokahanyo eo u e ratang ea sebakeng. kgetho. Sheba ka Bouena Litlhophiso tsa Tsela ea Lipalangoang mabapi le Lipalangoang tse Teng le Liheke tsa Bareki, leqepheng la 35.
6. Etsa mohlala oa hau o mocha oa Cisco DNA Center. Sheba Theha Setsi se Secha sa DNA sa Cisco VA, leqepheng la 37.
7. (Ho ikhethela) Haeba ho hlokahala, rarolla mathata leha e le afe a hlahang nakong ea ho romelloa. Sheba Tharollo ea Tharollo ea Phaliso, leqepheng la 42.
8. Laola Cisco DNA Center VA ea hau u sebelisa Cisco DNA Center VA Launchpad. Sheba Cisco DNA Center VA Launchpad 1.6 Administrator Guide.
Litlhoko tse hlokahalang bakeng sa ho Deployment ka boiketsetso
Pele o ka qala ho tsamaisa Cisco DNA Center ho AWS o sebelisa Cisco DNA Center VA Launchpad, etsa bonnete ba hore litlhokahalo tse latelang lia fihlelleha:
· Kenya Docker Community Edition (CE) sethaleng sa hau. Cisco DNA Center VA Launchpad e ts'ehetsa Docker CE ho li-platform tsa Mac, Windows le Linux. Sheba litokomane tse ho Docker websebaka sa marang-rang bakeng sa mokhoa o ikhethileng oa sethala sa hau.
· Ho sa tsotelehe hore na o fihlella joang Cisco DNA Center VA Launchpad ho tsamaisa Cisco DNA Center VA ea hau, etsa bonnete ba hore tikoloho ea hau ea leru e kopana le lintlha tse latelang: · Cisco DNA Center Instance: r5a.8xlarge, 32 vCPUs, 256-GB RAM, le 4 - Polokelo ea lefuba

Bohlokoa

Cisco DNA Center e tšehetsa feela boholo ba mohlala oa r5a.8xlarge. Liphetoho life kapa life peakanyong ena ha li tšehetsoe. Ho feta moo, boholo ba mohlala oa r5a.8xlarge ha bo tšehetsoe libakeng tse fumanehang. Ho view lethathamo la libaka tse sa tšehetsoeng tse fumanehang, bona Lintlha tsa Phatlalatso bakeng sa Cisco DNA Center VA Launchpad 1.6.0.

* Backup Instance: T3.micro, 2 vCPUs, 500-GB polokelo, le 1-GB RAM

· U na le mangolo a netefalitsoeng a ho fihlella ak'haonte ea hau ea AWS.
· Ak'haonte ea hau ea AWS ke ak'haonte e nyane (akhaonto ea ngoana) ho boloka boikemelo ba lisebelisoa le ho itšehla thajana. Ka subaccount, sena se tiisa hore phepelo ea Cisco DNA Center ha e ame lisebelisoa tsa hau tse teng.
· Bohlokoa: Ak'haonte ea hau ea AWS e ngolisitsoe ho Cisco DNA Center Virtual Appliance - Tlisa License ea Hao (BYOL) 'Maraka oa AWS.

Cisco DNA Center mabapi le AWS Deployment Guide 12

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Litlhoko tse hlokahalang bakeng sa ho Deployment ka boiketsetso

· Haeba u mosebelisi oa tsamaiso, u tlameha ho ba le tumello ea ho kena ho motsamaisi bakeng sa akhaonto ea hau ea AWS. (Ho AWS, lebitso la pholisi le hlahisoa e le AdministratorAccess.)
Leano la phihlello ea batsamaisi le tlameha ho hokelloa akhaonteng ea hau ea AWS ka kotloloho eseng ho sehlopha. Sesebelisoa ha se baloe ka leano la sehlopha. Kahoo, haeba u kenyelelitsoe sehlopheng se nang le tumello ea ho kena ha motsamaisi, u ke ke ua khona ho theha lisebelisoa tse hlokahalang.

· Haeba u mosebelisi, molaoli oa hau o tlameha ho u kenya sehlopheng sa basebelisi ba CiscoDNACenter. Ha mosebelisi oa admin a kena ho Cisco DNA Center VA Launchpad ka lekhetlo la pele, sehlopha sa basebelisi ba CiscoDNACenter se thehoa akhaonteng ea bona ea AWS ka maano ohle a hlokahalang a kentsoeng. Mosebelisi oa admin a ka eketsa basebelisi sehlopheng sena ho ba lumella ho kena ho Cisco DNA Center VA Launchpad. Melaoana e latelang e khomaretsoe ho sehlopha sa basebelisi ba CiscoDNACenter: · AmazonDynamoDBFullAccess · IAMReadOnlyAccess · AmazonEC2FullAccess · AWSCloudFormationFullAccess · AWSLambda_FullAccess · CloudWatchFullAccess · ServiceQuotasFullAccess · AmazonEventS_FullAccess · AmazonEventS_FullAccess · AmazonEventS_FullAccess cess · ClientVPNServiceRolePolicy (Version: 3-2012-10) Leano lena le lumella melao e latelang: · ec17:CreateNetworkInterface
Cisco DNA Center mabapi le AWS Deployment Guide 13

Litlhoko tse hlokahalang bakeng sa ho Deployment ka boiketsetso

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

· ec2:CreateNetworkInterfacePermission · ec2:DescribeSecurityGroups · ec2:DescribeVpcs · ec2:DescribeSubnets · ec2:DescribeInternetGateways · ec2:ModifyNetworkInterfaceAttribute · ec2:DeleteNetworkInterface · ec2:AteriesDescribeADirect · ds:GetDirectoryLimits · ds:UnauthorizeApplication · logs :DescribeLogStreams · logs:CreateLogStream · logs:PutLogEvents · logs:DescribeLogGroups · acm:GetCertificate · acm:DescribeCertificate · iam:GetSAMLProvider · lambda:GetFunctionConfiguration
· ConfigPermission (Version: 2012-10-17, Sid: VisualEditor0) Leano lena le lumella melao e latelang: · config:Fumana · config:* · config:*ConfigurationRecorder · config:Describe* · config:Deliver* · config:List* · config:Khetha* · tag:GetResources · tag: FumanaTagLinotlolo · cloudtrail:DescribeTrails

Cisco DNA Center mabapi le AWS Deployment Guide 14

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Kenya Cisco DNA Center VA Launchpad

· cloudtrail:GetTrailStatus · cloudtrail:LookupEvents · config:PutConfigRule · config:DeleteConfigRule · config:Delete EvaluationResuls
· PassRole (Version: 2012-10-17, Sid: VisualEditor0) Leano lena le lumella melao e latelang: · iam:GetRole · iam:PassRole

Kenya Cisco DNA Center VA Launchpad
Mokhoa ona o u bontša mokhoa oa ho kenya Cisco DNA Center VA Launchpad u sebelisa lijana tsa Docker bakeng sa seva le lits'ebetso tsa bareki.
Pele o qala Etsa bonnete ba hore o kentse Docker CE mochining oa hau. Bakeng sa tlhaiso-leseling, sheba Litlhoko tse hlokahalang bakeng sa Phemelo e Ikemetseng, leqepheng la 12.
Tsamaiso

Mohato oa 1
Mohato oa 2 Mohato oa 3 Mohato oa 4

Eya sebakeng sa Cisco Software Download ebe u khoasolla tse latelang files: · Launchpad-desktop-client-1.6.0.tar.gz
· Launchpad-desktop-server-1.6.0.tar.gz
Netefatsa hore TAR file ke oa 'nete ebile o tsoa Cisco. Bakeng sa mehato e qaqileng, bona Netefatsa Cisco DNA Center VA TAR File, leqepheng la 6. Laola litšoantšo tsa Docker ho tsoa ho tse jarollotsoeng files:
docker load < Launchpad-desktop-client-1.6.0.tar.gz
docker load < Launchpad-desktop-server-1.6.0.tar.gz
Sebelisa taelo ea litšoantšo tsa docker ho hlahisa lenane la litšoantšo tsa Docker sebakeng sa polokelo le ho netefatsa hore u na le likopi tsa morao-rao tsa seva le lits'ebetso tsa bareki. Ho files, eona TAG kholomo e lokela ho hlahisa linomoro tse qalang ka 1.6. Bakeng sa mohlalaample: litšoantšo tsa $ docker

Cisco DNA Center mabapi le AWS Deployment Guide 15

Kenya Cisco DNA Center VA Launchpad

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Mohato oa 5 Mohato oa 6
Mohato oa 7

Sebelisa sesebelisoa sa seva: docker run -d -p :8080 -e DEBUG=nete -name server

Bakeng sa mohlalaampLe:
$ docker run -d -p 9090:8080 -e DEBUG=nete-lebitso seva f87ff30d4c6a

Kenya kopo ea bareki:
docker run -d -p :80 -e CHOKIDAR_USEPOLLING=nete -e REACT_APP_API_URL=http://localhost: -name client

Bakeng sa mohlalaampLe:

$ docker run -d -p 90:80 -e CHOKIDAR_USEPOLLING=nete -e REACT_APP_API_URL=http://localhost:9090 -name client dd50d550aa7c

Hlokomela

Netefatsa hore nomoro ea boema-kepe ea seva e senotsoeng le REACT_APP_API_URL nomoro ea boema-kepe

lia tšoana. Mohato oa 5 le Mohato oa 6, nomoro ea boema-kepe ea 9090 e sebelisoa ho bobeli ba examples.

Sebelisa docker ps -a taelo ho netefatsa hore seva le lits'ebetso tsa bareki lia sebetsa. Kholomo ea STATUS e lokela ho bontša hore lits'ebetso li felile. Bakeng sa mohlalaampLe:
$ docker ps -a

Mohato oa 8 Mohato oa 9

Hlokomela

Haeba u kopana le bothata ha u ntse u sebelisa seva kapa lits'ebetso tsa bareki, bona Troubleshoot Docker

Liphoso, leqepheng la 78.

Netefatsa hore ts'ebeliso ea seva e ea fumaneha ka ho kenya URL ka sebopeho se latelang: http://:/api/valaunchpad/api-docs/ For exampLe:
http://192.0.2.2:9090/api/valaunchpad/api-docs/
Li-application programming interfaces (APIs) tse sebelisoang bakeng sa Cisco DNA Center VA li bonts'oa fensetereng.
Netefatsa hore sesebelisoa sa bareki sea fumaneha ka ho kenya faele ea URL ka sebopeho se latelang: http://:/valaunchpad For exampLe:
http://192.0.2.1:90/valaunchpad
Fensetere ea ho kena ea Cisco DNA Center VA Launchpad e hlahisoa.

Cisco DNA Center mabapi le AWS Deployment Guide 16

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Fihla Setsi sa Cisco DNA Center VA Launchpad

Hlokomela

Ho ka nka metsotso e seng mekae ho kenya fensetere ea ho kena ea Cisco DNA Center VA Launchpad ha u ntse u

lits'ebetso tsa bareki le li-server li kenya li-artifacts.

Fihla Setsi sa Cisco DNA Center VA Launchpad
U ka fihlella Cisco DNA Center VA Launchpad ka Cisco DNA Portal. Haeba u le mocha ho Cisco DNA Portal, u tlameha ho theha ak'haonte ea Cisco le ak'haonte ea Cisco DNA Portal. Ebe o ka kena ho Cisco DNA Portal ho fihlella Cisco DNA Center VA Launchpad. Haeba u tloaelane le Cisco DNA Portal 'me u na le ak'haonte ea Cisco le ak'haonte ea Cisco DNA Portal, u ka kena ka kotloloho ho Cisco DNA Portal ho fihlella Cisco DNA Center VA Launchpad.
Theha ak'haonte ea Cisco
Ho fihlella Cisco DNA Center VA Launchpad ka Cisco DNA Portal, o tlameha ho theha ak'haonte ea Cisco pele.
Tsamaiso

Mohato oa 1

Ho sebatli sa hau, kenya: dna.cisco.com Fensetere ea ho kena ea Cisco DNA Portal e ea hlaha.

Mohato oa 2 Mohato oa 3

Tobetsa Etsa akhaonto e ncha. Fensetereng ea Cisco DNA Portal Welcome, tlanya Etsa akhaonto ea Cisco.

Cisco DNA Center mabapi le AWS Deployment Guide 17

Theha ak'haonte ea Cisco

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Bohato ba 4 Fensetereng ea Theha Account, tlatsa likarolo tse hlokahalang ebe o tobetsa Ngolisa.

Bohato ba 5 Netefatsa ak'haonte ea hau ka ho ea ho lengolo-tsoibila leo u ngolisitseng ak'haonte ea hau ka lona ebe o tobetsa Kenya Akhaonto.
Cisco DNA Center mabapi le AWS Deployment Guide 18

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Theha Cisco DNA Portal Account

Theha Cisco DNA Portal Account
Ho fihlella Cisco DNA Center VA Launchpad ka Cisco DNA Portal, o tlameha ho theha ak'haonte ea Cisco DNA Portal.
Pele o qala Etsa bonnete ba hore o na le ak'haonte ea Cisco. Ho fumana lintlha tse ling, sheba Theha Akhaonto ea Cisco, leqepheng la 17.
Tsamaiso

Mohato oa 1

Ho sebatli sa hau, kenya: dna.cisco.com Fensetere ea ho kena ea Cisco DNA Portal e ea hlaha.

Cisco DNA Center mabapi le AWS Deployment Guide 19

Theha Cisco DNA Portal Account

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Mohato oa 2 Mohato oa 3

Tobetsa Kena ka Cisco. Kenya lengolo-tsoibila la ak'haonte ea hau ea Cisco tšimong ea Imeile, ebe o tobetsa E latelang.

Bohato ba 4 Kenya phasewete ea akhaonto ea hau ea Cisco tšimong ea Password.
Cisco DNA Center mabapi le AWS Deployment Guide 20

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Theha Cisco DNA Portal Account

Mohato oa 5 Mohato oa 6

Tobetsa Kena.
Fensetereng ea Cisco DNA Portal Welcome, kenya lebitso la mokhatlo oa hau kapa sehlopha ho Lebitso la akhaonto ea hau. Ebe o tobetsa Tsoela pele.

Mohato oa 7

Ho Cisco DNA Portal Netefatsa CCO Profile fensetereng, etsa se latelang:
a) Netefatsa hore lintlha li nepahetse. b) Ka mor'a ho bala, ho lumela, le ho lumellana le maemo, hlahloba lebokose la ho hlahloba. c) Tobetsa Create Account.

Cisco DNA Center mabapi le AWS Deployment Guide 21

Kena ho Cisco DNA Portal ka Cisco

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Kamora ho theha ak'haonte ka katleho, leqephe la lehae la Cisco DNA Portal le tla hlahisoa.
Kena ho Cisco DNA Portal ka Cisco
Ho fihlella Cisco DNA Center VA Launchpad ka Cisco DNA Portal, o tlameha ho kena ho Cisco DNA Portal.
Cisco DNA Center mabapi le AWS Deployment Guide 22

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Kena ho Cisco DNA Portal ka Cisco

Pele o qala Etsa bonnete ba hore o na le ak'haonte ea Cisco le ak'haonte ea Cisco DNA Portal. Bakeng sa tlhahisoleseling e eketsehileng, bona Theha Akhaonto ea Cisco, leqepheng la 17 'me U Thehe Cisco DNA Portal Account, leqepheng la 19.
Tsamaiso

Mohato oa 1

Ho sebatli sa hau, kenya: dna.cisco.com Fensetere ea ho kena ea Cisco DNA Portal e ea hlaha.

Mohato oa 2 Mohato oa 3

Tobetsa Kena ka Cisco. Kenya lengolo-tsoibila la ak'haonte ea hau ea Cisco tšimong ea Imeile, ebe o tobetsa E latelang.

Cisco DNA Center mabapi le AWS Deployment Guide 23

Kena ho Cisco DNA Portal ka Cisco

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Bohato ba 4 Kenya phasewete ea akhaonto ea hau ea Cisco tšimong ea Password.

Mohato oa 5 Mohato oa 6

Tobetsa Kena. Haeba u na le ak'haonte e le 'ngoe feela ea Cisco DNA Portal, leqephe la lehae la Cisco DNA Portal le tla hlahisoa.
(Ka boikhethelo) Haeba u na le li-account tsa Cisco DNA Portal tse ngata, khetha ak'haonte eo u batlang ho kena ho eona ka ho tobetsa konopo ea Tsoela pele ea akhaonto.

Leqephe la lehae la Cisco DNA Portal le hlahisoa.
Cisco DNA Center mabapi le AWS Deployment Guide 24

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Theha VA Pod e Ncha

Theha VA Pod e Ncha
VA pod ke sebaka sa AWS se amohelang setsi sa Cisco DNA Center VA. Tikoloho ea moeti e kenyelletsa lisebelisoa tsa AWS, joalo ka mohlala oa Cisco DNA Center VA EC2, Amazon Elastic Block Storage (EBS), seva sa backup sa NFS, lihlopha tsa ts'ireletso, litafole tsa routing, Amazon CloudWatch logs, Amazon Simple Notification System (SNS), VPN Gateway ( VPN GW), TGW, joalo-joalo.
U sebelisa Cisco DNA Center VA Launchpad, u ka etsa li-pod tsa VA tse ngata-pod e le 'ngoe ea VA bakeng sa Cisco DNA Center VA ka 'ngoe.

Hlokomela

· Mosebelisi oa AWS Super Administrator a ka beha moeli ho palo ea li-pods tsa VA tse ka etsoang ho e 'ngoe le e 'ngoe.

sebaka. Li-VPC tse sebelisetsoang lisebelisoa tse ka ntle ho Cisco DNA Center VA Launchpad li kenya letsoho ho sena

nomoro hape. Bakeng sa mohlalaampLeha ho le joalo, haeba ak'haonte ea hau ea AWS e na le moeli oa li-VPC tse hlano 'me tse peli li ntse li sebelisoa, u ka khona

theha feela li-pods tse ling tse tharo tsa VA sebakeng se khethiloeng.

· Mehatong e meng, lisebelisoa tsohle li tlameha ho hlophisoa ka katleho ho tsoela pele mohatong o latelang. Haeba lisebelisoa tsohle li sa hlophisoa ka katleho, konopo ea tsoela pele e koetsoe. Haeba lisebelisoa tsohle li hlophisitsoe ka katleho 'me konopo e tsoelang pele e koetsoe, ema metsotsoana e seng mekae hobane lisebelisoa li ntse li kenya letsoho. Ka mor'a hore litlhophiso tsohle li phethe, konopo e ea sebetsa.

· Tlhophiso ea hau ea VA pod ha e fetohe ha u nchafatsa Cisco DNA Center VA Launchpad tokollong ea morao-rao, u theolela ho tokollo ea pejana ea Cisco DNA Center VA Launchpad, kapa u nchafatsa ho seta sebaka moo VA pod ea hau e leng teng.

Bakeng sa mohlalaample, haeba u thehile VA pod ho Cisco DNA Center VA Launchpad, Release 1.6.0, password ea "backup" ke motsoako oa lebitso la "backup" la mohlala le aterese ea IP ea "backup". Haeba u fihlella pod ena ea VA tokollong ea pejana, joalo ka Release 1.5.0, password ea bekapo ha e fetohe.

Mokhoa ona o u tataisa mehatong ea ho theha VA pod e ncha.

Cisco DNA Center mabapi le AWS Deployment Guide 25

Theha VA Pod e Ncha

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Pele o qala Ak'haonte ea hau ea AWS e tlameha ho ba le tumello ea phihlello ea motsamaisi ho etsa ts'ebetso ena. Bakeng sa tlhaiso-leseling, sheba Litlhoko tse hlokahalang bakeng sa Phemelo e Ikemetseng, leqepheng la 12.
Tsamaiso

Mohato oa 1 Mohato oa 2

Kena ho Cisco DNA Center VA Launchpad u sebelisa e 'ngoe ea mekhoa e latelang:
· IAM Keno: Mokhoa ona o sebelisa likarolo tsa mosebelisi ho hlalosa litokelo tsa phihlello ea mosebelisi. Cisco DNA Center VA Launchpad e ts'ehetsa netefatso ea lintlha tse ngata (MFA) joalo ka boikhethelo, mofuta o mong oa netefatso, haeba khamphani ea hau e e hloka. Bakeng sa boitsebiso bo eketsehileng, bona "Kena ho Cisco DNA Center VA Launchpad U sebelisa IAM" ho Cisco DNA Center VA Launchpad 1.6 Administrator Guide.
· Federated Login: Mokhoa ona o sebelisa boitsebiso bo le bong ho fihlella marang-rang kapa lits'ebetso tse laoloang ke basebelisi ba bang. Bakeng sa tlhaiso-leseling e batsi, bona "Hlahisa Lintlha tsa Basebelisi ba Federated U Sebelisa saml2aws" kapa "Hlahisa Lintlha tsa Basebelisi ba Federated U Sebelisa AWS CLI" ho Cisco DNA Center VA Launchpad 1.6 Administrator Guide.
Bakeng sa tlhahisoleseling mabapi le mokhoa oa ho fumana ID ea senotlolo sa ho fihlella le senotlolo sa phihlello ea lekunutu, bona AWS Account le Key Keys sehlooho ho Lisebelisoa tsa AWS tsa PowerShell User Guide ho AWS. websebaka.
Haeba u kopana le liphoso leha e le life tsa ho kena, u lokela ho li rarolla ebe u kena hape. Bakeng sa tlhaiso-leseling e batsi, bona Troubleshoot the Deployment, leqepheng la 42.
Haeba u mosebeletsi oa admin ea kenang ka lekhetlo la pele, kenya aterese ea hau ea lengolo-tsoibila sebakeng sa Imeile ID ebe o tobetsa Romela. Haeba o le mosebelisi, tsoela pele ho Mohato oa 3.

U ka ingolisa ho Amazon Simple Notification System (SNS) ho fumana litlhokomeliso mabapi le lisebelisoa tse kentsoeng, liphetoho le tšebeliso e feteletseng ea lisebelisoa. Ho feta moo, lialamo li ka hlophisoa ho u tsebisa haeba Amazon CloudWatch e lemoha boitšoaro bofe kapa bofe bo sa tloaelehang ho Cisco DNA Center VA Launchpad. Ho feta moo, AWS Config e lekola le ho lekola lisebelisoa tsa hau tse hlophisitsoeng ebe e romella lintlha tsa tlhahlobo ea liphetho. Bakeng sa tlhaiso-leseling e batsi, bona "Ingolise ho Ngoliso ea lengolo-tsoibila ea Amazon SNS" le "View Amazon CloudWatch Alarms” ho Cisco DNA Center VA Launchpad 1.6 Administrator Guide. Kamora ho kenya lengolo-tsoibila la hau, ho etsahala mekhoa e mengata:
· Sehlopha sa basebelisi ba CiscoDNACenter se thehiloe akhaonteng ea hau ea AWS ka melaoana eohle e hlokahalang e kenyellelitsoeng. Mosebelisi oa admin a ka eketsa basebelisi sehlopheng sena ho lumella basebelisi ho kena ho Cisco DNA Center VA Launchpad.
Cisco DNA Center mabapi le AWS Deployment Guide 26

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Theha VA Pod e Ncha

· Bakete ea Amazon S3 e entsoe ka bo eona ho boloka boemo ba thomello. Re khothaletsa hore o se hlakole sena kapa bakete efe kapa efe akhaonteng ea AWS, lefatšeng ka bophara kapa sebakeng ka seng. Ho etsa joalo ho ka ama ts'ebetso ea phepelo ea Cisco DNA Center VA Launchpad.
· Haeba u kena sebakeng ka lekhetlo la pele, Cisco DNA Center VA Launchpad e theha lisebelisoa tse 'maloa ho AWS. Ts'ebetso ena e ka nka nako, ho latela hore na sebaka seo se ne se lumelletsoe kapa che. Ho fihlela ts'ebetso e phethela, u ke ke ua theha VA pod e ncha. Ka nako ena, molaetsa o latelang o tla hlaha: "Ho theha tlhophiso ea sebaka sa pele. Sena se ka nka metsotso e seng mekae. ”

Ka mor'a hore u kene ka katleho, pane ea Dashboard e tla hlaha.

Hlokomela

Haeba u khothaletsoa ho ntlafatsa setaele sa sebaka, latela likeletso ho phethela ntlafatso. Bakeng sa

lintlha tse ling, bona "Ntlafatsa Setupo sa Sebaka" ho Cisco DNA Center VA Launchpad 1.6

Tataiso ea Tsamaiso.

Mohato oa 3 Mohato oa 4

Tobetsa + Theha VA Pod e Ncha. Khetha sebaka seo u batlang ho theha VA pod e ncha ka ho tlatsa mehato e latelang lebokoseng la puisano la Khetho ea Libaka:
a. Ho tsoa lenaneng la ho theoha ha Lebatooa, khetha sebaka.

Cisco DNA Center mabapi le AWS Deployment Guide 27

Theha VA Pod e Ncha

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Mohato oa 5

Haeba u se u ntse u khethile sebaka se le seng ho tsoa lethathamong le ka letsohong le letšehali la Lebatooa la ho sesa, sebaka sena se khethoa ka bohona.

Hlokomela

Haeba u khothaletsoa ho ntlafatsa setaele sa sebaka, latela likeletso ho phethela ntlafatso.

Bakeng sa tlhaiso-leseling e batsi, bona "Ntlafatsa Setupo sa Sebaka" ho Cisco DNA Center VA Launchpad.

1.6 Tataiso ea Tsamaiso.

b. Tobetsa E latelang.

Hlophisa meralo ea motheo ea AWS, e kenyeletsang VPC, subnet ea poraefete, tafole ea ho tsamaisa, sehlopha sa ts'ireletso, gateway ea sebele, le CGW, ka ho tlatsa mehato e latelang: a) Likarolong tsa Lintlha tsa Tikoloho, lokisa libaka tse latelang:
· VA Pod Name: Fana ka lebitso ho VA pod e ncha. Hopola lithibelo tse latelang:
· Lebitso le tlameha ho ikhetha ka hare ho sebaka seo. (Sena se bolela hore u ka sebelisa lebitso le tšoanang libakeng tse ngata.)
· Lebitso le ka ba le litlhaku tse 12.
· Lebitso le ka kenyelletsa litlhaku (A-Z), linomoro (0-9), le li-dashes (-).

· Sebaka sa Boteng: Tobetsa lenane lena la ho theoha 'me u khethe sebaka se fumanehang, e leng sebaka se ka thōko sebakeng seo u se khethileng.
· AWS VPC CIDR: Kenya subnet e ikhethang ea VPC eo u ka e sebelisang ho qala lisebelisoa tsa AWS. Hopola litataiso tse latelang:
· Mofuta o khothaletsoang oa CIDR ke /25.
· Ho IPv4 CIDR notation, octet ea ho qetela (octet ea bone) ea aterese ea IP e ka ba le boleng ba 0 kapa 128 feela.
· Subnet ena ha ea lokela ho kopana le subnet ea hau ea khoebo.

b) Tlas'a Transit Gateway (TGW), khetha e 'ngoe ea likhetho tse latelang:

· VPN GW: Khetha khetho ena haeba u na le VA pod e le 'ngoe,' me u batla ho sebelisa heke ea VPN. VPN GW ke pheletso ea VPN ka lehlakoreng la Amazon la khokahano ea hau ea Site-to-Site VPN. E ka hokelloa ho VPC e le 'ngoe feela.

· New VPN GW + TGW e Ncha: Khetha khetho ena haeba u na le li-pod tse ngata tsa VA kapa VPC, 'me u batla ho sebelisa TGW e le setsi sa lipalangoang ho hokahanya li-VPC tse ngata le marang-rang a marang-rang. E ka sebelisoa hape e le pheletso ea VPN bakeng sa lehlakore la Amazon la khokahano ea VPN ea Site-to-Site.

Hlokomela

O ka etsa TGW e le 'ngoe feela sebakeng se seng le se seng.

· TGW e teng: Khetha khetho ena haeba u na le TGW e teng eo u batlang ho e sebelisa ho theha VA pod e ncha, ebe u khetha e 'ngoe ea likhetho tse latelang:
· VPN GW e Ncha: Khetha khetho ena haeba u batla ho theha heke e ncha ea VPN bakeng sa TGW ea hau e teng.
· Sehlomathiso se teng: Khetha khetho ena haeba u batla ho sebelisa VPN e teng kapa sehokelo sa khokahanyo ka kotloloho. Ho tsoa ho Khetha Sehlomathiso sa ID, lenane le theoha, khetha ID ea sehokelo.

Cisco DNA Center mabapi le AWS Deployment Guide 28

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Theha VA Pod e Ncha

Haeba u khetha khetho ena, u tlameha ho lokisa routing ho TGW le CGW tse teng. Bakeng sa tlhahisoleseding, sheba ka bowena Lokisa Tsela ho Transit e Teng le Customer Gateways, leqepheng la 35.

c) Etsa e 'ngoe ea tse latelang:
· Haeba u khethile TGW e Teng le Li-Attachments tse Teng e le likhetho tseo u li ratang tsa khokahanyo, tsoela pele ho Mohato oa 5.
· Haeba u khethile VPN GW, New VPN GW + TGW e Ncha, kapa TGW E Ncha + VPN GW e Ncha, fana ka lintlha tse latelang tsa VPN:
· Customer Gateway IP: Kenya aterese ea IP ea Enterprise firewall kapa router ea hau ho theha kotopo ea IPsec e nang le heke ea AWS VPN.
· VPN Vendor: Ho tsoa lethathamong le theoha, khetha morekisi oa VPN.
Barekisi ba latelang ba VPN ha ba tšehetsoe: Barracuda, Sophos, Vyatta, le Zyxel. Ho fumana lintlha tse ling, sheba Troubleshoot VA Pod Configuration Errors, leqepheng la 44.
· Sethala: Ho tsoa lethathamong le theoha, khetha sethala.
· Software: Ho tsoa lethathamong le theoha, khetha software.

d) Bakeng sa Customer Profile saese, tlohela setlankana sa Medium sa kamehla.

Moreki profile boholo bo sebetsa ho Cisco DNA Center VA mohlala le mohlala oa "backup". Medium e hlophisa maemo ka tsela e latelang:

· Cisco DNA Center Instance: r5a.8xlarge, 32 vCPU, 256-GB RAM, le polokelo ea 4-TB.

Bohlokoa

Cisco DNA Center e tšehetsa feela boholo ba mohlala oa r5a.8xlarge. Liphetoho life kapa life peakanyong ena ha li tšehetsoe. Ho feta moo, boholo ba mohlala oa r5a.8xlarge ha bo tšehetsoe libakeng tse fumanehang. Ho view lethathamo la libaka tse sa tšehetsoeng tse fumanehang, bona Lintlha tsa Phatlalatso bakeng sa Cisco DNA Center VA Launchpad 1.6.0.

* Backup Instance: T3.micro, 2 vCPU, 500-GB polokelo, le 1-GB RAM

e) Bakeng sa Backup Target, khetha e 'ngoe ea likhetho tse latelang e le sebaka sa ho boloka li-backups tsa li-database tsa Cisco DNA Center le files: · Enterprise Backup (NFS): Khetha khetho ena haeba u batla hore bekapo e bolokoe ho li-server tse teng moo.
· Cloud Backup (NFS): Khetha khetho ena haeba u batla hore bekapo e bolokoe ho AWS. Ela hloko lintlha tse latelang tsa bekapo. U tla sebelisa lintlha tsena hamorao ho kena ho seva sa polokelo ea leru: · SSH IP Address:
Boema-kepe ba SSH: 22
· Tsela ea seva: /var/dnac-backup/
· Lebitso la mosebelisi: maglev
· Password:

Cisco DNA Center mabapi le AWS Deployment Guide 29

Theha VA Pod e Ncha

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Password ea hau ea "backup" e entsoe ka mokhoa o matla. Lekunutu le entsoe ka litlhaku tse 'ne tsa pele tsa lebitso la "backup" le aterese ea IP ea seva ntle le linako.

Bakeng sa mohlalaample, haeba lebitso la "backup" la mohlala ke DNAC-ABC-0123456789987 mme aterese ea IP ea seva sa bekapo ke 10.0.0.1, password ea seva ea bekapo ke DNAC10001.

Hlokomela

· U ka fumana lebitso la "backup" la mohlala ho Cisco DNA Center

Fesetere ea Configuration In Progress (bona Mohato oa 9 ho Theha DNA e Ncha ea Cisco

Center VA, leqepheng la 37) kapa ho AWS Console> CloudFormation> Li-Stacks

fensetere.

· U ka fumana aterese ea IP ea seva sa bekapo hape fensetereng ea Cisco DNA Center Configuration In Progress (bona Mohato oa 9 ho Theha Setsi se Secha sa Cisco DNA VA, leqepheng la 37) kapa fensetereng ea Cisco DNA Center Virtual Details Details (bona "View Cisco DNA Center VA Details” ho Cisco DNA Center VA Launchpad 1.6 Administrator Guide).

· Poleloana ea mantsoe:
Phatlalatso ea hau e sebelisoa ho koala likarolo tse amehang ka polokeho ea bekapo. Likarolo tsena tse hlokomelang ts'ireletso li kenyelletsa litifikeiti le mangolo a bopaki.
Lepetjo lena lea hlokahala 'me u tla khothalletsoa ho kenya poleloana ena ha u khutlisetsa bekapo files. Ntle le poleloana ena, bekapo files ha lia tsosolosoa.
· Li-Ports tse Butsoeng: 22, 2049, 873, le 111

f) Tobetsa E latelang. Karolo ea Summary e ea hlaha.

Cisco DNA Center mabapi le AWS Deployment Guide 30

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Theha VA Pod e Ncha

g) Review tikoloho le lintlha tsa VPN tseo u li kentseng. Haeba u khotsofetse, tobetsa Qala ho Hlophisa Tikoloho ea AWS. Bohlokoa Seta sena se nka metsotso e ka bang 20 ho qeta. Se ke oa tsoa ts'ebetsong kapa ua koala fensetere kapa tab ena. Ho seng joalo, setup se tla emisa.
h) Ka mor'a hore thepa ea motheo ea AWS e hlophisoe ka katleho, ho tla bontšoa fensetere ea AWS Infrastructure Configured.
Cisco DNA Center mabapi le AWS Deployment Guide 31

Theha VA Pod e Ncha

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Haeba tlhophiso ea meralo ea motheo ea AWS e hloleha, tsoa Cisco DNA Center VA Launchpad 'me u bone Troubleshoot the Deployment, leqepheng la 42 bakeng sa tlhahisoleseding mabapi le lisosa le tharollo e ka bang teng.

Mohato oa 6

Khoasolla tlhophiso ea sebaka file ka ho tlatsa mehato e latelang: a) Ka mor'a hore lisebelisoa tsa AWS li hlophisoe ka katleho, tobetsa Tsoela Pele ho Configuration ea On-Prem. b) Fenstereng ea Configure On-premise, tobetsa Khoasolla Configuration File. Fetela sena file ho ea hau
molaoli oa marang-rang ho lokisa kotopo ea IPsec e holim'a meaho.
Etsa bonnete ba hore molaoli oa hau oa marang-rang o lokisa kotopo e le 'ngoe feela ea IPsec.

Cisco DNA Center mabapi le AWS Deployment Guide 32

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Theha VA Pod e Ncha

Hlokomela

· Mookameli oa marang-rang a ka etsa liphetoho tse hlokahalang ho tlhophiso ena file

'me u e sebelise ho Enterprise firewall ea hau kapa router ho hlahisa lithanele tsa IPsec.

Tokiso e fanoeng file e o nolofalletsa ho hlahisa lithanele tse peli lipakeng tsa AWS le router ea Enterprise kapa firewall.

· Litharollo tse ngata tsa poraefete tsa heke li na le kotopo e le 'ngoe holimo le e' ngoe tlase. U ka ba le lithanele ka bobeli 'me u sebelise sebopeho sa marang-rang sa Equal Cost Multiple Path (ECMP). Ts'ebetso ea ECMP e nolofalletsa firewall kapa router ho sebelisa litsela tse lekanang le litšenyehelo ho fetisetsa sephethephethe sebakeng se le seng. Ho etsa sena, router kapa firewall ea hau e tlameha ho tšehetsa ECMP. Ntle le ECMP, re khothaletsa hore u boloke kotopo e le 'ngoe fatše' me u sebetse ka letsoho kapa u sebelise tharollo, joalo ka IP SLA, ho hlahisa kotopo ka mokhoa o ikhethileng.

Mohato oa 7

c) Tobetsa Tsoela pele ho Network Connectivity Check konopo.
Lekola boemo ba tlhophiso ea marang-rang ea hau ho ipapisitsoe le likhetho tsa khokahanyo ea moaho tseo u li khethileng nakong ea tlhophiso ea litšebeletso tsa AWS ka ho tlatsa e 'ngoe ea liketso tse latelang:
· Haeba u khethile VPN GW joalo ka khetho eo u e ratang ea khokahanyo ea moaho, boemo ba tlhophiso ea kotopo ea IPsec bo tla hlaha ka tsela e latelang:
· Haeba molaoli oa marang-rang a e-so lokise kotopo ea IPsec hajoale, senotlolo se hlahisoa kotopong ea IPsec:

· Kopa molaoli oa marang-rang oa hau ho netefatsa hore kotopo ea IPsec e ho Enterprise firewall kapa router e holimo. Kamora hore kotopo ea IPsec e hlahe, kotopo ea IPsec e fetoha e tala:
Cisco DNA Center mabapi le AWS Deployment Guide 33

Theha VA Pod e Ncha

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

· Haeba u khethile New VPN GW + TGW e Ncha kapa TGW e teng le VPN GW e Ncha e le khetho eo u e ratang ea khokahanyo ea moaho, Cisco DNA Center VA Launchpad e hlahloba hore na VPC ea hau e hokahane le TGW, eo le eona e hokahaneng le marang-rang a hau. firewall kapa router.

Hlokomela

Hore khokahano ea firewall ea TGW-to-Enterprise kapa router e atlehe, marang-rang a hau

motsamaisi o tlameha ho eketsa tlhophiso ho firewall ea hau ea moaho kapa router.

Boemo ba khokahano bo bonts'oa ka tsela e latelang:
· Haeba khokahanyo e tsoang ho TGW ho firewall e sebakeng sa hau kapa router e so hokahane hajoale, e putsitsoe:

· Kamora hore khokahano ea TGW e thehoe ka katleho, khokahano ea TGW e tala:

· Haeba u khethile TGW e teng le Sehlomathiso se Seng Se le teng e le khetho eo u e ratang ea khokahanyo ea moaho, etsa bonnete ba hore tsela e lokisoa lipakeng tsa TGW e teng le VPC e sa tsoa hokelloa, moo Cisco DNA Center e qalisoang. Bakeng sa tlhahisoleseding, sheba ka letsoho Configure Routing on Existing Transit and Customer Gateways, leqepheng la 35. Boemo ba kgokelo bo bontshitswe, ka mokgwa o latelang: · Haeba VPC ya hao e sa hokellwa ho TGW, kgokelo ya TGW e putswa:
Cisco DNA Center mabapi le AWS Deployment Guide 34

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Iketsetse ka bouena Tsela ea ho Tsamaisa Lipalangoang tse Teng le Litsela tsa Bareki

· Kamora hore khokahano ea TGW e thehoe ka katleho, khokahano ea TGW e tala:

Mohato oa 8

Tobetsa Eya ho Dashboard ho khutlela fenstereng ea Dashboard, moo o ka etsang li-pods tse ling tsa VA le ho laola tse seng li ntse li le teng.

Iketsetse ka bouena Tsela ea ho Tsamaisa Lipalangoang tse Teng le Litsela tsa Bareki
Haeba u khethile Khoro e Seng ea Transit le Li-Attachments tse teng e le khetho ea hau ea khokahanyo eo u e ratang ha u ntse u theha VA pod e ncha, Cisco DNA Center VA Launchpad e theha VPC ho qala Cisco DNA Center mme e hokela VPC ena ho TGW ea hau e teng. Bakeng sa Cisco DNA Center VA Launchpad ho theha khokahano ea TGW, o tlameha ho hlophisa tafole ea litsamaiso ea TGW ho AWS mme o kenye tlhophiso ea litsamaiso ho CGW ea hau e teng.
Tsamaiso
Bohato ba 1 Ho tsoa ho khomphutha ea AWS, e-ea ho ts'ebeletso ea VPC.

Cisco DNA Center mabapi le AWS Deployment Guide 35

Iketsetse ka bouena Tsela ea ho Tsamaisa Lipalangoang tse Teng le Litsela tsa Bareki

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Mohato oa 2 Mohato oa 3

Ka fenstereng e ka ho le letšehali, tlas'a Transit Gateways, khetha litafole tsa tsela ea Transit gateway ebe u khetha tafole e teng ea tsela ea TGW.
Fesetereng ea litafole tsa tsela ea Transit gateway, tobetsa konopo ea Mekhatlo ebe u tobetsa Create association.

Bohato ba 4 Fensetereng ea litafole tsa tsela ea Transit gateway, tobetsa ea Propagations tab ebe o tobetsa Theha phatlalatso.

Mohato oa 5 Mohato oa 6

Ho etsa bonnete ba hore tsela e tsitsitseng pakeng tsa VPC le VPN e sebetsang, tobetsa tab ea Litsela ebe o tobetsa Etsa tsela e tsitsitseng. Netefatsa hore tlhophiso ea router ea hau e sebakeng sa hau e nchafalitsoe ho tsamaisa sephethephethe sa marang-rang se reretsoeng mekhahlelo ea CIDR e abetsoeng CGW ea hau tikolohong ea AWS ea hau.
Bakeng sa mohlalaample: tsela kotopo-int-vpn-0b57b508d80a07291-1 10.0.0.0 255.255.0.0 192.168.44.37 200

Cisco DNA Center mabapi le AWS Deployment Guide 36

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Theha Setsi se Secha sa Cisco DNA VA

Theha Setsi se Secha sa Cisco DNA VA
Sebelisa mokhoa ona ho lokisa Cisco DNA Center VA e ncha. Tsamaiso

Mohato oa 1

Ka fenstereng ea Dashboard, ka tlase ho 'mapa, fumana VA pod moo u batlang ho theha Cisco DNA Center VA ea hau.

Mohato oa 2 Mohato oa 3

Ka karete ea VA pod, tlanya Etsa/Laola Cisco DNA Center(s). Ka ho Theha/Laola Cisco DNA Center(s) fenstereng, tobetsa + Theha Setsi se Secha sa Cisco DNA.

Cisco DNA Center mabapi le AWS Deployment Guide 37

Theha Setsi se Secha sa Cisco DNA VA

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Mohato oa 4

Kenya lintlha tse latelang:

· Cisco DNA Center Version: Ho tsoa lethathamong le theoha, khetha mofuta oa Cisco DNA Center.

· Enterprise DNS: Kenya aterese ea IP ea Enterprise DNS ea hau. Netefatsa hore Enterprise DNS ea fumaneha ho tsoa ho VA pod eo ho eona u thehang Cisco DNA Center VA.

Hlokomela

Cisco DNA Center VA Launchpad e hlahloba marang-rang a marang-rang a sebelisa UDP

port 53 e nang le aterese ea IP ea seva sa DNS eo u e kentseng.

· FQDN (Lebitso la Domain le Tšoanelehang ka ho Feletseng): Kenya aterese ea IP ea Cisco DNA Center VA joalokaha e hlophisitsoe ho seva sa hau sa DNS.
· Lintlha tsa Proxy: Khetha e 'ngoe ea likhetho tse latelang tsa marang-rang a HTTPS:
· Ha ho Proxy: Ha ho seva ea proxy e sebelisoang.
· Ha e na netefatso: Seva ea proxy ha e hloke netefatso. Kena URL le nomoro ea boema-kepe ea seva ea moemeli.
Netefatso ea Proxy: Seva ea moemeli e hloka netefatso. Kena URL, nomoro ea boema-kepe, lebitso la mosebelisi, le lintlha tsa password bakeng sa seva ea moemeli.

· Cisco DNA Center Virtual Appliance Credentials: Kenya phasewete ea CLI eo u ka e sebelisang ho kena ho Cisco DNA Center VA. Phasewete e tlameha ho: · Tlohela tab efe kapa efe kapa dikgaohatso tsa mela · E be le bonyane ditlhaku tse robedi · E na le ditlhaku tse tswang bonyane ho tse tharo tsa mekgahlelo e latelang: · ditlhaku tse nyane (a-z) · ditlhaku tse kgolo (A-Z) · Dinomoro (0-9) · Litlhaku tse khethehileng (mohlalaample,! kapa #)

Cisco DNA Center mabapi le AWS Deployment Guide 38

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Theha Setsi se Secha sa Cisco DNA VA

Mohato oa 5 Mohato oa 6

Boloka phasewete ena bakeng sa tšebeliso ea nako e tlang.

Hlokomela

Lebitso la mosebelisi ke maglev.

Tobetsa Validate ho netefatsa seva sa Enterprise DNS le FQDN e hlophisitsoeng ho seva sa DNS.

Hlokomela

Setsing sa Cisco DNA VA Launchpad, Lokolla 1.6.0, haeba seva sa DNS, seva ea proxy, kapa FQDN

Licheke li hloleha, tsoela pele ka tlhophiso ea hau ka tsela e latelang:

· Haeba netefatso ea seva ea DNS e hloleha, u ke ke ua tsoela pele ho theha Cisco DNA Center VA ea hau. Etsa bonnete ba hore aterese ea IP ea seva sa DNS e kentsoeng e fumaneha ho tsoa ho VA pod.

· Haeba netefatso ea seva ea proxy e hloleha, o ntse o ka tsoela pele ka tlhophiso ea hau hobane le haeba lintlha tsa proxy tse fosahetseng li sa lokisoe, Cisco DNA Center VA ea sebetsa.

· Haeba netefatso ea FQDN e hloleha, o ntse o ka tsoela pele ka ho theha Cisco DNA Center VA ea hau. Leha ho le joalo, hore Cisco DNA Center VA e sebetse, o hloka ho lokisa tlhophiso ea FQDN.

Ka fensetere ea Summary, review lintlha tsa tlhophiso.

Hlokomela

Aterese ea IP ea Cisco DNA Center ke aterese ea IP e fanoeng ka lipalo e bolokiloeng hohle

Sebaka sa ho fumaneha sa AWS outagke ho netefatsa khokahanyo e sa sitisoeng le ho fokotsa litšitiso

nakong ea ts'ebetso ea bohlokoa ea marang-rang.

Mohato oa 7 Mohato oa 8

Haeba u khotsofetse ke tlhophiso, tobetsa Hlahisa Key PEM File.
Ka konopo ea Download PEM File lebokose la puisano, tobetsa Download PEM Key File. Haeba o tobetsa Hlakola, o khutlisetsoa fensetereng ea Kakaretso.

Cisco DNA Center mabapi le AWS Deployment Guide 39

Theha Setsi se Secha sa Cisco DNA VA

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Bohlokoa Hobane senotlolo sa PEM ha sea bolokoa akhaonteng ea hau ea AWS, u hloka ho e jarolla. U hloka senotlolo sa PEM ho fihlella Cisco DNA Center VA e ntseng e bōptjoa.

Mohato oa 9

Ka mor'a hore u khoasolle PEM file, tobetsa Qala Cisco DNA Center Configuration.

Cisco DNA Center VA Launchpad e lokisa tikoloho ea Cisco DNA Center. Kamora hore tikoloho e lokisoe, lihoete tsa Cisco DNA Center. Qalong, Cisco DNA Center VA Launchpad e bonts'a selikalikoe sa ka ntle ka bohlooho. Ha Port 2222 e netefalitsoe, setšoantšo se fetoha amber. Ha Port 443 e netefalitsoe, setšoantšo se fetoha se setala.

Hlokomela

Ts'ebetso ena e nka metsotso e 45-60. Se ke oa tsoa ts'ebetsong kapa ua koala fensetere kapa tab ena.

Ho seng joalo, setup se tla emisa.

Cisco DNA Center mabapi le AWS Deployment Guide 40

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Theha Setsi se Secha sa Cisco DNA VA

Ka mor'a hore Cisco DNA Center e phethe ho qala, tlhophiso e felile. U ka khona hona joale view lintlha tsa hau tsa Cisco DNA Center VA.

Keletso

Ha fensetere ea Cisco DNA Center Configuration In Progress e bonts'oa, rekota

aterese ea IP ea "backup" le lebitso la "backup" bakeng sa tšebeliso ea morao-rao. Seva ea hau ea bekapo

password ke motsoako oa litlhaku tse 'ne tsa pele tsa lebitso la "backup" la mohlala le

aterese ea IP ea bekapo ntle le linako.

Haeba tlhophiso ea Cisco DNA Center e hloleha, tsoa ho "Cre/Manage Cisco DNA Center(s)" fenstereng. Bakeng sa tlhahisoleseling, sheba Tharollo ea Tharollo ea Phaliso, leqepheng la 42

Cisco DNA Center mabapi le AWS Deployment Guide 41

Tharollo ea Mathata a Phahamiso

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Mohato oa 10

Ho khutlela ho Thepa/Laola Cisco DNA Center(s) fenstere, tobetsa Eya ho Laola Cisco DNA Center(s).

Tharollo ea Mathata a Phahamiso
Cisco DNA Center VA Launchpad e etselitsoe ho u thusa ho hlophisa Cisco DNA Center ho AWS ka ho kenella ho fokolang. Karolo ena e u bontša mokhoa oa ho rarolla mathata a tloaelehileng nakong ea ho romelloa ha Cisco DNA Center ho AWS.
Hlokomela Re khothaletsa khahlanong le ho etsa liphetoho tsa matsoho ka Cisco DNA Center VA Launchpad ka AWS console, hobane e ka lebisa litabeng tseo Cisco DNA Center VA Launchpad e ke keng ea li rarolla.
Haeba u na le mathata afe kapa afe a sa rarolloang karolong ena, ikopanye le Cisco TAC.
Ho rarolla liphoso tsa Docker
Haeba phoso, boema-kepe bo se bo ntse bo sebelisoa, bo bonts'a ha u ntse u tsamaisa litšoantšo tsa li-docker bakeng sa Cisco DNA Center VA Launchpad, u ka e rarolla ka litharollo tse latelang tse ka khonehang:

Cisco DNA Center mabapi le AWS Deployment Guide 42

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Rarolla mathata a ho Kena

Phoso

Tharollo e ka khonehang

Haeba u fumana phoso e latelang ha u le Docker, tsamaisa sesebelisoa sa seva:

ho tsamaisa sesebelisoa sa seva:

docker matha -d -p :8080 -e

boema-kepe bo se bo ntse bo sebelisoa

SECRET_KEY= -name server -pull=always

dockerhub.cisco.com/maglev-docker/server:xxx-latest

Hlokomela

U ka sebelisa sebaka sefe kapa sefe sa seva se fumanehang.

Ha o ntse o sebelisa sesebelisoa sa seva, tsamaisa sesebelisoa sa moreki:

docker run -d -p 90:80 -e REACT_APP_API_URL=http://localhost: -name client -pull=always dockerhub.cisco.com/maglevdocker/client:x.x.x

Hlokomela

U tlameha ho sebelisa nomoro ea boema-kepe e tšoanang le eo u e sebelisitseng ho tsamaisa sesebelisoa sa seva.

Haeba u fumana phoso e latelang ha u ntse u le Docker, tsamaisa sesebelisoa sa moreki:

ho tsamaisa sesebelisoa sa bareki:

docker matha -d -p :80 -name client -pull=kamehla

boema-kepe bo se bo ntse bo sebelisoa

dockerhub.cisco.com/maglev-docker/client:xxx

Hlokomela

U ka sebelisa sebaka sefe kapa sefe sa seva se fumanehang.

Rarolla mathata a ho Kena

Ha u kena ho Cisco DNA Center VA Launchpad, u ka 'na ua kopana le phoso ea ho kena. O ka rarolla liphoso tse tloaelehileng tsa ho kena ka litharollo tse latelang:

Phoso Lintlha tse fosahetseng.

Tharollo e ka khonehang Kenya lintlha tsa hau hape 'me u hlahlobe hore li kentsoe ka nepo.

Ha u na phihlello e lekaneng. Bakeng sa basebelisi ba tsamaiso, netefatsa hore ak'haonte ea hau e na le tumello ea ho kena ho motsamaisi. Bakeng sa basebelisi, netefatsa hore molaoli oa hau o u kentse sehlopheng sa basebelisi ba CiscoDNACenter.

Ts'ebetso ea ho hlakola e ntse e tsoela pele, ka kopo leka hape kamora nako.

Haeba mosebelisi oa admin a hlakola -cisco-dna-center global bakete ho tsoa akhaonteng ea hau ea AWS mme a leka ho kena, phoso ena ea ho kena e ka etsahala. Ema metsotso e 5 hore ho hlakola ho phethe.

Tharolla bothata ho Cisco DNA Center VA Launchpad Phoso
Ho Cisco DNA Center VA Launchpad e amohetsoeng, ha o qala tlhahlobo ea sesosa sa motso (RCA), Sekhahla se fetang phoso se ka etsahala. Haeba phoso ena e etsahala, banner e latelang e tla hlaha:

Cisco DNA Center mabapi le AWS Deployment Guide 43

Rarolla Mathata a Libaka

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Phoso ena banner e hlaha ha palo e kholo ea likopo tsa API (10,000 ka motsotsoana) e amoheloa sebakeng se itseng. Ho rarolla bothata bona, eketsa moeli ho AWS ka tšebeletso ea Quotas ea Tšebeletso, kapa leka ho sebetsa hape ka mor'a metsotsoana e seng mekae.

Rarolla Mathata a Libaka

O ka rarolla mathata a sebaka ka litharollo tse latelang tse ka khonehang:

Hlahisa

Tharollo e ka khonehang

Ha u ntse u theha VA pod e ncha Etsa bonnete ba hore ts'ebetso efe kapa efe ea matsoho ho khomphutha ea AWS e phethiloe ka katleho 'me u leke

sebakeng, Cisco DNA Center VA

mohato ona hape. Haeba bothata bo ntse bo tsoela pele, ikopanye le Cisco TAC.

Launchpad e bonts'a molaetsa oa phoso kapa skrineng ea hoama ka nako e fetang 5

Hlokomela

metsotso mme ha e hlahise a

molaetsa o ntseng o tsoela pele.

Ho qoba likhohlano tse joalo, re khothaletsa hore o se ke oa etsa liphetoho tsa letsoho ho li-pods tsa VA. Sebakeng seo, sebelisa Cisco DNA Center VA Launchpad bakeng sa liketso tsohle.

Setupo sa sebaka sa hau se hloleha 'me Cisco DNA Bula nyeoe le AWS 'me u kope hore ba hlakole lisebelisoa tse hlolehileng ho backend. Center VA Launchpad e bonts'a Bucket [lebitso] ha ea ka ea tsitsisa phoso e ts'oanang le e latelang:

Ho rarolla liphoso tsa VA Pod Configuration
O ka rarolla liphoso tsa tlhophiso ea VA pod ka litharollo tse latelang tse ka khonehang:

Cisco DNA Center mabapi le AWS Deployment Guide 44

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Ho rarolla liphoso tsa VA Pod Configuration

Phoso + Theha konopo ea VA Pod e koetsoe

Tharollo e ka khonehang
Tsamaisa sesupa sa hau holim'a konopo e koetsoeng ho ithuta ho eketsehileng mabapi le hore na hobaneng e koetsoe.
Lintlha tse latelang ke mabaka a etsang hore u se khone ho theha VA pod e ncha:
· U fihletse moeli oa palo ea litšebeletso tsa VPC: Sebakeng se seng le se seng, moeli o behiloe ke molaoli oa hau oa AWS oa hore na ho ka etsoa li-VPC tse kae. Ka tloaelo, ho na le li-VPC tse 5 sebakeng ka seng, 'me VPC ka' ngoe e ka ba le VA pod e le 'ngoe feela. Leha ho le joalo, u ka 'na ua batla ho ikopanya le mookameli oa AWS bakeng sa nomoro e nepahetseng.
Hlokomela hore VPC efe kapa efe e sebelisetsoang lisebelisoa tse kantle ho Cisco DNA Center VA Launchpad e kenya letsoho moeling ona. Bakeng sa mohlalaample, haeba ak'haonte ea hau ea AWS e na le moeli oa li-VPC tse hlano 'me tse peli li ntse li sebelisoa, u ka etsa li-pods tse ling tse tharo feela sebakeng se khethiloeng.
Ho theha li-pods tse ncha tsa VA, kopa molaoli oa hau oa AWS ho fetola moeli kapa ho hlakola tse ling tsa li-pods kapa VPC tsa hau tse teng akhaonteng ea hau ea AWS.
· Ho hlakolwa ha Pod ho ntse ho tswela pele: Ho hlakolwa ha VA pod ea ho qetela sebakeng sena ho ntse ho tsoela pele. Ema metsotso e seng mekae, ebe u leka hape ho theha VA pod e ncha.

AMI ID ea sebaka sena ha e fumanehe molemong oa hau.

Ha o tobetsa + Theha VA Pod e Ncha, Cisco DNA Center VA Launchpad e netefatsa ID ea AMI bakeng sa sebaka seo u se khethileng.
Haeba u kopana le phoso ena, netefatso e hlolehile 'me u ka se khone ho theha pod e ncha sebakeng sena. Ikopanye le Cisco TAC ho o thusa ho rarolla bothata.

Tokiso ea hau ea VPN ha e sebetse. Ha u lokisa VA pod, barekisi ba latelang ba VPN ha ba tšehetsoe:

Boemong bona, u ke ke ua e ntlafatsa, kahoo ka kopo hlakola mohlala 'me u thehe

· Barracuda

e ncha.

· Sophos

· Vyatta

· Zyxel

Haeba u sebelisa morekisi oa VPN ea sa tšehetsoeng, Cisco DNA Center VA Launchpad e bonts'a molaetsa o latelang oa phoso:

CustomerGateway e nang le mofuta

U ka 'na ua kopana le phoso ena ha u leka ho theha VA pod e fetang e le' ngoe ka nako.

“ipsec.1”, ip-aterese “xx.xx.xx.xx”, le bgp-asn “65000” e se e le teng (RequestToken:

Ho rarolla phoso ena, hlakola VA pod e hlōlehileng ebe u e etsa hape. Netefatsa hore o theha pod e le 'ngoe feela ea VA ka nako.

f78ad45d-b4f8-d02b-9040-f29e5f5f86cf,

HandlerErrorCode: AlreadyExists)

Sebopeho sa AWS se Hlolehile.

Haeba tlhophiso ea AWS e hloleha, khutlela fenstereng ea Dashboard 'me u thehe VA pod e ncha. Ho fumana lintlha tse ling, sheba Theha VA Pod e Ncha, leqepheng la 25.

Hlokomela

O ka hlakola pod ea VA e hlolehileng ho e lokisa.

Cisco DNA Center mabapi le AWS Deployment Guide 45

Rarolla Phoso ea Khokahano ea Marang-rang

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Phoso
AWS Configuration e hloleha ha o hlophisa VA Pod

Tharollo e ka khonehang

Etsa bonnete ba hore ts'ebetso efe kapa efe ea letsoho ho khomphutha ea AWS e phethiloe ka katleho 'me u leke mohato ona hape. Haeba bothata bo ntse bo tsoela pele, ikopanye le Cisco TAC.

Hlokomela

Ho qoba likhohlano tse joalo, re khothaletsa hore u se ke ua etsa bukana leha e le efe

liphetoho ho VA pods. Sebakeng seo, sebelisa Cisco DNA Center VA Launchpad

bakeng sa diketso tsohle.

Ho hlakola VA Pod ho hlolehile

Etsa bonnete ba hore ts'ebetso efe kapa efe ea letsoho ho khomphutha ea AWS e phethiloe ka katleho 'me u leke mohato ona hape. Haeba bothata bo ntse bo tsoela pele, ikopanye le Cisco TAC.

Hlokomela

Ho qoba likhohlano tse joalo, re khothaletsa hore u se ke ua etsa bukana leha e le efe

liphetoho ho VA pods. Sebakeng seo, sebelisa Cisco DNA Center VA Launchpad

bakeng sa diketso tsohle.

Mohloli oo o lekang ho o hlakola Haeba o kopana le phoso ena ha o ntse o hlakola VA pod, ikopanye le Cisco TAC. e fetotsoe haufinyane. Ka kopo qala leqephe hape ho fumana liphetoho tsa morao-rao 'me u leke hape.

Rarolla Phoso ea Khokahano ea Marang-rang
Ha u ntse u theha VA pod, haeba kotopo ea IPsec kapa khokahano ea TGW e sa thehoa, etsa bonnete ba hore kotopo e holim'a firewall kapa router ea hau.
Haeba kotopo ho tloha VA pod ho ea TWG e le tala 'me kotopo ho tloha TWG ho ea CGW e le bohlooho, etsa bonnete ba hore:

· U rometse tlhophiso e nepahetseng file ho molaoli oa marang-rang oa hau. · Mookameli oa marang-rang oa hau o entse liphetoho tse hlokahalang tlhophisong file. · Mookameli oa marang-rang oa hau o qetile ho sebelisa peakanyo ena ho Enterprise firewall kapa router ea hau. · Haeba u khethile TGW e Teng le Li-Attachments tse teng e le khetho ea hau ea khokahano ea marang-rang, etsa
o na le bonnete ba hore o latetse ka nepo Mokhoa oa ho Hlophisa ka Bowena ho Transit e Teng le Customer Gateways, leqepheng la 35.
Cisco DNA Center mabapi le AWS Deployment Guide 46

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Bothata ba Cisco DNA Center VA Configuration Liphoso

Bothata ba Cisco DNA Center VA Configuration Liphoso

O ka rarolla liphoso tse etsahalang ha o ntse o hlophisa Cisco DNA Center VA ka litharollo tse latelang tse ka khonehang:

Phoso ea ho Seta Tikoloho e hlolehile

Tharollo e ka khonehang 1. Ho Cisco DNA Center VA Launchpad, khutlela ho Create/Laola Cisco DNA Center(s)
pane.
2. Hlakola Cisco DNA Center VA.
3. Etsa Cisco DNA Center VA e ncha.

Hlakola E hlolehile

Haeba ho hlakolwa ha Cisco DNA Center VA ho hloleha, ikopanye le Cisco TAC.

Ho rarolla Liphoso tsa Concurrency

O rarolla liphoso tsa concurrency ka litharollo tse latelang tse ka khonehang:

Phoso

Tharollo e ka khonehang

Ha o khone ho hlakola Pod O ke ke oa hlakola karolo, joalo ka VA pod kapa Cisco DNA Center VA, eo mosebelisi e mong a e entseng.

kapa Setsi sa DNA sa Cisco ha ketso e fapaneng e ntse e tsoela pele ho karolo. Kamora hore ketso e phethe, uena kapa motho ofe kapa ofe

e entsoeng ke mosebelisi e mong e ka hlakola karolo eo.

mosebedisi.

Bakeng sa mohlalaample, u ke ke ua hlakola VA pod kapa Cisco DNA Center VA ha e ntse e le ho efe kapa efe ea tse latelang

mekhoa kapa e re:

· Mosebelisi e mong o mothating oa ho theha Cisco DNA Center VA.

· Mosebelisi e mong o mothating oa ho hlakola Cisco DNA Center VA.

· Cisco DNA Center VA e boemong bo hlōlehileng ka mor'a teko ea ho hlakola.

Boemo ba Pod bo na le Haeba u lekile ho hlakola VA pod, ak'haonte ea mantlha ea mosebelisi e entseng VA pod e kanna ea fetoha haufinyane. ketso e ts'oanang. Taba ena ea concurrency e fetola boemo ba VA pod e khethiloeng.
Ho view boemo bo ntlafalitsoeng ba VA pod, tobetsa Refresh.

Rarolla Mathata a Mang a Tšebeliso
O ka rarolla mathata a mang a hlahang ha o ntse o tsamaisa Cisco DNA Center VA ho AWS ka litharollo tse latelang tse ka khonehang:

Cisco DNA Center mabapi le AWS Deployment Guide 47

Rarolla Mathata a Mang a Tšebeliso

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Hlahisa

Mabaka le Litharollo Tse ka khonehang

Lisebelisoa li tala, empa Mehato e meng, u ka tsoela pele haeba lisebelisoa tsohle li se li atlehile. Ho etsa bonnete ba hore konopo ea "Proceed" e koetsoe. botšepehi ba ho romelloa, konopo ea Tsoela pele e lula e holofetse ho fihlela setup e phethehile
'me lisebelisoa tsohle li hlophisitsoe le ho kenngoa.

Ka linako tse ling, skrine e bontša hore lisebelisoa li thehiloe ka katleho, empa konopo ea Proceed e ntse e holofetse. Tabeng ena, o hloka ho ema metsotsoana e seng mekae hore lisebelisoa tse ling li laole. Ka mor'a hore lisebelisoa tsohle li hlophisoe le ho laeloa, konopo ea Proceed e ea sebetsa.

Ho hloleha ha ho tsamaisoa li-pods tse ngata tsa VA tse nang le CGW e tšoanang sebakeng se le seng.

Netefatsa hore: · CGW IP address ke IP address ea Enterprise firewall kapa router ea hau. · Aterese ea IP ea CGW ke aterese e nepahetseng ea sechaba.

· Aterese ea IP ea CGW ha e so sebelisoe bakeng sa pod e 'ngoe ea VA sebakeng se le seng. Hona joale, sebakeng se seng le se seng, li-pods tse ngata tsa VA li ke ke tsa ba le aterese e tšoanang ea CGW IP. Ho sebelisa aterese ea IP e tšoanang ea CGW bakeng sa pod ea VA e fetang e le 'ngoe, sebelisa VA pod e 'ngoe le e 'ngoe sebakeng se fapaneng.

Ha e khone ho SSH kapa ho ping Cisco DNA Center VA.
Seboka se felile

Ha o khone ho hokahanya ka SSH kapa ho ping Cisco DNA Center VA, le hoja kotopo e phahame 'me boemo ba kopo bo phethehile (botala). Taba ena e kanna ea hlaha haeba CGW e sebakeng se hlophisitsoeng e sa lokisoa hantle. Netefatsa tlhophiso ea CGW 'me u leke hape.
Haeba nako ea hau e fela ha ts'ebetso e ntse e tsoela pele, joalo ka ho qala RCA, ts'ebetso e kanna ea fela ka tšohanyetso mme ea hlahisa tsebiso e latelang:

Haeba nako ea hau e felile, kena hape 'me u qale ts'ebetso hape.
Cisco DNA Center mabapi le AWS Deployment Guide 48

3 KHAOLO
Kenya Cisco DNA Center 2.3.5.3 ho AWS Ho Sebelisa Cisco DNA Center VA Launchpad 1.5
· Hlahisa Setsi sa Cisco DNA ho AWS Ho Sebelisa Mokhoa oa Boipheliso oa Boipheliso, leqepheng la 49 · Automated Deployment Workflow, leqepheng la 49 · Lintho tse hlokahalang bakeng sa ho Deployment Automated, leqepheng la 50 · Kenya Cisco DNA Center VA Launchpad, leqepheng la 53 · Access Hosted Cisco DNA Center VA Launchpad, leqepheng la 55 · Theha VA Pod e Ncha, leqepheng la 63 · Lokisa ka Bohona Tsela ea ho Tsamaisa Tsela ea Lipalangoang tse Teng le Bareki, leqepheng la 72 · Theha Setsi se Secha sa Cisco DNA VA, leqepheng la 74 · Tharollo ea mathata ka Phallo, leqepheng la 78
Tsamaisa Cisco DNA Center ho AWS Ho Sebelisa Mokhoa o Ikemetseng oa ho Tsamaisa
U fana ka Cisco DNA Center VA Launchpad ka lintlha tse hlokahalang ho theha lisebelisoa tsa AWS akhaonteng ea hau ea AWS, e kenyelletsang VPC, kotopo ea IPsec VPN, liheke, li-subnet le lihlopha tsa ts'ireletso. Ka lebaka leo, Cisco DNA Center VA Launchpad e sebelisa Cisco DNA Center AMIs e le mohlala oa Amazon EC2 ka tlhophiso e behiloeng VPC e arohaneng. Tlhophiso e kenyelletsa li-subnets, liheke tsa lipalangoang, le lisebelisoa tse ling tsa bohlokoa joalo ka Amazon CloudWatch bakeng sa ho beha leihlo, Amazon DynamoDB bakeng sa polokelo ea mmuso, le lihlopha tsa ts'ireletso. U sebelisa Cisco DNA Center VA Launchpad, u ka khona ho fihlella le ho laola li-VA tsa hau, hammoho le ho laola litlhophiso tsa basebelisi. Bakeng sa tlhaiso-leseling, bona Tataiso ea Tsamaiso ea Cisco DNA Center VA Launchpad 1.5.
Automated Deployment Workflow
Ho tsamaisa Cisco DNA Center ho AWS ho sebelisa mokhoa o ikemetseng, latela mehato ena ea boemo bo phahameng: 1. Kopana le lintho tse hlokahalang. Sheba Lintho Tse Hlokahalang Bakeng sa Tšebeliso e Ikemetseng, leqepheng la 50. 2. (Boikhethelo) Kopanya Cisco ISE ho AWS le Cisco DNA Center VA ea hau hammoho. Sheba Tataiso bakeng sa
Ho kopanya Cisco ISE ho AWS le Cisco DNA Center ho AWS, leqepheng la 4.
Cisco DNA Center mabapi le AWS Deployment Guide 49

Litlhoko tse hlokahalang bakeng sa ho Deployment ka boiketsetso

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

3. Kenya Cisco DNA Center VA Launchpad kapa fihlella Cisco DNA Center VA Launchpad e tsamaisoang ke Cisco. Sheba Kenya Cisco DNA Center VA Launchpad, leqepheng la 53 kapa AccessHoststed Cisco DNA Center VA Launchpad, leqepheng la 55.
4. Theha VA pod e ncha ho kenya mohlala oa Cisco DNA Center VA. Sheba Theha VA Pod e Ncha, leqepheng la 63.
5. (Ka boikhethelo) Beakanya ka bouena tafole ea litsamaiso ea TGW ho AWS 'me u kenye litlhophiso tsa litsela ho Customer Gateway (CGW) ea hau e teng haeba u sebelisa TGW e teng le lihokelo tse seng li ntse li le teng, joalo ka VPC, joalo ka khokahanyo eo u e ratang ea sebakeng. kgetho. Sheba ka Bouena Litlhophiso tsa Tsela ea Lipalangoang mabapi le Lipalangoang tse Teng le Liheke tsa Bareki, leqepheng la 72.
6. Etsa mohlala oa hau o mocha oa Cisco DNA Center. Sheba Theha Setsi se Secha sa DNA sa Cisco VA, leqepheng la 74.
7. (Ho ikhethela) Haeba ho hlokahala, rarolla mathata leha e le afe a hlahang nakong ea ho romelloa. Sheba Tharollo ea Tharollo ea Phaliso, leqepheng la 78.
8. Laola Cisco DNA Center VA ea hau u sebelisa Cisco DNA Center VA Launchpad. Sheba Cisco DNA Center VA Launchpad 1.5 Administrator Guide.
Litlhoko tse hlokahalang bakeng sa ho Deployment ka boiketsetso
Pele o ka qala ho tsamaisa Cisco DNA Center ho AWS o sebelisa Cisco DNA Center VA Launchpad, etsa bonnete ba hore litlhokahalo tse latelang lia fihlelleha:
· Kenya Docker Community Edition (CE) sethaleng sa hau. Cisco DNA Center VA Launchpad e ts'ehetsa Docker CE ho li-platform tsa Mac, Windows le Linux. Sheba litokomane tse ho Docker websebaka sa marang-rang bakeng sa mokhoa o ikhethileng oa sethala sa hau.
· Ho sa tsotelehe hore na o fihlella joang Cisco DNA Center VA Launchpad ho tsamaisa Cisco DNA Center VA ea hau, etsa bonnete ba hore tikoloho ea hau ea leru e kopana le lintlha tse latelang: · Cisco DNA Center Instance: r5a.8xlarge, 32 vCPUs, 256-GB RAM, le 4 - Polokelo ea lefuba

Bohlokoa

Cisco DNA Center e tšehetsa feela boholo ba mohlala oa r5a.8xlarge. Liphetoho life kapa life peakanyong ena ha li tšehetsoe. Ho feta moo, boholo ba mohlala oa r5a.8xlarge ha bo tšehetsoe libakeng tse fumanehang. Ho view lethathamo la libaka tse sa tšehetsoeng tse fumanehang, bona Lintlha tsa Phatlalatso bakeng sa Cisco DNA Center VA Launchpad 1.5.0.

* Backup Instance: T3.micro, 2 vCPUs, 500-GB polokelo, le 1-GB RAM

· U na le mangolo a netefalitsoeng a ho fihlella ak'haonte ea hau ea AWS.
· Ak'haonte ea hau ea AWS ke ak'haonte e nyane (akhaonto ea ngoana) ho boloka boikemelo ba lisebelisoa le ho itšehla thajana. Ka subaccount, sena se tiisa hore phepelo ea Cisco DNA Center ha e ame lisebelisoa tsa hau tse teng.
· Bohlokoa: Ak'haonte ea hau ea AWS e ngolisitsoe ho Cisco DNA Center Virtual Appliance - Tlisa License ea Hao (BYOL) 'Maraka oa AWS.

Cisco DNA Center mabapi le AWS Deployment Guide 50

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Litlhoko tse hlokahalang bakeng sa ho Deployment ka boiketsetso

· Haeba u mosebelisi oa tsamaiso, u tlameha ho ba le tumello ea ho kena ho motsamaisi bakeng sa akhaonto ea hau ea AWS. (Ho AWS, lebitso la pholisi le hlahisoa e le AdministratorAccess.)
Leano la phihlello ea batsamaisi le tlameha ho hokelloa akhaonteng ea hau ea AWS ka kotloloho eseng ho sehlopha. Sesebelisoa ha se baloe ka leano la sehlopha. Kahoo, haeba u kenyelelitsoe sehlopheng se nang le tumello ea ho kena ha motsamaisi, u ke ke ua khona ho theha lisebelisoa tse hlokahalang.

· Haeba u mosebelisi, molaoli oa hau o tlameha ho u kenya sehlopheng sa basebelisi ba CiscoDNACenter. Ha mosebelisi oa admin a kena ho Cisco DNA Center VA Launchpad ka lekhetlo la pele, sehlopha sa basebelisi ba CiscoDNACenter se thehoa akhaonteng ea bona ea AWS ka maano ohle a hlokahalang a kentsoeng. Mosebelisi oa admin a ka eketsa basebelisi sehlopheng sena ho ba lumella ho kena ho Cisco DNA Center VA Launchpad. Melaoana e latelang e khomaretsoe ho sehlopha sa basebelisi ba CiscoDNACenter: · AmazonDynamoDBFullAccess · IAMReadOnlyAccess · AmazonEC2FullAccess · AWSCloudFormationFullAccess · AWSLambda_FullAccess · CloudWatchFullAccess · ServiceQuotasFullAccess · AmazonEventS_FullAccess · AmazonEventS_FullAccess · AmazonEventS_FullAccess cess · ClientVPNServiceRolePolicy (Version: 3-2012-10) Leano lena le lumella melao e latelang: · ec17:CreateNetworkInterface
Cisco DNA Center mabapi le AWS Deployment Guide 51

Litlhoko tse hlokahalang bakeng sa ho Deployment ka boiketsetso

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

· ec2:CreateNetworkInterfacePermission · ec2:DescribeSecurityGroups · ec2:DescribeVpcs · ec2:DescribeSubnets · ec2:DescribeInternetGateways · ec2:ModifyNetworkInterfaceAttribute · ec2:DeleteNetworkInterface · ec2:AteriesDescribeADirect · ds:GetDirectoryLimits · ds:UnauthorizeApplication · logs :DescribeLogStreams · logs:CreateLogStream · logs:PutLogEvents · logs:DescribeLogGroups · acm:GetCertificate · acm:DescribeCertificate · iam:GetSAMLProvider · lambda:GetFunctionConfiguration
· ConfigPermission (Version: 2012-10-17, Sid: VisualEditor0) Leano lena le lumella melao e latelang: · config:Fumana · config:* · config:*ConfigurationRecorder · config:Describe* · config:Deliver* · config:List* · config:Khetha* · tag:GetResources · tag: FumanaTagLinotlolo · cloudtrail:DescribeTrails

Cisco DNA Center mabapi le AWS Deployment Guide 52

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Kenya Cisco DNA Center VA Launchpad

· cloudtrail:GetTrailStatus · cloudtrail:LookupEvents · config:PutConfigRule · config:DeleteConfigRule · config:Delete EvaluationResuls
· PassRole (Version: 2012-10-17, Sid: VisualEditor0) Leano lena le lumella melao e latelang: · iam:GetRole · iam:PassRole

Kenya Cisco DNA Center VA Launchpad
Mokhoa ona o u bontša mokhoa oa ho kenya Cisco DNA Center VA Launchpad u sebelisa lijana tsa Docker bakeng sa seva le lits'ebetso tsa bareki.
Pele o qala Etsa bonnete ba hore o kentse Docker CE mochining oa hau. Bakeng sa tlhaiso-leseling, sheba Litlhoko tse hlokahalang bakeng sa Phemelo e Ikemetseng, leqepheng la 50.
Tsamaiso

Mohato oa 1
Mohato oa 2 Mohato oa 3 Mohato oa 4

Eya sebakeng sa Cisco Software Download ebe u khoasolla tse latelang files: · Launchpad-desktop-client-1.5.0.tar.gz
· Launchpad-desktop-server-1.5.0.tar.gz
Netefatsa hore TAR file ke oa 'nete ebile o tsoa Cisco. Bakeng sa mehato e qaqileng, bona Netefatsa Cisco DNA Center VA TAR File, leqepheng la 6. Laola litšoantšo tsa Docker ho tsoa ho tse jarollotsoeng files:
docker load < Launchpad-desktop-client-1.5.0.tar.gz
docker load < Launchpad-desktop-server-1.5.0.tar.gz
Sebelisa taelo ea litšoantšo tsa docker ho hlahisa lenane la litšoantšo tsa Docker sebakeng sa polokelo le ho netefatsa hore u na le likopi tsa morao-rao tsa seva le lits'ebetso tsa bareki. Ho files, eona TAG kholomo e lokela ho hlahisa linomoro tse qalang ka 1.5. Bakeng sa mohlalaampLe:

Cisco DNA Center mabapi le AWS Deployment Guide 53

Kenya Cisco DNA Center VA Launchpad

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Mohato oa 5 Mohato oa 6
Mohato oa 7

Sebelisa sesebelisoa sa seva: docker run -d -p :8080 -e DEBUG=nete -name server

Bakeng sa mohlalaampLe:
$ docker run -d -p 9090:8080 -e DEBUG=nete-lebitso seva f87ff30d4c6a

Kenya kopo ea bareki:
docker run -d -p :80 -e CHOKIDAR_USEPOLLING=nete -e REACT_APP_API_URL=http://localhost: -name client

Bakeng sa mohlalaampLe:

$ docker run -d -p 90:80 -e CHOKIDAR_USEPOLLING=nete -e REACT_APP_API_URL=http://localhost:9090 -name client dd50d550aa7c

Hlokomela

Netefatsa hore nomoro ea boema-kepe ea seva e senotsoeng le REACT_APP_API_URL nomoro ea boema-kepe

lia tšoana. Mohato oa 5 le Mohato oa 6, nomoro ea boema-kepe ea 9090 e sebelisoa ho bobeli ba examples.

Sebelisa docker ps -a taelo ho netefatsa hore seva le lits'ebetso tsa bareki lia sebetsa. Kholomo ea STATUS e lokela ho bontša hore lits'ebetso li felile.
Bakeng sa mohlalaampLe:

Mohato oa 8 Mohato oa 9

Hlokomela

Haeba u kopana le bothata ha u ntse u sebelisa seva kapa lits'ebetso tsa bareki, bona Troubleshoot Docker

Liphoso, leqepheng la 78.

Netefatsa hore ts'ebeliso ea seva e ea fumaneha ka ho kenya URL ka mokhoa o latelang: http://:/api/valaunchpad/api-docs/
Bakeng sa mohlalaampLe:
http://192.0.2.2:9090/api/valaunchpad/api-docs/
Li-application programming interfaces (APIs) tse sebelisoang bakeng sa Cisco DNA Center VA li bonts'oa fensetereng.

Netefatsa hore sesebelisoa sa bareki sea fumaneha ka ho kenya faele ea URL ka mokhoa o latelang:

http://<localhost>:<client-port-number>/valaunchpad

Bakeng sa mohlalaampLe:

http://192.0.2.1:90/valaunchpad

Fensetere ea ho kena ea Cisco DNA Center VA Launchpad e hlahisoa.

Hlokomela

Ho ka nka metsotso e seng mekae ho kenya fensetere ea ho kena ea Cisco DNA Center VA Launchpad ha u ntse u

lits'ebetso tsa bareki le li-server li kenya li-artifacts.

Cisco DNA Center mabapi le AWS Deployment Guide 54

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Fihla Setsi sa Cisco DNA Center VA Launchpad

Fihla Setsi sa Cisco DNA Center VA Launchpad
U ka fihlella Cisco DNA Center VA Launchpad ka Cisco DNA Portal. Haeba u le mocha ho Cisco DNA Portal, u tlameha ho theha ak'haonte ea Cisco le ak'haonte ea Cisco DNA Portal. Ebe o ka kena ho Cisco DNA Portal ho fihlella Cisco DNA Center VA Launchpad. Haeba u tloaelane le Cisco DNA Portal 'me u na le ak'haonte ea Cisco le ak'haonte ea Cisco DNA Portal, u ka kena ka kotloloho ho Cisco DNA Portal ho fihlella Cisco DNA Center VA Launchpad.
Theha ak'haonte ea Cisco
Ho fihlella Cisco DNA Center VA Launchpad ka Cisco DNA Portal, o tlameha ho theha ak'haonte ea Cisco pele.
Tsamaiso

Mohato oa 1

Ho sebatli sa hau, kenya: dna.cisco.com Fensetere ea ho kena ea Cisco DNA Portal e ea hlaha.

Mohato oa 2 Mohato oa 3

Tobetsa Etsa akhaonto e ncha. Fensetereng ea Cisco DNA Portal Welcome, tlanya Etsa akhaonto ea Cisco.

Cisco DNA Center mabapi le AWS Deployment Guide 55

Theha ak'haonte ea Cisco

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Bohato ba 4 Fensetereng ea Theha Account, tlatsa likarolo tse hlokahalang ebe o tobetsa Ngolisa.

Bohato ba 5 Netefatsa ak'haonte ea hau ka ho ea ho lengolo-tsoibila leo u ngolisitseng ak'haonte ea hau ka lona ebe o tobetsa Kenya Akhaonto.
Cisco DNA Center mabapi le AWS Deployment Guide 56

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Theha Cisco DNA Portal Account

Theha Cisco DNA Portal Account
Ho fihlella Cisco DNA Center VA Launchpad ka Cisco DNA Portal, o tlameha ho theha ak'haonte ea Cisco DNA Portal.
Pele o qala Etsa bonnete ba hore o na le ak'haonte ea Cisco. Ho fumana lintlha tse ling, sheba Theha Akhaonto ea Cisco, leqepheng la 55.
Tsamaiso

Mohato oa 1

Ho sebatli sa hau, kenya: dna.cisco.com Fensetere ea ho kena ea Cisco DNA Portal e ea hlaha.

Cisco DNA Center mabapi le AWS Deployment Guide 57

Theha Cisco DNA Portal Account

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Mohato oa 2 Mohato oa 3

Tobetsa Kena ka Cisco. Kenya lengolo-tsoibila la ak'haonte ea hau ea Cisco tšimong ea Imeile, ebe o tobetsa E latelang.

Bohato ba 4 Kenya phasewete ea akhaonto ea hau ea Cisco tšimong ea Password.
Cisco DNA Center mabapi le AWS Deployment Guide 58

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Theha Cisco DNA Portal Account

Mohato oa 5 Mohato oa 6

Tobetsa Kena.
Fensetereng ea Cisco DNA Portal Welcome, kenya lebitso la mokhatlo oa hau kapa sehlopha ho Lebitso la akhaonto ea hau. Ebe o tobetsa Tsoela pele.

Mohato oa 7

Ho Cisco DNA Portal Netefatsa CCO Profile fensetereng, etsa se latelang:
a) Netefatsa hore lintlha li nepahetse. b) Ka mor'a ho bala, ho lumela, le ho lumellana le maemo, hlahloba lebokose la ho hlahloba. c) Tobetsa Create Account.

Cisco DNA Center mabapi le AWS Deployment Guide 59

Kena ho Cisco DNA Portal ka Cisco

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Kamora ho theha ak'haonte ka katleho, leqephe la lehae la Cisco DNA Portal le tla hlahisoa.
Kena ho Cisco DNA Portal ka Cisco
Ho fihlella Cisco DNA Center VA Launchpad ka Cisco DNA Portal, o tlameha ho kena ho Cisco DNA Portal.
Cisco DNA Center mabapi le AWS Deployment Guide 60

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Kena ho Cisco DNA Portal ka Cisco

Pele o qala Etsa bonnete ba hore o na le ak'haonte ea Cisco le ak'haonte ea Cisco DNA Portal. Bakeng sa tlhahisoleseling e eketsehileng, bona Theha Akhaonto ea Cisco, leqepheng la 55 'me U Thehe Cisco DNA Portal Account, leqepheng la 57.
Tsamaiso

Mohato oa 1

Ho sebatli sa hau, kenya: dna.cisco.com Fensetere ea ho kena ea Cisco DNA Portal e ea hlaha.

Mohato oa 2 Mohato oa 3

Tobetsa Kena ka Cisco. Kenya lengolo-tsoibila la ak'haonte ea hau ea Cisco tšimong ea Imeile, ebe o tobetsa E latelang.

Cisco DNA Center mabapi le AWS Deployment Guide 61

Kena ho Cisco DNA Portal ka Cisco

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Bohato ba 4 Kenya phasewete ea akhaonto ea hau ea Cisco tšimong ea Password.

Mohato oa 5 Mohato oa 6

Tobetsa Kena. Haeba u na le ak'haonte e le 'ngoe feela ea Cisco DNA Portal, leqephe la lehae la Cisco DNA Portal le tla hlahisoa.
(Ka boikhethelo) Haeba u na le li-account tsa Cisco DNA Portal tse ngata, khetha ak'haonte eo u batlang ho kena ho eona ka ho tobetsa konopo ea Tsoela pele ea akhaonto.

Leqephe la lehae la Cisco DNA Portal le hlahisoa.
Cisco DNA Center mabapi le AWS Deployment Guide 62

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Theha VA Pod e Ncha

Theha VA Pod e Ncha
VA pod ke sebaka sa AWS se amohelang setsi sa Cisco DNA Center VA. Tikoloho ea moeti e kenyelletsa lisebelisoa tsa AWS, joalo ka mohlala oa Cisco DNA Center VA EC2, Amazon Elastic Block Storage (EBS), seva sa backup sa NFS, lihlopha tsa ts'ireletso, litafole tsa routing, Amazon CloudWatch logs, Amazon Simple Notification System (SNS), VPN Gateway ( VPN GW), TGW, joalo-joalo.
U sebelisa Cisco DNA Center VA Launchpad, u ka etsa li-pod tsa VA tse ngata-pod e le 'ngoe ea VA bakeng sa Cisco DNA Center VA ka 'ngoe.

Hlokomela

· Mosebelisi oa AWS Super Administrator a ka beha moeli ho palo ea li-pods tsa VA tse ka etsoang ho e 'ngoe le e 'ngoe.

sebaka. Li-VPC tse sebelisetsoang lisebelisoa tse ka ntle ho Cisco DNA Center VA Launchpad li kenya letsoho ho sena

nomoro hape. Bakeng sa mohlalaampLeha ho le joalo, haeba ak'haonte ea hau ea AWS e na le moeli oa li-VPC tse hlano 'me tse peli li ntse li sebelisoa, u ka khona

theha feela li-pods tse ling tse tharo tsa VA sebakeng se khethiloeng.

· Mehatong e meng, lisebelisoa tsohle li tlameha ho hlophisoa ka katleho ho tsoela pele mohatong o latelang. Haeba lisebelisoa tsohle li sa hlophisoa ka katleho, konopo ea tsoela pele e koetsoe. Haeba lisebelisoa tsohle li hlophisitsoe ka katleho 'me konopo e tsoelang pele e koetsoe, ema metsotsoana e seng mekae hobane lisebelisoa li ntse li kenya letsoho. Ka mor'a hore litlhophiso tsohle li phethe, konopo e ea sebetsa.

Mokhoa ona o u tataisa mehatong ea ho theha VA pod e ncha.
Pele o qala Ak'haonte ea hau ea AWS e tlameha ho ba le tumello ea phihlello ea motsamaisi ho etsa ts'ebetso ena. Bakeng sa tlhaiso-leseling, sheba Litlhoko tse hlokahalang bakeng sa Phemelo e Ikemetseng, leqepheng la 50.

Cisco DNA Center mabapi le AWS Deployment Guide 63

Theha VA Pod e Ncha

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Tsamaiso

Mohato oa 1 Mohato oa 2

Kena ho Cisco DNA Center VA Launchpad u sebelisa e 'ngoe ea mekhoa e latelang:
· IAM Keno: Mokhoa ona o sebelisa likarolo tsa mosebelisi ho hlalosa litokelo tsa phihlello ea mosebelisi. Cisco DNA Center VA Launchpad e ts'ehetsa netefatso ea lintlha tse ngata (MFA) joalo ka boikhethelo, mofuta o mong oa netefatso, haeba khamphani ea hau e e hloka. Bakeng sa boitsebiso bo eketsehileng, bona "Kena ho Cisco DNA Center VA Launchpad U sebelisa IAM" ho Cisco DNA Center VA Launchpad 1.5 Administrator Guide.
· Federated Login: Mokhoa ona o sebelisa boitsebiso bo le bong ho fihlella marang-rang kapa lits'ebetso tse laoloang ke basebelisi ba bang. Bakeng sa tlhaiso-leseling e batsi, bona "Hlahisa Lintlha tsa Basebelisi ba Federated U Sebelisa saml2aws" kapa "Hlahisa Lintlha tsa Basebelisi ba Federated U Sebelisa AWS CLI" ho Cisco DNA Center VA Launchpad 1.5 Administrator Guide.
Bakeng sa tlhahisoleseling mabapi le mokhoa oa ho fumana ID ea senotlolo sa ho fihlella le senotlolo sa phihlello ea lekunutu, bona AWS Account le Key Keys sehlooho ho Lisebelisoa tsa AWS tsa PowerShell User Guide ho AWS. websebaka.
Haeba u kopana le liphoso leha e le life tsa ho kena, u lokela ho li rarolla ebe u kena hape. Bakeng sa tlhaiso-leseling e batsi, bona Troubleshoot the Deployment, leqepheng la 78.
Haeba u mosebeletsi oa admin ea kenang ka lekhetlo la pele, kenya aterese ea hau ea lengolo-tsoibila sebakeng sa Imeile ID ebe o tobetsa Romela. Haeba o le mosebelisi, tsoela pele ho Mohato oa 3.

U ka ingolisa ho Amazon Simple Notification System (SNS) ho fumana litlhokomeliso mabapi le lisebelisoa tse kentsoeng, liphetoho le tšebeliso e feteletseng ea lisebelisoa. Ho feta moo, lialamo li ka hlophisoa ho u tsebisa haeba Amazon CloudWatch e lemoha boitšoaro bofe kapa bofe bo sa tloaelehang ho Cisco DNA Center VA Launchpad. Ho feta moo, AWS Config e lekola le ho lekola lisebelisoa tsa hau tse hlophisitsoeng ebe e romella lintlha tsa tlhahlobo ea liphetho. Bakeng sa tlhaiso-leseling e batsi, bona "Ingolise ho Ngoliso ea lengolo-tsoibila ea Amazon SNS" le "View Amazon CloudWatch Alarms” ho Cisco DNA Center VA Launchpad 1.5 Administrator Guide. Kamora ho kenya lengolo-tsoibila la hau, ho etsahala mekhoa e mengata:
· Sehlopha sa basebelisi ba CiscoDNACenter se thehiloe akhaonteng ea hau ea AWS ka melaoana eohle e hlokahalang e kenyellelitsoeng. Mosebelisi oa admin a ka eketsa basebelisi sehlopheng sena ho lumella basebelisi ho kena ho Cisco DNA Center VA Launchpad.
· Bakete ea Amazon S3 e entsoe ka bo eona ho boloka boemo ba thomello. Re khothaletsa hore o se hlakole sena kapa bakete efe kapa efe akhaonteng ea AWS, lefatšeng ka bophara kapa sebakeng ka seng. Ho etsa joalo ho ka ama ts'ebetso ea phepelo ea Cisco DNA Center VA Launchpad.
· Haeba u kena sebakeng ka lekhetlo la pele, Cisco DNA Center VA Launchpad e theha lisebelisoa tse 'maloa ho AWS. Ts'ebetso ena e ka nka nako, ho latela hore na sebaka seo se ne se le teng pele
Cisco DNA Center mabapi le AWS Deployment Guide 64

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Theha VA Pod e Ncha

e nolofalitsoe kapa che. Ho fihlela ts'ebetso e phethela, u ke ke ua theha VA pod e ncha. Ka nako ena, molaetsa o latelang o tla hlaha: "Ho theha tlhophiso ea sebaka sa pele. Sena se ka nka metsotso e seng mekae. ”

Ka mor'a hore u kene ka katleho, pane ea Dashboard e tla hlaha.

Hlokomela

Haeba u khothaletsoa ho ntlafatsa mofuta oa sebaka, latela likhothaletso ho phethela ntlafatso. Bakeng sa

lintlha tse ling, bona "Ntlafatsa Boemo ba Sebaka" ho Cisco DNA Center VA Launchpad 1.5

Tataiso ea Tsamaiso.

Mohato oa 3
Mohato oa 4 Mohato oa 5

(Ka boikhethelo) Ho theha pod e ncha ea VA sebakeng se seng ntle le sa kamehla (us-East-1), tobetsa Lethathamo la ho theoha ha Lebatooa ebe u khetha sebaka.

Hlokomela

Haeba u khothaletsoa ho ntlafatsa mofuta oa sebaka, latela likhothaletso ho phethela ntlafatso. Bakeng sa

lintlha tse ling, bona "Ntlafatsa Boemo ba Sebaka" ho Cisco DNA Center VA Launchpad 1.5

Tataiso ea Tsamaiso.

Tobetsa + Theha VA Pod e Ncha. Hlophisa meralo ea motheo ea AWS, e kenyeletsang VPC, subnet ea poraefete, tafole ea ho tsamaisa, sehlopha sa ts'ireletso, gateway ea sebele, le CGW, ka ho tlatsa mehato e latelang: a) Likarolong tsa Lintlha tsa Tikoloho, lokisa libaka tse latelang:
· VA Pod Name: Fana ka lebitso ho VA pod e ncha. Lebitso le tlameha ho ikhetha libakeng tsohle 'me le ka kenyelletsa litlhaku (A-Z le a-z), linomoro (0-9), le li-dashes (-).
· Sebaka sa Boteng: Tobetsa lenane lena la ho theoha 'me u khethe sebaka se fumanehang, e leng sebaka se ka thōko sebakeng seo u se khethileng.
· AWS VPC CIDR: Kenya subnet e ikhethang ea VPC eo u ka e sebelisang ho qala lisebelisoa tsa AWS. Hopola litataiso tse latelang:
· Mofuta o khothaletsoang oa CIDR ke /25.
· Ho IPv4 CIDR notation, octet ea ho qetela (octet ea bone) ea aterese ea IP e ka ba le boleng ba 0 kapa 128 feela.

Cisco DNA Center mabapi le AWS Deployment Guide 65

Theha VA Pod e Ncha

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

· Subnet ena ha ea lokela ho kopana le subnet ea hau ea khoebo.

b) Tlas'a Transit Gateway (TGW), khetha e 'ngoe ea likhetho tse latelang:

· VPN GW: Khetha khetho ena haeba u na le VA pod e le 'ngoe,' me u batla ho sebelisa heke ea VPN. VPN GW ke pheletso ea VPN ka lehlakoreng la Amazon la khokahano ea hau ea Site-to-Site VPN. E ka hokelloa ho VPC e le 'ngoe feela.

· New VPN GW + TGW e Ncha: Khetha khetho ena haeba u na le li-pod tse ngata tsa VA kapa VPC, 'me u batla ho sebelisa TGW e le setsi sa lipalangoang ho hokahanya li-VPC tse ngata le marang-rang a marang-rang. E ka sebelisoa hape e le pheletso ea VPN bakeng sa lehlakore la Amazon la khokahano ea VPN ea Site-to-Site.

Hlokomela

O ka etsa TGW e le 'ngoe feela sebakeng se seng le se seng.

· TGW e teng: Khetha khetho ena haeba u na le TGW e teng eo u batlang ho e sebelisa ho theha VA pod e ncha, ebe u khetha e 'ngoe ea likhetho tse latelang:
· VPN GW e Ncha: Khetha khetho ena haeba u batla ho theha heke e ncha ea VPN bakeng sa TGW ea hau e teng.
· Sehlomathiso se teng: Khetha khetho ena haeba u batla ho sebelisa VPN e teng kapa sehokelo sa khokahanyo ka kotloloho. Ho tsoa ho Khetha Sehlomathiso sa ID, lenane le theoha, khetha ID ea sehokelo.
Haeba u khetha khetho ena, u tlameha ho lokisa routing ho TGW le CGW tse teng. Bakeng sa tlhahisoleseding, sheba ka bowena Lokisa Tsela ho Transit e Teng le Customer Gateways, leqepheng la 72.

c) Etsa e 'ngoe ea tse latelang:
· Haeba u khethile TGW e Teng le Li-Attachments tse Teng e le likhetho tseo u li ratang tsa khokahanyo, tsoela pele ho Mohato oa 5.
· Haeba u khethile VPN GW, New VPN GW + TGW e Ncha, kapa TGW E Ncha + VPN GW e Ncha, fana ka lintlha tse latelang tsa VPN:
· Customer Gateway IP: Kenya aterese ea IP ea Enterprise firewall kapa router ea hau ho theha kotopo ea IPsec e nang le heke ea AWS VPN.
· VPN Vendor: Ho tsoa lethathamong le theoha, khetha morekisi oa VPN.
Barekisi ba latelang ba VPN ha ba tšehetsoe: Barracuda, Sophos, Vyatta, le Zyxel. Ho fumana lintlha tse ling, sheba Troubleshoot VA Pod Configuration Errors, leqepheng la 80.
· Sethala: Ho tsoa lethathamong le theoha, khetha sethala.
· Software: Ho tsoa lethathamong le theoha, khetha software.

d) Bakeng sa Customer Profile saese, tlohela setlankana sa Medium sa kamehla.
Moreki profile boholo bo sebetsa ho Cisco DNA Center VA mohlala le mohlala oa "backup". Medium e hlophisa maemo ka tsela e latelang:
· Cisco DNA Center Instance: r5a.8xlarge, 32 vCPU, 256-GB RAM, le polokelo ea 4-TB.

Cisco DNA Center mabapi le AWS Deployment Guide 66

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Theha VA Pod e Ncha

Bohlokoa

Cisco DNA Center e tšehetsa feela boholo ba mohlala oa r5a.8xlarge. Liphetoho life kapa life peakanyong ena ha li tšehetsoe. Ho feta moo, boholo ba mohlala oa r5a.8xlarge ha bo tšehetsoe libakeng tse fumanehang. Ho view lethathamo la libaka tse sa tšehetsoeng tse fumanehang, bona Lintlha tsa Phatlalatso bakeng sa Cisco DNA Center VA Launchpad 1.5.0.

* Backup Instance: T3.micro, 2 vCPU, 500-GB polokelo, le 1-GB RAM

e) Bakeng sa Backup Target, khetha e 'ngoe ea likhetho tse latelang e le sebaka sa ho boloka li-backups tsa li-database tsa Cisco DNA Center le files: · Enterprise Backup (NFS): Khetha khetho ena haeba u batla hore bekapo e bolokoe ho li-server tse teng moo.
· Cloud Backup (NFS): Khetha khetho ena haeba u batla hore bekapo e bolokoe ho AWS. Ela hloko lintlha tse latelang tsa bekapo. U tla sebelisa lintlha tsena hamorao ho kena ho seva sa polokelo ea leru: · SSH IP Address:
Boema-kepe ba SSH: 22
· Tsela ea seva: /var/dnac-backup/
· Lebitso la mosebelisi: maglev
· Lekunutu: maglev1@3
· Poleloana: maglev1@
· Li-Ports tse Butsoeng: 22, 2049, 873, le 111

f) Tobetsa E latelang. Karolo ea Summary e ea hlaha.

Cisco DNA Center mabapi le AWS Deployment Guide 67

Theha VA Pod e Ncha

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

g) Review tikoloho le lintlha tsa VPN tseo u li kentseng. Haeba u khotsofetse, tobetsa Qala ho Hlophisa Tikoloho ea AWS. Bohlokoa Seta sena se nka metsotso e ka bang 20 ho qeta. Se ke oa tsoa ts'ebetsong kapa ua koala fensetere kapa tab ena. Ho seng joalo, setup se tla emisa.
h) Ka mor'a hore thepa ea motheo ea AWS e hlophisoe ka katleho, ho tla bontšoa fensetere ea AWS Infrastructure Configured.
Cisco DNA Center mabapi le AWS Deployment Guide 68

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Theha VA Pod e Ncha

Haeba tlhophiso ea meralo ea motheo ea AWS e hloleha, tsoa Cisco DNA Center VA Launchpad 'me u bone Troubleshoot the Deployment, leqepheng la 78 bakeng sa tlhahisoleseding mabapi le lisosa le tharollo e ka bang teng.

Mohato oa 6

Khoasolla tlhophiso ea sebaka file ka ho tlatsa mehato e latelang: a) Ka mor'a hore lisebelisoa tsa AWS li hlophisoe ka katleho, tobetsa Tsoela Pele ho Configuration ea On-Prem. b) Fenstereng ea Configure On-premise, tobetsa Khoasolla Configuration File. Fetela sena file ho ea hau
molaoli oa marang-rang ho lokisa kotopo ea IPsec e holim'a meaho.
Etsa bonnete ba hore molaoli oa hau oa marang-rang o lokisa kotopo e le 'ngoe feela ea IPsec.

Cisco DNA Center mabapi le AWS Deployment Guide 69

Theha VA Pod e Ncha

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Hlokomela

· Mookameli oa marang-rang a ka etsa liphetoho tse hlokahalang ho tlhophiso ena file

'me u e sebelise ho Enterprise firewall ea hau kapa router ho hlahisa lithanele tsa IPsec.

Tokiso e fanoeng file e o nolofalletsa ho hlahisa lithanele tse peli lipakeng tsa AWS le router ea Enterprise kapa firewall.

· Litharollo tse ngata tsa poraefete tsa heke li na le kotopo e le 'ngoe holimo le e' ngoe tlase. U ka ba le lithanele ka bobeli 'me u sebelise sebopeho sa marang-rang sa Equal Cost Multiple Path (ECMP). Ts'ebetso ea ECMP e nolofalletsa firewall kapa router ho sebelisa litsela tse lekanang le litšenyehelo ho fetisetsa sephethephethe sebakeng se le seng. Ho etsa sena, router kapa firewall ea hau e tlameha ho tšehetsa ECMP. Ntle le ECMP, re khothaletsa hore u boloke kotopo e le 'ngoe fatše' me u sebetse ka letsoho kapa u sebelise tharollo, joalo ka IP SLA, ho hlahisa kotopo ka mokhoa o ikhethileng.

Mohato oa 7

c) Tobetsa Tsoela pele ho Network Connectivity Check konopo.
Lekola boemo ba tlhophiso ea marang-rang ea hau ho ipapisitsoe le likhetho tsa khokahanyo ea moaho tseo u li khethileng nakong ea tlhophiso ea litšebeletso tsa AWS ka ho tlatsa e 'ngoe ea liketso tse latelang:
· Haeba u khethile VPN GW joalo ka khetho eo u e ratang ea khokahanyo ea moaho, boemo ba tlhophiso ea kotopo ea IPsec bo tla hlaha ka tsela e latelang:
· Haeba molaoli oa marang-rang a e-so lokise kotopo ea IPsec hajoale, senotlolo se hlahisoa kotopong ea IPsec:

· Kopa molaoli oa marang-rang oa hau ho netefatsa hore kotopo ea IPsec e ho Enterprise firewall kapa router e holimo. Kamora hore kotopo ea IPsec e hlahe, kotopo ea IPsec e fetoha e tala:
Cisco DNA Center mabapi le AWS Deployment Guide 70

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Theha VA Pod e Ncha

· Haeba u khethile New VPN GW + TGW e Ncha kapa TGW e teng le VPN GW e Ncha e le khetho eo u e ratang ea khokahanyo ea moaho, Cisco DNA Center VA Launchpad e hlahloba hore na VPC ea hau e hokahane le TGW, eo le eona e hokahaneng le marang-rang a hau. firewall kapa router.

Hlokomela

Hore khokahano ea firewall ea TGW-to-Enterprise kapa router e atlehe, marang-rang a hau

motsamaisi o tlameha ho eketsa tlhophiso ho firewall ea hau ea moaho kapa router.

Boemo ba khokahano bo bonts'oa ka tsela e latelang:
· Haeba khokahanyo e tsoang ho TGW ho firewall e sebakeng sa hau kapa router e so hokahane hajoale, e putsitsoe:

· Kamora hore khokahano ea TGW e thehoe ka katleho, khokahano ea TGW e tala:

· Haeba u khethile TGW e teng le Sehlomathiso se Seng Se le teng e le khetho eo u e ratang ea khokahanyo ea moaho, etsa bonnete ba hore tsela e lokisoa lipakeng tsa TGW e teng le VPC e sa tsoa hokelloa, moo Cisco DNA Center e qalisoang. Bakeng sa tlhahisoleseding, sheba ka letsoho Configure Routing on Existing Transit and Customer Gateways, leqepheng la 72. Boemo ba kgokelo bo bontshitswe, ka mokgwa o latelang: · Haeba VPC ya hao e sa hokellwa ho TGW, kgokelo ya TGW e putswa:
Cisco DNA Center mabapi le AWS Deployment Guide 71

Iketsetse ka bouena Tsela ea ho Tsamaisa Lipalangoang tse Teng le Litsela tsa Bareki

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

· Kamora hore khokahano ea TGW e thehoe ka katleho, khokahano ea TGW e tala:

Mohato oa 8

Tobetsa Eya ho Dashboard ho khutlela fenstereng ea Dashboard, moo o ka etsang li-pods tse ling tsa VA le ho laola tse seng li ntse li le teng.

Iketsetse ka bouena Tsela ea ho Tsamaisa Lipalangoang tse Teng le Litsela tsa Bareki
Haeba u khethile Khoro e Seng ea Transit le Li-Attachments tse teng e le khetho ea hau ea khokahanyo eo u e ratang ha u ntse u theha VA pod e ncha, Cisco DNA Center VA Launchpad e theha VPC ho qala Cisco DNA Center mme e hokela VPC ena ho TGW ea hau e teng. Bakeng sa Cisco DNA Center VA Launchpad ho theha khokahano ea TGW, o tlameha ho hlophisa tafole ea litsamaiso ea TGW ho AWS mme o kenye tlhophiso ea litsamaiso ho CGW ea hau e teng.
Tsamaiso
Bohato ba 1 Ho tsoa ho khomphutha ea AWS, e-ea ho ts'ebeletso ea VPC.

Cisco DNA Center mabapi le AWS Deployment Guide 72

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Iketsetse ka bouena Tsela ea ho Tsamaisa Lipalangoang tse Teng le Litsela tsa Bareki

Mohato oa 2 Mohato oa 3

Ka fenstereng e ka ho le letšehali, tlas'a Transit Gateways, khetha litafole tsa tsela ea Transit gateway ebe u khetha tafole e teng ea tsela ea TGW.
Fesetereng ea litafole tsa tsela ea Transit gateway, tobetsa konopo ea Mekhatlo ebe u tobetsa Create association.

Bohato ba 4 Fensetereng ea litafole tsa tsela ea Transit gateway, tobetsa ea Propagations tab ebe o tobetsa Theha phatlalatso.

Mohato oa 5 Mohato oa 6

Ho etsa bonnete ba hore tsela e tsitsitseng pakeng tsa VPC le VPN e sebetsang, tobetsa tab ea Litsela ebe o tobetsa Etsa tsela e tsitsitseng. Netefatsa hore tlhophiso ea router ea hau e sebakeng sa hau e nchafalitsoe ho tsamaisa sephethephethe sa marang-rang se reretsoeng mekhahlelo ea CIDR e abetsoeng CGW ea hau tikolohong ea AWS ea hau.
Bakeng sa mohlalaample: tsela kotopo-int-vpn-0b57b508d80a07291-1 10.0.0.0 255.255.0.0 192.168.44.37 200

Cisco DNA Center mabapi le AWS Deployment Guide 73

Theha Setsi se Secha sa Cisco DNA VA

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Theha Setsi se Secha sa Cisco DNA VA
Sebelisa mokhoa ona ho lokisa Cisco DNA Center VA e ncha. Tsamaiso

Mohato oa 1

Fensetereng ea Dashboard, fumana e 'ngoe ea li-pods tsa VA, 'me ka kareteng ea VA, tobetsa Create/Laola Cisco DNA Center(s).

Bohato ba 2 Ka ho Etsa / Laola Cisco DNA Center(s) fenstereng, tobetsa + Theha Setsi se Secha sa Cisco DNA.

Mohato oa 3

Kenya lintlha tse latelang:

· Cisco DNA Center Version: Ho tsoa lethathamong le theoha, khetha mofuta oa Cisco DNA Center.

· Enterprise DNS: Kenya aterese ea IP ea Enterprise DNS ea hau. Netefatsa hore Enterprise DNS ea fumaneha ho tsoa ho VA pod eo ho eona u thehang Cisco DNA Center VA.

Hlokomela

Cisco DNA Center VA Launchpad e hlahloba marang-rang a marang-rang a sebelisa UDP

port 53 e nang le aterese ea IP ea seva sa DNS eo u e kentseng.

· FQDN (Lebitso la Domain le Tšoanelehang ka ho Feletseng): Kenya aterese ea IP ea Cisco DNA Center VA joalokaha e hlophisitsoe ho seva sa hau sa DNS.

Cisco DNA Center mabapi le AWS Deployment Guide 74

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Theha Setsi se Secha sa Cisco DNA VA

· Lintlha tsa Proxy: Khetha e 'ngoe ea likhetho tse latelang tsa HTTPS tsa moemeli oa marang-rang: · Ha ho Proxy: Ha ho seva ea moemeli e sebelisoang. · Ha e na netefatso: Seva ea proxy ha e hloke netefatso. Kena URL le nomoro ea boema-kepe ea seva ea moemeli. Netefatso ea Proxy: Seva ea moemeli e hloka netefatso. Kena URL, nomoro ea boema-kepe, lebitso la mosebelisi, le lintlha tsa password bakeng sa seva ea moemeli.
· Cisco DNA Center Virtual Appliance Credentials: Kenya phasewete ea CLI eo u ka e sebelisang ho kena ho Cisco DNA Center VA. Phasewete e tlameha ho: · Tlohela tab efe kapa efe kapa dikgaohatso tsa mela · E be le bonyane ditlhaku tse robedi · E na le ditlhaku tse tswang bonyane ho tse tharo tsa mekgahlelo e latelang: · ditlhaku tse nyane (a-z) · ditlhaku tse kgolo (A-Z) · Dinomoro (0-9) · Litlhaku tse khethehileng (mohlalaample,! kapa #)

Boloka phasewete ena bakeng sa tšebeliso ea nako e tlang.

Hlokomela

Lebitso la mosebelisi ke maglev.

Mohato oa 4

Tobetsa Validate ho netefatsa seva sa Enterprise DNS le FQDN e hlophisitsoeng ho seva sa DNS.

Hlokomela

Setsing sa Cisco DNA VA Launchpad, Lokolla 1.5.0, haeba seva sa DNS, seva ea proxy, kapa FQDN

Licheke li hloleha, tsoela pele ka tlhophiso ea hau ka tsela e latelang:

· Haeba netefatso ea seva ea DNS e hloleha, u ke ke ua tsoela pele ho theha Cisco DNA Center VA ea hau. Etsa bonnete ba hore aterese ea IP ea seva sa DNS e kentsoeng e fumaneha ho tsoa ho VA pod.

· Haeba netefatso ea seva ea proxy e hloleha, o ntse o ka tsoela pele ka tlhophiso ea hau hobane le haeba lintlha tsa proxy tse fosahetseng li sa lokisoe, Cisco DNA Center VA ea sebetsa.

· Haeba netefatso ea FQDN e hloleha, o ntse o ka tsoela pele ka ho theha Cisco DNA Center VA ea hau. Leha ho le joalo, hore Cisco DNA Center VA e sebetse, o hloka ho lokisa tlhophiso ea FQDN.

Mohato oa 5 Mohato oa 6 Mohato oa 7

Review lintlha tsa tlhophiso.
Haeba u khotsofetse ke tlhophiso, tobetsa Qala Cisco DNA Center Configuration. Ka konopo ea Download PEM File dialog box, tobetsa Download PEM Key. Haeba o tobetsa Hlakola, o khutlisetsoa fensetereng ea Kakaretso.
Bohlokoa Hobane senotlolo sa PEM ha sea bolokoa akhaonteng ea hau ea AWS, u hloka ho e jarolla. U hloka senotlolo sa PEM ho fihlella Cisco DNA Center VA e ntseng e bōptjoa.

Cisco DNA Center mabapi le AWS Deployment Guide 75

Theha Setsi se Secha sa Cisco DNA VA

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Ka mor'a hore u khoasolle PEM file, lebokose la puisano le koala, 'me Cisco DNA Center VA Launchpad e qala ho lokisa tikoloho ea Cisco DNA Center.
Kamora hore tikoloho e lokisoe, lihoete tsa Cisco DNA Center. Qalong, Cisco DNA Center VA Launchpad e bonts'a selikalikoe sa ka ntle ka bohlooho. Ha Port 2222 e netefalitsoe, setšoantšo se fetoha amber. Ha Port 443 e netefalitsoe, setšoantšo se fetoha se setala.
Cisco DNA Center mabapi le AWS Deployment Guide 76

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Theha Setsi se Secha sa Cisco DNA VA

Hlokomela

Ts'ebetso ena e nka metsotso e 45-60. Se ke oa tsoa ts'ebetsong kapa ua koala fensetere kapa tab ena.

Ho seng joalo, setup se tla emisa.

Ka mor'a hore Cisco DNA Center e phethe ho qala, tlhophiso e felile. U ka khona hona joale view lintlha tsa hau tsa Cisco DNA Center VA.

Haeba tlhophiso ea Cisco DNA Center e hloleha, tsoa ho "Cre/Manage Cisco DNA Center(s)" fenstereng. Bakeng sa tlhahisoleseling, sheba Tharollo ea Tharollo ea Phaliso, leqepheng la 78
Cisco DNA Center mabapi le AWS Deployment Guide 77

Tharollo ea Mathata a Phahamiso

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Mohato 8 Ho khutlela ho Thepa/Laola Cisco DNA Center(s) fenstere, tobetsa Eya ho Laola Cisco DNA Center(s).
Tharollo ea Mathata a Phahamiso
Cisco DNA Center VA Launchpad e etselitsoe ho u thusa ho hlophisa Cisco DNA Center ho AWS ka ho kenella ho fokolang. Karolo ena e u bontša mokhoa oa ho rarolla mathata a tloaelehileng nakong ea ho romelloa ha Cisco DNA Center ho AWS.
Hlokomela Re khothaletsa khahlanong le ho etsa liphetoho tsa matsoho ka Cisco DNA Center VA Launchpad ka AWS console, hobane e ka lebisa litabeng tseo Cisco DNA Center VA Launchpad e ke keng ea li rarolla.
Haeba u na le mathata afe kapa afe a sa rarolloang karolong ena, ikopanye le Cisco TAC.
Ho rarolla liphoso tsa Docker
Haeba phoso, boema-kepe bo se bo ntse bo sebelisoa, bo bonts'a ha u ntse u tsamaisa litšoantšo tsa li-docker bakeng sa Cisco DNA Center VA Launchpad, u ka e rarolla ka litharollo tse latelang tse ka khonehang:
Cisco DNA Center mabapi le AWS Deployment Guide 78

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Rarolla mathata a ho Kena

Phoso

Tharollo e ka khonehang

Haeba u fumana phoso e latelang ha u le Docker, tsamaisa sesebelisoa sa seva:

ho tsamaisa sesebelisoa sa seva:

docker matha -d -p :8080 -e

boema-kepe bo se bo ntse bo sebelisoa

SECRET_KEY= -name server -pull=always

dockerhub.cisco.com/maglev-docker/server:xxx-latest

Hlokomela

U ka sebelisa sebaka sefe kapa sefe sa seva se fumanehang.

Ha o ntse o sebelisa sesebelisoa sa seva, tsamaisa sesebelisoa sa moreki:

docker run -d -p 90:80 -e REACT_APP_API_URL=http://localhost: -name client -pull=always dockerhub.cisco.com/maglevdocker/client:x.x.x

Hlokomela

U tlameha ho sebelisa nomoro ea boema-kepe e tšoanang le eo u e sebelisitseng ho tsamaisa sesebelisoa sa seva.

Haeba u fumana phoso e latelang ha u ntse u le Docker, tsamaisa sesebelisoa sa moreki:

ho tsamaisa sesebelisoa sa bareki:

docker matha -d -p :80 -name client -pull=kamehla

boema-kepe bo se bo ntse bo sebelisoa

dockerhub.cisco.com/maglev-docker/client:xxx

Hlokomela

U ka sebelisa sebaka sefe kapa sefe sa seva se fumanehang.

Rarolla mathata a ho Kena

Ha u kena ho Cisco DNA Center VA Launchpad, u ka 'na ua kopana le phoso ea ho kena. O ka rarolla liphoso tse tloaelehileng tsa ho kena ka litharollo tse latelang:

Phoso Lintlha tse fosahetseng.

Tharollo e ka khonehang Kenya lintlha tsa hau hape 'me u hlahlobe hore li kentsoe ka nepo.

Ha u na phihlello e lekaneng. Bakeng sa basebelisi ba tsamaiso, netefatsa hore ak'haonte ea hau e na le tumello ea ho kena ho motsamaisi. Bakeng sa basebelisi, netefatsa hore molaoli oa hau o u kentse sehlopheng sa basebelisi ba CiscoDNACenter.

Ts'ebetso ea ho hlakola e ntse e tsoela pele, ka kopo leka hape kamora nako.

Haeba mosebelisi oa admin a hlakola -cisco-dna-center global bakete ho tsoa akhaonteng ea hau ea AWS mme a leka ho kena, phoso ena ea ho kena e ka etsahala. Ema metsotso e 5 hore ho hlakola ho phethe.

Tharolla bothata ho Cisco DNA Center VA Launchpad Phoso
Ho Cisco DNA Center VA Launchpad e amohetsoeng, ha o qala tlhahlobo ea sesosa sa motso (RCA), Sekhahla se fetang phoso se ka etsahala. Haeba phoso ena e etsahala, banner e latelang e tla hlaha:

Cisco DNA Center mabapi le AWS Deployment Guide 79

Rarolla Mathata a Libaka

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Phoso ena banner e hlaha ha palo e kholo ea likopo tsa API (10,000 ka motsotsoana) e amoheloa sebakeng se itseng. Ho rarolla bothata bona, eketsa moeli ho AWS ka tšebeletso ea Quotas ea Tšebeletso, kapa leka ho sebetsa hape ka mor'a metsotsoana e seng mekae.

Rarolla Mathata a Libaka

O ka rarolla mathata a sebaka ka litharollo tse latelang tse ka khonehang:

Hlahisa

Tharollo e ka khonehang

Ha u ntse u theha VA pod e ncha Etsa bonnete ba hore ts'ebetso efe kapa efe ea matsoho ho khomphutha ea AWS e phethiloe ka katleho 'me u leke

sebakeng, Cisco DNA Center VA

mohato ona hape. Haeba bothata bo ntse bo tsoela pele, ikopanye le Cisco TAC.

Launchpad e bonts'a molaetsa oa phoso kapa skrineng ea hoama ka nako e fetang 5

Hlokomela

metsotso mme ha e hlahise a

molaetsa o ntseng o tsoela pele.

Ho qoba likhohlano tse joalo, re khothaletsa hore o se ke oa etsa liphetoho tsa letsoho ho li-pods tsa VA. Sebakeng seo, sebelisa Cisco DNA Center VA Launchpad bakeng sa liketso tsohle.

Setupo sa sebaka sa hau se hloleha 'me Cisco DNA Bula nyeoe le AWS 'me u kope hore ba hlakole lisebelisoa tse hlolehileng ho backend. Center VA Launchpad e bonts'a Bucket [lebitso] ha ea ka ea tsitsisa phoso e ts'oanang le e latelang:

Ho rarolla liphoso tsa VA Pod Configuration
O ka rarolla liphoso tsa tlhophiso ea VA pod ka litharollo tse latelang tse ka khonehang:

Cisco DNA Center mabapi le AWS Deployment Guide 80

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Ho rarolla liphoso tsa VA Pod Configuration

Phoso + Theha konopo ea VA Pod e koetsoe

Tharollo e ka khonehang
Tsamaisa sesupa sa hau holim'a konopo e koetsoeng ho ithuta ho eketsehileng mabapi le hore na hobaneng e koetsoe.
Lintlha tse latelang ke mabaka a etsang hore u se khone ho theha VA pod e ncha:
· U fihletse moeli oa palo ea litšebeletso tsa VPC: Sebakeng se seng le se seng, moeli o behiloe ke molaoli oa hau oa AWS oa hore na ho ka etsoa li-VPC tse kae. Ka tloaelo, ho na le li-VPC tse 5 sebakeng ka seng, 'me VPC ka' ngoe e ka ba le VA pod e le 'ngoe feela. Leha ho le joalo, u ka 'na ua batla ho ikopanya le mookameli oa AWS bakeng sa nomoro e nepahetseng.
Hlokomela hore VPC efe kapa efe e sebelisetsoang lisebelisoa tse kantle ho Cisco DNA Center VA Launchpad e kenya letsoho moeling ona. Bakeng sa mohlalaample, haeba ak'haonte ea hau ea AWS e na le moeli oa li-VPC tse hlano 'me tse peli li ntse li sebelisoa, u ka etsa li-pods tse ling tse tharo feela sebakeng se khethiloeng.
Ho theha li-pods tse ncha tsa VA, kopa molaoli oa hau oa AWS ho fetola moeli kapa ho hlakola tse ling tsa li-pods kapa VPC tsa hau tse teng akhaonteng ea hau ea AWS.
· Ho hlakolwa ha Pod ho ntse ho tswela pele: Ho hlakolwa ha VA pod ea ho qetela sebakeng sena ho ntse ho tsoela pele. Ema metsotso e seng mekae, ebe u leka hape ho theha VA pod e ncha.

AMI ID ea sebaka sena ha e fumanehe molemong oa hau.

Ha o tobetsa + Theha VA Pod e Ncha, Cisco DNA Center VA Launchpad e netefatsa ID ea AMI bakeng sa sebaka seo u se khethileng.
Haeba u kopana le phoso ena, netefatso e hlolehile 'me u ka se khone ho theha pod e ncha sebakeng sena. Ikopanye le Cisco TAC ho o thusa ho rarolla bothata.

Tokiso ea hau ea VPN ha e sebetse. Ha u lokisa VA pod, barekisi ba latelang ba VPN ha ba tšehetsoe:

Boemong bona, u ke ke ua e ntlafatsa, kahoo ka kopo hlakola mohlala 'me u thehe

· Barracuda

e ncha.

· Sophos

· Vyatta

· Zyxel

Haeba u sebelisa morekisi oa VPN ea sa tšehetsoeng, Cisco DNA Center VA Launchpad e bonts'a molaetsa o latelang oa phoso:

CustomerGateway e nang le mofuta

U ka 'na ua kopana le phoso ena ha u leka ho theha VA pod e fetang e le' ngoe ka nako.

“ipsec.1”, ip-aterese “xx.xx.xx.xx”, le bgp-asn “65000” e se e le teng (RequestToken:

Ho rarolla phoso ena, hlakola VA pod e hlōlehileng ebe u e etsa hape. Netefatsa hore o theha pod e le 'ngoe feela ea VA ka nako.

f78ad45d-b4f8-d02b-9040-f29e5f5f86cf,

HandlerErrorCode: AlreadyExists)

Sebopeho sa AWS se Hlolehile.

Haeba tlhophiso ea AWS e hloleha, khutlela fenstereng ea Dashboard 'me u thehe VA pod e ncha. Ho fumana lintlha tse ling, sheba Theha VA Pod e Ncha, leqepheng la 63.

Hlokomela

O ka hlakola pod ea VA e hlolehileng ho e lokisa.

Cisco DNA Center mabapi le AWS Deployment Guide 81

Rarolla Phoso ea Khokahano ea Marang-rang

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Phoso
AWS Configuration e hloleha ha o hlophisa VA Pod

Tharollo e ka khonehang

Etsa bonnete ba hore ts'ebetso efe kapa efe ea letsoho ho khomphutha ea AWS e phethiloe ka katleho 'me u leke mohato ona hape. Haeba bothata bo ntse bo tsoela pele, ikopanye le Cisco TAC.

Hlokomela

Ho qoba likhohlano tse joalo, re khothaletsa hore u se ke ua etsa bukana leha e le efe

liphetoho ho VA pods. Sebakeng seo, sebelisa Cisco DNA Center VA Launchpad

bakeng sa diketso tsohle.

Ho hlakola VA Pod ho hlolehile

Etsa bonnete ba hore ts'ebetso efe kapa efe ea letsoho ho khomphutha ea AWS e phethiloe ka katleho 'me u leke mohato ona hape. Haeba bothata bo ntse bo tsoela pele, ikopanye le Cisco TAC.

Hlokomela

Ho qoba likhohlano tse joalo, re khothaletsa hore u se ke ua etsa bukana leha e le efe

liphetoho ho VA pods. Sebakeng seo, sebelisa Cisco DNA Center VA Launchpad

bakeng sa diketso tsohle.

Mohloli oo o lekang ho o hlakola Haeba o kopana le phoso ena ha o ntse o hlakola VA pod, ikopanye le Cisco TAC. e fetotsoe haufinyane. Ka kopo qala leqephe hape ho fumana liphetoho tsa morao-rao 'me u leke hape.

Rarolla Phoso ea Khokahano ea Marang-rang
Ha u ntse u theha VA pod, haeba kotopo ea IPsec kapa khokahano ea TGW e sa thehoa, etsa bonnete ba hore kotopo e holim'a firewall kapa router ea hau.
Haeba kotopo ho tloha VA pod ho ea TWG e le tala 'me kotopo ho tloha TWG ho ea CGW e le bohlooho, etsa bonnete ba hore:

· U rometse tlhophiso e nepahetseng file ho molaoli oa marang-rang oa hau. · Mookameli oa marang-rang oa hau o entse liphetoho tse hlokahalang tlhophisong file. · Mookameli oa marang-rang oa hau o qetile ho sebelisa peakanyo ena ho Enterprise firewall kapa router ea hau. · Haeba u khethile TGW e Teng le Li-Attachments tse teng e le khetho ea hau ea khokahano ea marang-rang, etsa
o na le bonnete ba hore o latetse ka nepo Mokhoa oa ho Hlophisa ka Bowena ho Transit e Teng le Customer Gateways, leqepheng la 72.
Cisco DNA Center mabapi le AWS Deployment Guide 82

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Bothata ba Cisco DNA Center VA Configuration Liphoso

Bothata ba Cisco DNA Center VA Configuration Liphoso

O ka rarolla liphoso tse etsahalang ha o ntse o hlophisa Cisco DNA Center VA ka litharollo tse latelang tse ka khonehang:

Phoso ea ho Seta Tikoloho e hlolehile

Tharollo e ka khonehang 1. Ho Cisco DNA Center VA Launchpad, khutlela ho Create/Laola Cisco DNA Center(s)
pane.
2. Hlakola Cisco DNA Center VA.
3. Etsa Cisco DNA Center VA e ncha.

Hlakola E hlolehile

Haeba ho hlakolwa ha Cisco DNA Center VA ho hloleha, ikopanye le Cisco TAC.

Ho rarolla Liphoso tsa Concurrency

O rarolla liphoso tsa concurrency ka litharollo tse latelang tse ka khonehang:

Phoso

Tharollo e ka khonehang

Ha o khone ho hlakola Pod O ke ke oa hlakola karolo, joalo ka VA pod kapa Cisco DNA Center VA, eo mosebelisi e mong a e entseng.

kapa Setsi sa DNA sa Cisco ha ketso e fapaneng e ntse e tsoela pele ho karolo. Kamora hore ketso e phethe, uena kapa motho ofe kapa ofe

e entsoeng ke mosebelisi e mong e ka hlakola karolo eo.

mosebedisi.

Bakeng sa mohlalaample, u ke ke ua hlakola VA pod kapa Cisco DNA Center VA ha e ntse e le ho efe kapa efe ea tse latelang

mekhoa kapa e re:

· Mosebelisi e mong o mothating oa ho theha Cisco DNA Center VA.

· Mosebelisi e mong o mothating oa ho hlakola Cisco DNA Center VA.

· Cisco DNA Center VA e boemong bo hlōlehileng ka mor'a teko ea ho hlakola.

Boemo ba Pod bo na le Haeba u lekile ho hlakola VA pod, ak'haonte ea mantlha ea mosebelisi e entseng VA pod e kanna ea fetoha haufinyane. ketso e ts'oanang. Taba ena ea concurrency e fetola boemo ba VA pod e khethiloeng.
Ho view boemo bo ntlafalitsoeng ba VA pod, tobetsa Refresh.

Rarolla Mathata a Mang a Tšebeliso
O ka rarolla mathata a mang a hlahang ha o ntse o tsamaisa Cisco DNA Center VA ho AWS ka litharollo tse latelang tse ka khonehang:

Cisco DNA Center mabapi le AWS Deployment Guide 83

Rarolla Mathata a Mang a Tšebeliso

Tsamaisa U Sebelisa Setsi sa Cisco DNA VA Launchpad

Hlahisa

Mabaka le Litharollo Tse ka khonehang

Lisebelisoa li tala, empa Mehato e meng, u ka tsoela pele haeba lisebelisoa tsohle li se li atlehile. Ho etsa bonnete ba hore konopo ea "Proceed" e koetsoe. botšepehi ba ho romelloa, konopo ea Tsoela pele e lula e holofetse ho fihlela setup e phethehile
'me lisebelisoa tsohle li hlophisitsoe le ho kenngoa.

Ka linako tse ling, skrine e bontša hore lisebelisoa li thehiloe ka katleho, empa konopo ea Proceed e ntse e holofetse. Tabeng ena, o hloka ho ema metsotsoana e seng mekae hore lisebelisoa tse ling li laole. Ka mor'a hore lisebelisoa tsohle li hlophisoe le ho laeloa, konopo ea Proceed e ea sebetsa.

Ho hloleha ha ho tsamaisoa li-pods tse ngata tsa VA tse nang le CGW e tšoanang sebakeng se le seng.

Netefatsa hore: · CGW IP address ke IP address ea Enterprise firewall kapa router ea hau. · Aterese ea IP ea CGW ke aterese e nepahetseng ea sechaba.

· Aterese ea IP ea CGW ha e so sebelisoe bakeng sa pod e 'ngoe ea VA sebakeng se le seng. Hona joale, sebakeng se seng le se seng, li-pods tse ngata tsa VA li ke ke tsa ba le aterese e tšoanang ea CGW IP. Ho sebelisa aterese ea IP e tšoanang ea CGW bakeng sa pod ea VA e fetang e le 'ngoe, sebelisa VA pod e 'ngoe le e 'ngoe sebakeng se fapaneng.

Ha e khone ho SSH kapa ho ping Cisco DNA Center VA.
Seboka se felile

Ha o khone ho hokahanya ka SSH kapa ho ping Cisco DNA Center VA, le hoja kotopo e phahame 'me boemo ba kopo bo phethehile (botala). Taba ena e kanna ea hlaha haeba CGW e sebakeng se hlophisitsoeng e sa lokisoa hantle. Netefatsa tlhophiso ea CGW 'me u leke hape.
Haeba nako ea hau e fela ha ts'ebetso e ntse e tsoela pele, joalo ka ho qala RCA, ts'ebetso e kanna ea fela ka tšohanyetso mme ea hlahisa tsebiso e latelang:

Haeba nako ea hau e felile, kena hape 'me u qale ts'ebetso hape.
Cisco DNA Center mabapi le AWS Deployment Guide 84

KE P A R T
Tsamaisa U sebelisa AWS CloudFormation
· Kenya Cisco DNA Center 2.3.5.3 ho AWS U sebelisa AWS CloudFormation, leqepheng la 87

4 KHAOLO
Kenya Cisco DNA Center 2.3.5.3 ho AWS U Sebelisa AWS CloudFormation
· Sebelisa Setsi sa Cisco DNA ho AWS ka letsoho U sebelisa AWS CloudFormation, leqepheng la 87 · Ho tsamaisoa ka Manual Ho Sebelisa AWS CloudFormation Workflow, leqepheng la 87 · Litlhoko tse hlokahalang bakeng sa ho tsamaisoa ka letsoho ho sebelisa AWS CloudFormation, leqepheng la 88 · Deploy Cisco DNA Center on AWS Cloud Formation, AWS Manually leqepheng la 93 · Netefatsa Mosebetsi oa Phano, leqepheng la 98
Tsamaisa Cisco DNA Center ho AWS U sebelisa AWS CloudFormation
Haeba u tloaelane le tsamaiso ea AWS, u na le khetho ea ho sebelisa Cisco DNA Center AMI ka letsoho ho akhaonto ea hau ea AWS u sebelisa AWS CloudFormation. Ka mokhoa ona, o hloka ho theha lisebelisoa tsa AWS, ho theha kotopo ea VPN, le ho tsamaisa Cisco DNA Center.
Ho tsamaisoa ka letsoho ho Sebelisa AWS CloudFormation Workflow
Ho tsamaisa Cisco DNA Center ho AWS ho sebelisa mokhoa ona, latela mehato ena e phahameng: 1. Kopana le lintho tse hlokahalang. Sheba Litlhoko tse hlokahalang bakeng sa ho tsamaisoa ka letsoho ho sebelisa AWS CloudFormation, leqepheng la
88. 2. (Ho ikhethela) Kopanya Cisco ISE ho AWS le Cisco DNA Center VA ea hau hammoho. Sheba Tataiso bakeng sa
Ho kopanya Cisco ISE ho AWS le Cisco DNA Center ho AWS, leqepheng la 4. 3. Kenya Cisco DNA Center ho AWS u sebelisa AWS CloudFormation. Sheba Sebelisa Setsi sa DNA sa Cisco ho
AWS Ka Botso e Sebelisa AWS CloudFormation, leqepheng la 93. 4. Etsa bonnete ba hore tlhophiso ea tikoloho ea hau le tlhophiso ea Cisco DNA Center VA li kentsoe ka nepo.
le ho sebetsa kamoo ho neng ho lebelletsoe. Sheba Netefatsa Mosebetsi oa Phano, leqepheng la 98.
Cisco DNA Center mabapi le AWS Deployment Guide 87

Litlhoko tse hlokahalang bakeng sa ho tsamaisoa ka letsoho ho sebelisa AWS CloudFormation

Tsamaisa U sebelisa AWS CloudFormation

Litlhoko tse hlokahalang bakeng sa ho tsamaisoa ka letsoho ho sebelisa AWS CloudFormation
Pele o ka qala ho tsamaisa Cisco DNA Center ho AWS, etsa bonnete ba hore litlhoko tse latelang tsa marang-rang, AWS, le Cisco DNA Center li fihletsoe:
Tikoloho ea Marang-rang U tlameha ho ba le lintlha tse latelang mabapi le tikoloho ea marang-rang ea hau.
· Aterese ea IP ea seva sa DNS · (Boikhethelo) Lintlha tsa Proxy tsa Netweke ea HTTPS
Tikoloho ea AWS O tlameha ho fihlela litlhoko tse latelang tsa tikoloho ea AWS:
· U na le mangolo a netefalitsoeng a ho fihlella ak'haonte ea hau ea AWS.
Hlokomela Re khothaletsa hore ak'haonte ea hau ea AWS e be subaccount (akhaonto ea ngoana) ho boloka boikemelo ba lisebelisoa le ho itšehla thajana. Subaccount e netefatsa hore phepelo ea Cisco DNA Center ha e ame lisebelisoa tsa hau tse teng.
· Bohlokoa: Ak'haonte ea hau ea AWS e ngolisitsoe ho Cisco DNA Center Virtual Appliance - Tlisa License ea Hao (BYOL) 'Maraka oa AWS.
· O tlameha ho ba le tumello ea phihlello ea motsamaisi bakeng sa akhaonto ea hau ea AWS. (Ho AWS, lebitso la pholisi le hlahisoa e le AdministratorAccess.)

· Lisebelisoa le litšebeletso tse latelang li tlameha ho hlongoa ho AWS:
Cisco DNA Center mabapi le AWS Deployment Guide 88

Tsamaisa U sebelisa AWS CloudFormation

Litlhoko tse hlokahalang bakeng sa ho tsamaisoa ka letsoho ho sebelisa AWS CloudFormation

· VPC: Mofuta o khothaletsoang oa CIDR ke /25. Ho IPv4 CIDR notation, octet ea ho qetela (octet ea bone) ea aterese ea IP e ka ba le boleng ba 0 kapa 128 feela.ample: x.x.x.0 kapa x.x.x.128.
· Subnets: Karolo e khothaletsoang ea subnet ke /28 mme ha ea lokela ho fetana le subnet ea hau ea khoebo.
· Litafole tsa Tsela: Etsa bonnete ba hore VPC subnet ea hau e lumelletsoe ho buisana le netweke ea hau ea Khoebo ka VPN GW kapa TGW ea hau.
· Lihlopha tsa Ts'ireletso: Bakeng sa puisano lipakeng tsa Cisco DNA Center VA ea hau ho AWS le lisebelisoa tse ho netweke ea Enterprise ea hau, sehlopha sa ts'ireletso sa AWS seo u se khomaretseng Cisco DNA Center VA ea hau ho AWS se tlameha ho lumella likou tse latelang:
· TCP 22, 80, 443, 9991, 25103, 32626
· UDP 123, 162, 514, 6007, 21730
U tlameha hape ho lokisa likou tse kenang le tse tsoang. Ho lokisa li-ports tse kenang, sheba setšoantšo se latelang:

Ho lokisa likou tse tsoang, sheba setšoantšo se latelang:
Cisco DNA Center mabapi le AWS Deployment Guide 89

Litlhoko tse hlokahalang bakeng sa ho tsamaisoa ka letsoho ho sebelisa AWS CloudFormation

Tsamaisa U sebelisa AWS CloudFormation

Boema-kepe - TCP 22, 80, 443
EA-123-UDP

Tafole e latelang e thathamisa tlhahisoleseling mabapi le likou tseo Cisco DNA Center e li sebelisang, lits'ebeletso tse buisanang le likou tsena, sepheo sa sesebelisoa sa ho li sebelisa, le ketso e khothaletsoang.

Lebitso la Tšebeletso ICMP

Morero
Lisebelisoa li sebelisa melaetsa ea ICMP ho buisana ka litaba tsa khokahano ea marang-rang.

Ketso e khothalelitsoeng Noble ICMP.

HTTPS, SFTP, HTTP

Khoutu ea litšoantšo tsa software ho tsoa ho Cisco Etsa bonnete ba hore melao ea firewall e fokotsa ho

Setsi sa DNA ka HTTPS:443, mohloli oa IP oa mabotho kapa marang-rang

SFTP:22, HTTP:80.

lisebelisoa tse lumelletsoeng ho fihlella Cisco DNA

Khoasolla setifikeiti ho tsoa Setsing sa Cisco DNA likoung tsena.

Setsi ka HTTPS:443, HTTP:80 Hlokomela

Ha re khothaletse

(Cisco 9800 Wireless Controller, PnP),

tshebediso ya HTTP 80. Sebelisa

Sensor/Telemetry.

HTTPS 443 kae kapa kae

Hlokomela

Thibela port 80 haeba u sa etse joalo

ho khoneha.

sebelisa Plug le Play (PnP),

Setšoantšo sa Software

Tsamaiso (SWIM),

Ketsahalo e kenyelelitsoeng

Tsamaiso (EEM),

ngoliso ea sesebelisoa, kapa

Cisco 9800 Wireless

Molaoli.

NTP

Lisebelisoa li sebelisa NTP bakeng sa nako

Boema-kepe bo tlameha ho buloa ho lumella lisebelisoa ho

Kamahanyo.

amahanya nako.

Cisco DNA Center mabapi le AWS Deployment Guide 90

Tsamaisa U sebelisa AWS CloudFormation

Litlhoko tse hlokahalang bakeng sa ho tsamaisoa ka letsoho ho sebelisa AWS CloudFormation

Boema-kepe ba UDP 162 UDP 514 UDP 6007 TCP 9991
UDP 21730 TCP 25103
TCP 32626

Lebitso la Tšebeletso SNMP

Morero
Cisco DNA Center e amohela telemetry ea marang-rang ea SNMP ho tsoa lisebelisoa.

Ketso e khothalelitsoeng
Boema-kepe bo tlameha ho buloa bakeng sa tlhahlobo ea data e thehiloeng ho SNMP.

Syslog

Cisco DNA Center e amohela syslog Port e tlameha ho buloa bakeng sa analytics ea data

melaetsa e tsoang ho lisebelisoa.

e thehiloeng ho syslog.

NetFlow

Cisco DNA Center e amohela NetFlow Port e tlameha ho buloa bakeng sa analytics ea data

telemetry ea marang-rang ho tsoa lisebelisoa.

e thehiloe ho NetFlow.

Sebaka se Sephara sa Bonjour Service

Cisco DNA Center e amohela Multicast Port e tlameha ho buloa Setsing sa Sephethephethe sa Cisco DNA Domain Name System (mDNS) haeba sesebelisoa sa Bonjour se tsoa ho Service Discovery Gateway e kentsoe. (SDG) baemeli ba sebelisang Bonjour Control Protocol.

Ts'ebeletso ea Ponahalo ea Kopo ea Kopo ea Ponahalo ea CBAR Port e tlameha ho buloa ha CBAR e

Tshebeletso

puisano ea sesebelisoa.

bulela sesebelisoa sa marang-rang.

Cisco 9800 Wireless E sebelisoa bakeng sa telemetry. Controller le Cisco Catalyst 9000 li-switches tse nang le telemetry ea ho phallela e nolofalitsoe

Boema-kepe bo tlameha ho buloa bakeng sa likhokahano tsa telemetry lipakeng tsa Cisco DNA Center le lisebelisoa tsa Catalyst 9000.

'Mokelli oa Intelligent Capture (gRPC).

E sebelisetsoa ho amohela lipalo-palo tsa sephethephethe le Port e tlameha ho buloa haeba u sebelisa pakete - hapa lintlha tse sebelisoang ke Cisco Cisco DNA Assurance Intelligent DNA Assurance Intelligent Capture Capture (gRPC). (gRPC) tšobotsi.

· VPN Gateway (VPN GW) kapa Transit Gateway (TGW): U tlameha ho ba le khokahanyo e teng ho netweke ea hau ea Enterprise, e leng Customer Gateway (CGW) ea hau.
Bakeng sa khokahanyo ea hau e teng ho tloha CGW ho ea ho AWS, etsa bonnete ba hore likou tse nepahetseng li bulehile bakeng sa phallo ea sephethephethe ho ea le ho tloha Cisco DNA Center VA, ho sa tsotellehe hore na u li bula u sebelisa li-firewall setting kapa proxy gateway. Bakeng sa tlhahisoleseding e eketsehileng mabapi le likou tse tsebahalang tsa lits'ebeletso tsa marang-rang tseo sesebelisoa se se sebelisang, bona "Li-Ports tse Hlokehang tsa Marang-rang" khaolong ea "Rala ho Tsamaisa" ea Cisco DNA Center First-Generation Appliance Installation Guide, Release 2.3.5.
· Khokahano ea VPN ea Site-to-Site: U ka sebelisa li-Attachments tsa TGW le litafole tsa Tsela tsa TGW.

· Tikoloho ea hau ea AWS e tlameha ho hlophisoa le e 'ngoe ea libaka tse latelang: · ap-Northeast-1 (Tokyo) · ap-northeast-2 (Seoul) · ap-south-1 (Mumbai) · ap-south-bochabela-1 (Singapore) · ap-southeast-2 (Sydney) · ca-central-1 (Canada)

Cisco DNA Center mabapi le AWS Deployment Guide 91

Litlhoko tse hlokahalang bakeng sa ho tsamaisoa ka letsoho ho sebelisa AWS CloudFormation

Tsamaisa U sebelisa AWS CloudFormation

· eu-central-1 (Frankfurt) · eu-south-1 (Milan) · eu-west-1 (Ireland) · eu-west-2 (London) · eu-west-3 (Paris) · us-east- 1 (Virginia) · rona-bochabela-2 (Ohio) · rona-bophirimela-1 (N. California) · rona-bophirimela-2 (Oregon)
· Haeba u batla ho nolofalletsa basebelisi ba bangata ba IAM ba nang le bokhoni ba ho lokisa Cisco DNA Center u sebelisa mokhoa o tšoanang oa ho seta tikoloho, u lokela ho theha sehlopha se nang le melaoana e latelang ebe u kenya basebelisi ba hlokahalang sehlopheng seo: · IAMReadOnlyAccess · AmazonEC2FullAccess · AWSCloudFormationFullAccess
· Boholo ba mohlala oa Cisco DNA Center bo tlameha ho fihlela litlhoko tse latelang tsa mohlodi: · r5a.8xlarge

Bohlokoa

Cisco DNA Center e tšehetsa feela boholo ba mohlala oa r5a.8xlarge. Liphetoho life kapa life peakanyong ena ha li tšehetsoe. Ho feta moo, boholo ba mohlala oa r5a.8xlarge ha bo tšehetsoe libakeng tse fumanehang. Ho view lethathamo la libaka tse sa tšehetsoeng tse fumanehang, bona Lintlha tsa Phatlalatso bakeng sa Cisco DNA Center VA Launchpad.

· 32 vCPU · 256-GB RAM · 4-TB polokelo · 2500 disk input/output operations ka motsotsoana (IOPS) · 180 MBps disk bandwidth

· O na le tlhahisoleseding e latelang ya AWS letsohong: · Subnet ID · Security Group ID · Keypair ID · Lebitso la tikoloho

Cisco DNA Center mabapi le AWS Deployment Guide 92

Tsamaisa U sebelisa AWS CloudFormation

Tsamaisa Cisco DNA Center ho AWS U sebelisa AWS CloudFormation

· Peheletso ea CIDR
Tikoloho ea Setsi sa Cisco DNA U tlameha ho fihlela litlhoko tse latelang bakeng sa tikoloho ea Cisco DNA Center ea hau:
· U na le phihlello ea Cisco DNA Center GUI. · U na le lintlha tse latelang tsa Cisco DNA Center letsohong:
· Litlhophiso tsa NTP · Setting ea kamehla ea heke · password ea CLI · username le password ea UI · Static IP · FQDN bakeng sa Cisco DNA Center VA IP address
Tsamaisa Cisco DNA Center ho AWS U sebelisa AWS CloudFormation
U ka sebelisa Cisco DNA Center ho AWS u sebelisa AWS CloudFormation. Setšoantšo se fanoeng sa AWS CloudFormation se na le lintlha tse nepahetseng bakeng sa li-parameter tsohle tse hlokahalang. E le karolo ea ts'ebetso ea phepelo, template ea AWS CloudFormation bakeng sa mohlala oa Cisco DNA Center e iketsetsa dashboard e latelang ea Amazon CloudWatch le lialamo:
· DNACDashboard (VA_Instance_MonitoringBoard): Dashboard ena e fana ka tlhaiso-leseling mabapi le mohlala oa Cisco DNA Center CPUUtilization, NetworkIn, NetworkOut, DiskReadOps, le DiskWriteOps.
· DnacCPUAlarm: Ha ts'ebeliso ea CPU e kholo ho feta kapa e lekana le 80% bakeng sa liketsahalo tsa Cisco DNA Center, alamo ena e ea hlahisoa. Boemo ba kamehla ba ts'ebeliso ea CPU ke 80%.
· DnacSystemStatusAlarm: Haeba tlhahlobo ea boemo ba tsamaiso e hlōleha bakeng sa mohlala oa Cisco DNA Center, mokhoa oa ho hlaphoheloa o qala. Boemo ba kamehla ba ho hlahloba boemo ba sistimi ke 0.
Pele o qala · O na le tikoloho ea AWS e hlophisitsoeng ka likarolo tsohle tse hlokahalang. Bakeng sa tlhahisoleseding, bona Litlhoko tse hlokahalang bakeng sa ho tsamaisoa ka letsoho ho sebelisa AWS CloudFormation, leqepheng la 88. · Tunnel ea VPN e phahame.

Cisco DNA Center mabapi le AWS Deployment Guide 93

Tsamaisa Cisco DNA Center ho AWS U sebelisa AWS CloudFormation

Tsamaisa U sebelisa AWS CloudFormation

Mohato oa 1
Mohato oa 2 Mohato oa 3 Mohato oa 4

Tsamaiso

Ho itšetlehile ka hore na file u batla ho thowuni, etsa e 'ngoe ea tse latelang: · Eya ho Cisco Software Download sebaka le thowuni tse latelang file:
DNA_Center_VA_InstanceLaunch_CFT-1.6.0.tar.gz
· Eya ho Cisco Software Download sebaka le thowuni tse latelang file:
DNA_Center_VA_InstanceLaunch_CFT-1.5.0.tar.gz

Ka bobeli TAR files e na le template ea AWS CloudFormation eo u e sebelisang ho etsa mohlala oa Cisco DNA Center VA ea hau. Setšoantšo sa AWS CloudFormation se na le li-AMI tse 'maloa, e' ngoe le e 'ngoe e na le ID ea AMI e fapaneng e thehiloeng sebakeng se itseng. Sebelisa AMI ID e nepahetseng sebakeng sa heno:

Sebaka sa ap-leboea-bochabela-1 (Tokyo)

Cisco DNA Center AMI ID ami-0e15eb31bcb994472

ap-leboea-bochabela-2 (Seoul)

ami-043e1b9f3ccace4b2

ap-south-1 (Mumbai)

ami-0bbdbd7bcc1445c5f

ap-ka boroa-bochabela-1 (Singapore)

ami-0c365aa4cfb5121a9

ap-ka boroa-bochabela-2 (Sydney)

ami-0d2d9e5ebb58de8f7

ca-bohareng-1 (Canada)

ami-0485cfdbda5244c6e

eu-central-1 (Frankfurt)

ami-0677a8e229a930434

Eu-south-1 (Milan)

ami-091f667a02427854d

eu-west-1 (Ireland)

ami-0a8a59b277dff9306

eu-west-2 (London)

ami-0cf5912937286b42e

eu-west-3 (Paris)

ami-0b12cfdd092ef754e

us-bochabela-1 (Virginia)

ami-08ad555593196c1de

us-bochabela-2 (Ohio)

ami-0c52ce38eb8974728

us-west-1 (Leboa la California)

ami-0b83a898072e12970

us-west-2 (Oregon)

ami-02b6cd5eee1f3b521

Netefatsa hore TAR file ke oa 'nete ebile o tsoa Cisco. Bakeng sa mehato e qaqileng, bona Netefatsa Cisco DNA Center VA TAR File, leqepheng la 6. Kena ho khomphutha ea AWS. AWS console e hlahisoa.
Ka bareng ea ho batla, kenya cloudformation.

Cisco DNA Center mabapi le AWS Deployment Guide 94

Tsamaisa U sebelisa AWS CloudFormation

Tsamaisa Cisco DNA Center ho AWS U sebelisa AWS CloudFormation

Mohato oa 5 Mohato oa 6

Ho tswa ho menu e theoha, khetha CloudFormation. Tobetsa Theha stack ebe u khetha Ka lisebelisoa tse ncha (tse tloaelehileng).

Mohato oa 7

Tlas'a Specify template, khetha Kenya setšoantšo file, ebe u khetha template ea AWS CloudFormation eo u e jarollotseng mohatong oa 1.

Cisco DNA Center mabapi le AWS Deployment Guide 95

Tsamaisa Cisco DNA Center ho AWS U sebelisa AWS CloudFormation

Tsamaisa U sebelisa AWS CloudFormation

Mohato oa 8

Kenya lebitso la stack mme o boeleview mekhahlelo e latelang: · EC2 Instance Configuration · Lebitso la Tikoloho: Fana ka lebitso le ikhethileng la tikoloho. Lebitso la tikoloho le sebelisoa ho khetholla thomello 'me le itšetlehile ka mabitso a lisebelisoa tsa hau tsa AWS. Haeba o sebelisa lebitso le tšoanang la tikoloho joalo ka phepelo e fetileng, phepelo ea hajoale e tla hloleha.
· ID ea Private Subnet ID: Kenya subnet ea VPC e tla sebelisoa bakeng sa Cisco DNA Center.
· Sehlopha sa Tšireletso: Kenya sehlopha sa tšireletso se tla hokahanngoa le Cisco DNA Center VA eo u e romelang.
· Keypair: Kenya konopo ea SSH e sebelisoang ho fihlella CLI ea Cisco DNA Center VA eo u e tsamaisang.
· Cisco DNA Center Configuration: Kenya lintlha tse latelang: · DnacInstanceIP: Cisco DNA Center IP address.
· DnacNetmask: Cisco DNA Center netmask.
· DnacGateway: Aterese ea heke ea Cisco DNA Center.
· DnacDnsServer: Enterprise DNS Server.
· DnacPassword: Cisco DNA Center password.

Cisco DNA Center mabapi le AWS Deployment Guide 96

Tsamaisa U sebelisa AWS CloudFormation

Tsamaisa Cisco DNA Center ho AWS U sebelisa AWS CloudFormation

Hlokomela

U ka sebelisa password ea Cisco DNA Center ho fihlella Cisco DNA Center VA CLI

ka AWS EC2 Serial Console. Password e tlameha ho:

· Tlohela ho tab efe kapa efe kapa likheo tsa mela

· E-ba le bonyane litlhaku tse robeli

· E na le litlhaku tsa bonyane tse tharo ho tse latelang:

· Litlhaku tse nyane (a-z)

· Litlhaku tse kholo (A-Z)

· Numere (0-9)

· Litlhaku tse ikhethileng (mohlalaample,! kapa #)

Mohato oa 9

· DnacFQDN: Cisco DNA Center FQDN. · DnacHttpsProxy: (Boikhethelo) Moemeli oa HTTPS oa Khoebo. · DnacHttpsProxyUsername: (Boikhethelo) Lebitso la moemeli oa HTTPS. · DnacHttpsProxyPassword: (Boikhethelo) password ea proxy ea HTTPS.
(Ka boikhethelo) Tobetsa E latelang ho hlophisa likhetho tsa stack.

Mohato oa 10 Mohato oa 11

Tobetsa E latelang ho boelaview lintlha tsa hau tsa marang-rang. Haeba u khotsofetse ke peakanyo, tobetsa Romela ho qetela.

Cisco DNA Center mabapi le AWS Deployment Guide 97

Netefatsa Mosebetsi

Tsamaisa U sebelisa AWS CloudFormation

Ts'ebetso ea ho etsa li-stack hangata e nka metsotso e 45 ho isa ho e 60.

Netefatsa Mosebetsi
Ho netefatsa hore tlhophiso ea tikoloho ea hau le tlhophiso ea Cisco DNA Center VA lia sebetsa, etsa licheke tse latelang tsa netefatso.
Pele o qala Netefatsa hore popo ea hau ea stack ho AWS CloudFormation ha e na liphoso.
Tsamaiso

Mohato oa 1
Mohato oa 2
Mohato oa 3 Mohato oa 4

Ho tloha Amazon EC2 console, netefatsa marang-rang le tsamaiso ea tsamaiso 'me u netefatse hore aterese ea IP ea Cisco DNA Center e nepahetse. Romela ping atereseng ea IP ea Cisco DNA Center ho netefatsa hore lintlha tsa moamoheli oa hau le khokahano ea marang-rang li nepahetse. Theha khokahano ea SSH le Cisco DNA Center ho netefatsa hore Cisco DNA Center e netefalitsoe. Lekola phihlello ea HTTPS ho Cisco DNA Center GUI u sebelisa e 'ngoe ea mekhoa e latelang:
· Sebelisa sebatli.
Bakeng sa tlhaiso-leseling e batsi mabapi le ho sebelisana le sebatli, bona Lintlha tsa Phatlalatso tsa Cisco DNA Center.
· Sebelisa Telnet ka CLI.
· Sebelisa curl ka CLI.

Cisco DNA Center mabapi le AWS Deployment Guide 98

KE PA R T
Tsamaisa U sebelisa Sebaka sa Maraka sa AWS
· Kenya Cisco DNA Center 2.3.5.3 ho AWS U sebelisa AWS Marketplace, leqepheng la 101

5 KHAOLO
Kenya Cisco DNA Center 2.3.5.3 ho AWS Ho Sebelisa AWS Marketplace
· Hlahisa Setsi sa Cisco DNA ho AWS ka Botsoho U Sebelisa Sebaka sa Maraka sa AWS, leqepheng la 101 · Ho tsamaisoa ka Manual Ho Sebelisa AWS Marketplace Workflow, leqepheng la 101 · Lintho tse hlokahalang bakeng sa ho romelloa ka letsoho ho sebelisa AWS Marketplace, leqepheng la 101 · Deploy Cisco DNA Center on AWS Manually Using AWS Manually leqepheng la 107 · Netefatsa Mosebetsi oa Phano, leqepheng la 107
Tsamaisa Cisco DNA Center ho AWS ka letsoho U sebelisa AWS Marketplace
Haeba u tloaelane le tsamaiso ea AWS, u na le khetho ea ho kenya Cisco DNA Center ka letsoho akhaonteng ea hau ea AWS u sebelisa AWS Marketplace.
Ho tsamaisoa ka letsoho ho Sebelisa AWS Marketplace Workflow
Ho tsamaisa Cisco DNA Center ho AWS ho sebelisa mokhoa ona, latela mehato ena e phahameng: 1. Kopana le lintho tse hlokahalang. Sheba Litlhoko tse Hlokahalang Bakeng sa ho Tsamaisa ka Matsoho U Sebelisa Sebaka sa Maraka sa AWS, leqepheng la 101. 2. (Boikhethelo) Kopanya

Litokomane / Lisebelisoa

Cisco DNA Center ka AWS Deployment Guide [pdf] Bukana ea Mosebelisi
Setsi sa DNA ho Tataiso ea Phatlalatso ea AWS, DNA, Setsi sa Tataiso ea Phatlalatso ea AWS, Tataiso ea Phatlalatso ea AWS, Tataiso ea Phano

Litšupiso

Tlohela maikutlo

Aterese ea hau ea lengolo-tsoibila e ke ke ea phatlalatsoa. Libaka tse hlokahalang li tšoailoe *