Citrix Systems Switch 4.2 User Manual

Browse online or download User Manual for Software manuals Citrix Systems Switch 4.2. Citrix Systems Switch 4.2 User's Manual

  • Download
  • Add to my manuals
  • Print
  • Page
    / 272
  • Table of contents
  • TROUBLESHOOTING
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews

Summary of Contents

Page 1 - Administrator's Guide

CloudPlatform(powered by ApacheCloudStack) Version 4.2Administrator's GuideRevised October 27, 2013 10:50 pm PacificCitrix CloudPlatform

Page 2

CloudPlatform (powered by Apache CloudStack) Version 4.2 Administrator's Guidex22.3. Log Collection Utility cloud-bugtool ...

Page 3

Chapter 11. Working With Virtual Machines90The default format of the internal name is i-<user_id>-<vm_id>-<instance.name>, whereinst

Page 4

Affinity Groups91• Host tags. The administrator can assign tags to hosts. These tags can be used to specify which hosta VM should use. The CloudPlatfo

Page 5

Chapter 11. Working With Virtual Machines925.Click the Change Affinity button. View Members of an Affinity GroupTo see which VMs are currently assigne

Page 6

Limitations on VM Snapshots9311.9.1. Limitations on VM Snapshots• If a VM has some stored snapshots, you can't attach new volume to the VM or del

Page 7

Chapter 11. Working With Virtual Machines94NoteIf a snapshot is already in progress, then clicking this button will have no effect.5. Provide a name a

Page 8

Changing the Service Offering for a VM956. Make the desired changes to the following:• Display name: Enter a new display name if you want to change th

Page 9

Chapter 11. Working With Virtual Machines96with previous versions will not have the dynamic scaling capability unless you update them using thefollowi

Page 10

Resetting the Virtual Machine Root Volume on Reboot97• When scaling memory or CPU for a Linux VM on VMware, you might need to run scripts in additiont

Page 11 - 1.3. Contacting Support

Chapter 11. Working With Virtual Machines98NoteIf the VM's storage has to be migrated along with the VM, this will be noted in the host list.Clou

Page 12

Adding an ISO99contains an OS image. CloudPlatform allows a user to boot a guest VM off of an ISO image. Userscan also attach ISO images to guest VMs.

Page 13 - Concepts

Chapter 1.1Getting More Information and Help1.1. Additional Documentation AvailableThe following guides are available:• Installation Guide — Covers in

Page 14

Chapter 11. Working With Virtual Machines100NoteIt is not recommended to choose an older version of the OS than the version in the image.For example,

Page 15

Changing a VM's Base Image101type of image). When this call occurs, the VM's root disk is first destroyed, then a new root disk iscreated fr

Page 17

Chapter 12.103Working With Hosts12.1. Adding HostsAdditional hosts can be added at any time to provide more capacity for guest VMs. For requirementsan

Page 18

Chapter 12. Working With Hosts1041. In the Resources pane, select the server, then do one of the following:• Right-click, then click Enter Maintenance

Page 19 - Cloud Infrastructure Concepts

Removing XenServer and KVM Hosts10512.4.1. Removing XenServer and KVM HostsA node cannot be removed from a cluster until it has been placed in mainten

Page 20

Chapter 12. Working With Hosts106orchestrate. CloudPlatform can automatically understand the UCS environment, server profiles, etc. soCloudPlatform ad

Page 21 - 3.3. About Pods

Disassociating a Profile from a UCS Blade1076. Click the name of the UCS Manager.A list is displayed that shows the names of the blades that are insta

Page 22 - 3.4. About Clusters

Chapter 12. Working With Hosts108mysql> select id from cloud.host where name like '%h%';4. This should return a single ID. Record the set

Page 23 - 3.6. About Primary Storage

Limitations on Over-Provisioning in XenServer and KVM10912.9.1. Limitations on Over-Provisioning in XenServer and KVM• In XenServer, due to a constrai

Page 25

Chapter 12. Working With Hosts110done, CloudPlatform recalculates or scales the used and reserved capacities based on the new over-provisioning ratios

Page 26

VLAN Allocation Example111CloudPlatform manages VLANs differently based on hypervisor type. For XenServer or KVM, theVLANs are created on only the hos

Page 27

Chapter 12. Working With Hosts1125. Click Physical Network.6. In the Guest node of the diagram, click Configure.7.Click Edit The VLAN Ranges field now

Page 28

Chapter 13.113Working with TemplatesA template is a reusable configuration for virtual machines. When users launch VMs, they can choosefrom a list of

Page 29

Chapter 13. Working with Templates114A default template is provided for each of XenServer, KVM, and vSphere. The templates thatare downloaded depend o

Page 30

Creating a Template from a Snapshot115• Name and Display Text. These will be shown in the UI, so choose something descriptive.• OS Type. This helps Cl

Page 31

Chapter 13. Working with Templates116Templates are uploaded based on a URL. HTTP is the supported access protocol. Templates arefrequently large files

Page 32

Exporting Templates11713.9. Exporting TemplatesEnd users and Administrators may export templates from the CloudPlatform. Navigate to the templatein th

Page 33 - 4.2.3. Search Base

Chapter 13. Working with Templates1181. Download and install the Windows AIKNoteWindows AIK should not be installed on the Windows 2008 R2 VM you just

Page 34 - 4.2.4. Query Filter

System Preparation for Windows Server 2008 R2119b. You need to automate the Software License Terms Selection page, otherwise known as theEnd-User Lice

Page 35 - 4.2.5. Search User Bind DN

Chapter 2.3Concepts2.1. What Is CloudPlatform?CloudPlatform is a software platform that pools computing resources to build public, private, andhybrid

Page 36

Chapter 13. Working with Templates120c. Make sure the license key is properly set. If you use MAK key, you can just enter the MAK keyon the Windows 20

Page 37 - User Services Overview

System Preparation for Windows Server 2003 R2121You may read the AIK documentation and set many more options that suit your deployment.The steps above

Page 38

Chapter 13. Working with Templates122a. Select Create New to create a new Answer File.b. Enter “Sysprep setup” for the Type of Setup.c. Select the app

Page 39 - User Interface

Importing Amazon Machine Images123You need to have a XenServer host with a file-based storage repository (either a local ext3 SR or anNFS SR) to conve

Page 40

Chapter 13. Working with Templates124# cat etc/fstab/dev/xvda / ext3 defaults 1 1/dev/xvdb /mnt ext3 defaults 0 0no

Page 41

Converting a Hyper-V VM to a Template125# scp CentOS_6.2_x64 xenhost:/var/run/sr-mount/a9c5b8c8-536b-a193-a6dc-51af3e5ff799/15. Log in to the Xenserve

Page 42

Chapter 13. Working with Templates1263. Name the VM, choose the NFS VHD SR under Storage, enable "Run Operating System Fixups"and choose the

Page 43 - 6.3.5. Resetting SSH Keys

Linux OS Installation127new password to the virtual router for the account. Thus an instance reboot is necessary to effect anypassword changes.If the

Page 45 - Resources

Chapter 14.129Working With Storage14.1. Storage OverviewCloudPlatform defines two types of storage: primary and secondary. Primary storage can be acce

Page 46

Chapter 2. Concepts4Massively Scalable Infrastructure ManagementCloudPlatform can manage tens of thousands of servers installed in multiple geographic

Page 47 - 7.3. Creating a New Project

Chapter 14. Working With Storage130VMwarevSphereCitrixXenServerKVM Oracle VMFiber Channel support VMFS Yes, viaExisting SRYes, viaSharedMountpointNoNF

Page 48

Maintenance Mode for Primary Storage13114.2.5. Maintenance Mode for Primary StoragePrimary storage may be placed into maintenance mode. This is useful

Page 49 - 7.7. Using the Project View

Chapter 14. Working With Storage132Then log in to the CloudPlatform UI and stop and start (not reboot) the Secondary Storage VM for thatZone.14.3.3. C

Page 50

Uploading an Existing Volume to a Virtual Machine133local data volumes can be attached to virtual machines, detached, re-attached, and deleted just as

Page 51 - Infrastructure

Chapter 14. Working With Storage1344. Click Upload Volume.5. Provide the following:• Name and Description. Any desired name and a brief description th

Page 52 - 8.2.2. Adding a Region

Detaching and Moving Volumes13514.4.4. Detaching and Moving VolumesNoteThis procedure is different from moving volumes from one storage pool to anothe

Page 53

Chapter 14. Working With Storage136NoteBecause of a limitation in VMware, live migration of storage for a VM is allowed only if the sourceand target s

Page 54 - 8.2.4. Deleting a Region

Resizing Volumes1371. Log in to the CloudPlatform UI as a user or admin.2. In the left navigation bar, click Instances, and click the VM name.3. (KVM

Page 55 - 8.3. Adding a Zone

Chapter 14. Working With Storage1384.Select the volume name in the Volumes list, then click the Resize Volume button 5. In the Resize Volume pop-up, c

Page 56

Automatic Snapshot Creation and Retention139CloudPlatform supports snapshots of disk volumes. Snapshots are a point-in-time capture of virtualmachine

Page 57

Management Server Overview5A more full-featured installation consists of a highly-available multi-node Management Serverinstallation and up to thousan

Page 58

Chapter 14. Working With Storage140When a snapshot is taken manually, a snapshot is always created regardless of whether a volume hasbeen active or no

Page 59

Chapter 15.141Working with UsageThe Usage Server is an optional, separately-installed part of CloudPlatform that provides aggregatedusage records whic

Page 60

Chapter 15. Working with Usage142Parameter Name DescriptionDefault: The time zone of the managementserver.usage.sanity.check.interval The number of da

Page 61

Setting Usage Limits143• enable.usage.server = true• usage.execution.timezone = America/New_York• usage.stats.job.exec.time = 07:00. This will run the

Page 62

Chapter 15. Working with Usage144Parameter Name Descriptionmax.account.primary.storage (GB) Maximum primary storage space that can beused for an accou

Page 63

Default Account Resource Limits145Parameter Name Definitionmax.volume.size.gb Maximum size for a volume in GBnetwork.throttling.rate The default data

Page 64

Chapter 15. Working with Usage14615.2.3. Per-Domain LimitsCloudPlatform allows the configuration of limits on a domain basis. With a domain limit in p

Page 65 - 8.4. Adding a Pod

Chapter 16.147Managing Networks and TrafficIn a CloudPlatform, guest VMs can communicate with each other using shared infrastructure with thesecurity

Page 66 - 8.5. Adding a Cluster

Chapter 16. Managing Networks and Traffic148Servers are connected as follows:• Storage devices are connected to only the network that carries manageme

Page 67 - 8.5.3. Add Cluster: vSphere

Basic Zone Physical Network Configuration149A firewall for management traffic operates in the NAT mode. The network typically is assigned IPaddresses

Page 68

Chapter 2. Concepts6• Zone: Typically, a zone is equivalent to a single datacenter. A zone consists of one or more podsand secondary storage.• Pod: A

Page 69

Chapter 16. Managing Networks and Traffic1501. In the left navigation, choose Infrastructure. On Zones, click View More, then click the zone towhich y

Page 70 - 8.6. Adding a Host

Configuring a Shared Guest Network15116.5.3. Configuring a Shared Guest Network1. Log in to the CloudPlatform UI as administrator.2. In the left navig

Page 71 - # ./cloud-setup-bonding.sh

Chapter 16. Managing Networks and Traffic152• Network Domain: A custom DNS suffix at the level of a network. If you want to assign a specialdomain nam

Page 72 - 8.7. Adding Primary Storage

Enabling Security Groups15316.6.3. Enabling Security GroupsIn order for security groups to function in a zone, the security groups feature must first

Page 73 - 8.8. Adding Secondary Storage

Chapter 16. Managing Networks and Traffic154• Account, Security Group. (Add by Account only) To accept only traffic from another securitygroup, enter

Page 74

About Using a NetScaler Load Balancer155An external Juniper SRX or Cisco ASA can be used for:• Source NAT• Static NAT• Firewall• Port forwardingA NetS

Page 75 - 8.9. Initialize and Test

Chapter 16. Managing Networks and Traffic156NetScaler ADC Type Description of Capabilities CloudPlatform SupportedFeaturesact as application firewall

Page 76

Initial Setup of External Firewalls and Load Balancers157# sec.name source communitycom2sec local localhost publiccom2sec

Page 77 - Service Offerings

Chapter 16. Managing Networks and Traffic158The following objects are created on the load balancer:• A new VLAN that matches the account's provis

Page 78

Configuring AutoScale1596. In the Load Balancing node of the diagram, click View All.In a Basic zone, you can also create a load balancing rule withou

Page 79 - 9.2. System Service Offerings

Networking Overview7• Basic. Provides a single network where guest isolation can be provided through layer-3 means suchas security groups (IP address

Page 80 - Guest Network

Chapter 16. Managing Networks and Traffic160VMs automatically and launching new VMs when you need them, without the need for manualintervention.NetSca

Page 81

Configuring AutoScale161ConfigurationSpecify the following:• Template: A template consists of a base OS image and application. A template is used to p

Page 82

Chapter 16. Managing Networks and Traffic162NoteIf an application, such as SAP, running on a VM instance is down for some reason, the VMis then not co

Page 83 - 10.2. About Virtual Networks

Configuring AutoScale163• Polling interval: Frequency in which the conditions, combination of counter, operator and threshold,are to be evaluated befo

Page 84 - 10.4.1. Individual

Chapter 16. Managing Networks and Traffic164Runtime Considerations• An administrator should not assign a VM to a load balancing rule which is configur

Page 85

Global Server Load Balancing165You can delete or modify existing health check policies.To configure how often the health check is performed by default

Page 86

Chapter 16. Managing Networks and Traffic166• Load Balancing or Content Switching Virtual Servers: According to Citrix NetScaler terminology,a load ba

Page 87 - 10.5. Network Offerings

Configuring GSLB167Tenant-A wishes to leverage the GSLB service provided by the xyztelco cloud. Tenant-A configuresa GSLB rule to load balance traffic

Page 88

Chapter 16. Managing Networks and Traffic168To configure GSLB in your cloud environment, as a cloud administrator you must first configure astandard l

Page 89

Configuring GSLB1693. In each zone that are participating in GSLB, add GSLB-enabled NetScaler device.For more information, see Section 16.9.2.2, “Enab

Page 91

Chapter 16. Managing Networks and Traffic1703. In Zones, click View More.4. Choose the zone you want to work with.5. Click the Physical Network tab, t

Page 92

Configuring GSLB1716. Specify the following:• Name: Name for the GSLB rule.• Description: (Optional) A short description of the GSLB rule that can be

Page 93

Chapter 16. Managing Networks and Traffic1727. Click assign more load balancing.8. Select the load balancing rule you have created for the zone.9. Cli

Page 94

Reconfiguring Networks in VMs173This feature is supported on XenServer, VMware, and KVM hypervisors.16.10.2.1. PrerequisitesFor adding or removing net

Page 95 - Working With Virtual Machines

Chapter 16. Managing Networks and Traffic1742. In the left navigation, click Instances.3. Choose the VM that you want to work with.4. Click the NICs t

Page 96 - 11.3. VM Lifecycle

Reserving Public IP Addresses and VLANs for Accounts17516.14. Reserving Public IP Addresses and VLANs forAccountsCloudPlatform provides you the abilit

Page 97 - 11.4. Creating VMs

Chapter 16. Managing Networks and Traffic176• Domain: The domain associated with the account.To create a new IP range and assign an account, perform t

Page 98

IP Reservation in Isolated Guest Networks177• Domain: The domain associated with the account.16.15. IP Reservation in Isolated Guest NetworksIn isolat

Page 99 - 11.5. Accessing VMs

Chapter 16. Managing Networks and Traffic178Case CIDR Network CIDR Reserved IPRange for Non-CloudPlatformVMsDescriptionCIDR field in theUI.3 10.1.1.0/

Page 100 - 11.8. Assigning VMs to Hosts

Use Cases179supported on all the network configurations—Basic, Advanced, and VPC. Security Groups, Static NATand Port forwarding services are supporte

Page 101 - 11.8.1. Affinity Groups

Chapter 3.9Cloud Infrastructure Concepts3.1. About RegionsTo increase reliability of the cloud, you can optionally group resources into multiple geogr

Page 102 - Delete an Affinity Group

Chapter 16. Managing Networks and Traffic180passed, NAT is configured on the specified private IP of the VM. if not passed, NAT is configured onthe pr

Page 103 - 11.9.3. Using VM Snapshots

About Elastic IP18110. Specify the following:All the fields are mandatory.• Gateway: The gateway for the tier you create. Ensure that the gateway is w

Page 104

Chapter 16. Managing Networks and Traffic182services if a NetScaler device is deployed in your zone. Consider the following illustration for moredetai

Page 105

Portable IPs183NoteInbound NAT (INAT) is a type of NAT supported by NetScaler, in which the destination IPaddress is replaced in the packets from the

Page 106 - 11.11.5. Limitations

Chapter 16. Managing Networks and Traffic184The salient features of Portable IP are as follows:• IP is statically allocated• IP need not be associated

Page 107

Transferring Portable IP1856. Specify whether you want cross-zone IP or not.7. Click Yes in the confirmation dialog.Within a few moments, the new IP a

Page 108 - 11.16. Working with ISOs

Chapter 16. Managing Networks and Traffic1865. Click the IP address you want to work with.6.Click the Static NAT button.The button toggles between E

Page 109 - 11.16.1. Adding an ISO

Egress Firewall Rules in an Advanced Zone1872. In the left navigation, choose Network.3. In Select view, choose Guest networks, then click the Guest n

Page 110

Chapter 16. Managing Networks and Traffic188a. Log in with admin privileges to the CloudPlatform UI.b. In the left navigation bar, click Service Offer

Page 111

Port Forwarding189• ICMP Type and ICMP Code. Used only if Protocol is set to ICMP. Provide the type and coderequired by the ICMP protocol to fill out

Page 112

CloudPlatform (powered by Apache CloudStack) Version 4.2 Administrator's GuideCloudPlatform (powered by Apache CloudStack) Version 4.2Administrat

Page 113 - Working With Hosts

Chapter 3. Cloud Infrastructure Concepts10The benefit of organizing infrastructure into zones is to provide physical isolation and redundancy. Forexam

Page 114 - 12.4. Removing Hosts

Chapter 16. Managing Networks and Traffic190• Least connection• Source IPThis is similar to port forwarding but the destination may be multiple IP add

Page 115 - 12.5. Re-Installing Hosts

Using Remote Access VPN with Windows191• remote.access.vpn.psk.length – Length of the IPSec key.• remote.access.vpn.user.limit – Maximum number of VPN

Page 116

Chapter 16. Managing Networks and Traffic19212. Enter the user name and password from step 1.16.24.3. Using Remote Access VPN with Mac OS XFirst, be s

Page 117 - 12.8. Changing Host Password

Setting Up a Site-to-Site VPN Connection193NoteIn addition to the specific Cisco and Juniper devices listed above, the expectation is that anyCisco or

Page 118

Chapter 16. Managing Networks and Traffic194Provide the following information:• Name: A unique name for the VPN customer gateway you create.• Gateway:

Page 119 - 12.9.2.1. Balloon Driver

Setting Up a Site-to-Site VPN Connection195NoteThe IKE peers (VPN end points) authenticate each other by computing and sending akeyed hash of data tha

Page 120 - 12.10. VLAN Provisioning

Chapter 16. Managing Networks and Traffic196NoteWhen PFS is turned on, for every negotiation of a new phase-2 SA the two gateways mustgenerate a new s

Page 121

Setting Up a Site-to-Site VPN Connection197The VPC page is displayed where all the tiers you created are listed in a diagram.5. Click the Settings ico

Page 122

Chapter 16. Managing Networks and Traffic198All the VPCs that you create for the account are listed in the page.4. Click the Configure button of the V

Page 123 - Working with Templates

Setting Up a Site-to-Site VPN Connection199• Gateway• State• IPSec Preshared Key• IKE Policy• ESP Policy16.24.4.4. Restarting and Removing a VPN Conne

Page 124

About Pods11For each zone, the administrator must decide the following.• How many pods to place in a zone.• How many clusters to place in each pod.• H

Page 125 - 13.8. Uploading Templates

Chapter 16. Managing Networks and Traffic2009. To remove a VPN connection, click the Delete VPN connection button To restart a VPN connection, click t

Page 126

Prerequisites201• Understanding Private VLANs8• Cisco Systems' Private VLANs: Scalable Security in a Multi-Client Environment9• Private VLAN (PVL

Page 127 - 13.9. Exporting Templates

Chapter 16. Managing Networks and Traffic2029. Click Add guest network.The Add guest network window is displayed.10. Specify the following:• Name: The

Page 128

About Inter-VLAN Routing203This feature is supported on XenServer and VMware hypervisors.The major advantages are:• The administrator can deploy a set

Page 129

Chapter 16. Managing Networks and Traffic204To set up a multi-tier Inter-VLAN deployment, see Section 16.27, “Configuring a Virtual Private Cloud”.16.

Page 130

About Virtual Private Clouds205• Private Gateway: All the traffic to and from a private network routed to the VPC through the privategateway. For more

Page 131

Chapter 16. Managing Networks and Traffic206• All network tiers inside the VPC should belong to the same account.• When a VPC is created, by default,

Page 132

Adding Tiers207Provide the following information:• Name: A short name for the VPC that you are creating.• Description: A brief description of the VPC.

Page 133

Chapter 16. Managing Networks and Traffic208NoteThe end users can see their own VPCs, while root and domain admin can see any VPC theyare authorized t

Page 134

Configuring Network Access Control List209For more information, see Section 12.10.3, “Assigning VLANs to Isolated Networks”.• Netmask: The netmask for

Page 135

Chapter 3. Cloud Infrastructure Concepts123.4. About ClustersA cluster provides a way to group hosts. To be precise, a cluster is a XenServer server p

Page 136

Chapter 16. Managing Networks and Traffic210• Virtual Machines• CIDRThe following router information is displayed:• Private Gateways• Public IP Addres

Page 137 - 13.14. Deleting Templates

Configuring Network Access Control List211protocol is typically used to send error messages or network monitoring data. All supports all thetraffic. O

Page 138

Chapter 16. Managing Networks and Traffic21216.27.5. Adding a Private Gateway to a VPCA private gateway can be added by the root admin only. The VPC p

Page 139 - Working With Storage

Adding a Private Gateway to a VPC2138. Specify the following:• Physical Network: The physical network you have created in the zone.• IP Address: The I

Page 140 - 14.2.4. Storage Tags

Chapter 16. Managing Networks and Traffic214gateway to avoid IP conflicts. If Source NAT is enabled, the guest VMs in VPC reaches the enterprisenetwor

Page 141 - 14.3. Secondary Storage

Deploying VMs to the Tier21516.27.5.4. Blacklisting RoutesCloudPlatform enables you to block a list of routes so that they are not assigned to any of

Page 142 - 14.4. Working With Volumes

Chapter 16. Managing Networks and Traffic216For more information about how the templates came to be in this list, see Chapter 13, Workingwith Template

Page 143

Releasing an IP Address Alloted to a VPC217The VPC page is displayed where all the tiers you created are listed in a diagram.The following options are

Page 144 - 14.4.3. Attaching a Volume

Chapter 16. Managing Networks and Traffic218• Static NAT• Virtual Machines• CIDRThe following router information is displayed:• Private Gateways• Publ

Page 145 - 14.4.5. VM Storage Migration

Adding Load Balancing Rules on a VPC219The following router information is displayed:• Private Gateways• Public IP Addresses• Site-to-Site VPNs• Netwo

Page 146

About Hosts13server with CloudPlatform. There may be multiple vCenter servers per zone. Each vCenter server maymanage multiple VMware clusters.3.5. Ab

Page 147 - 14.4.6. Resizing Volumes

Chapter 16. Managing Networks and Traffic2202. Create a network offering, as given in Section 16.27.11.1.2, “Creating a Network Offering forPublic LB”

Page 148 - 14.5. Working with Snapshots

Adding Load Balancing Rules on a VPC22116.27.11.1.3. Creating a Public LB Rule1. Log in to the CloudPlatform UI as an administrator or end user.2. In

Page 149 - 14.5.3. Volume Status

Chapter 16. Managing Networks and Traffic222• Source• Stickiness. (Optional) Click Configure and choose the algorithm for the stickiness policy. SeeSt

Page 150 - 14.5.4. Snapshot Restore

Adding Load Balancing Rules on a VPC22316.27.11.2.2. Enabling Internal LB on a VPC Tier1. Create a network offering, as given in Section 16.27.11.2.4,

Page 151 - Working with Usage

Chapter 16. Managing Networks and Traffic224• Name: Any desired name for the network offering.• Description: A short description of the offering that

Page 152

Adding a Port Forwarding Rule on a VPC225• Name: A name for the load balancer rule.• Description: A short description of the rule that can be displaye

Page 153 - 15.2. Setting Usage Limits

Chapter 16. Managing Networks and Traffic226The IP Addresses page is displayed.6. Click the IP address for which you want to create the rule, then cli

Page 154

Editing, Restarting, and Removing a Virtual Private Cloud22716.27.14. Editing, Restarting, and Removing a Virtual Private CloudNoteEnsure that all the

Page 155

Chapter 16. Managing Networks and Traffic228• When you create a guest network, the network offering that you select defines the networkpersistence. Th

Page 156 - 15.2.3. Per-Domain Limits

Chapter 17.229Working with System Virtual MachinesCloudPlatform uses several types of system virtual machines to perform tasks in the cloud. In genera

Page 157 - Managing Networks and Traffic

Chapter 3. Cloud Infrastructure Concepts14• Dell EqualLogic™ for iSCSI• Network Appliances filers for NFS and iSCSI• Scale Computing for NFSIf you int

Page 158 - 16.3. Networking in a Zone

Chapter 17. Working with System Virtual Machines230The VNC traffic never goes through the guest virtual IP, and there is no need to enable VNC within

Page 159

Virtual Router231d. Convert your private key format into PKCS#8 encrypted format.openssl pkcs8 -topk8 -in yourprivate.key -out yourprivate.pkcs8.encry

Page 160

Chapter 17. Working with System Virtual Machines23217.4.2. Upgrading a Virtual Router with System Service OfferingsWhen CloudPlatform creates a virtua

Page 161

Chapter 18.233System Reliability and High Availability18.1. HA for Management ServerThe CloudPlatform Management Server should be deployed in a multi-

Page 162 - 16.6.1. About Security Groups

Chapter 18. System Reliability and High Availability23418.4. Primary Storage Outage and Data LossWhen a primary storage outage occurs, all hosts in th

Page 163

Limitations on API Throttling23518.6.2. Limitations on API ThrottlingThe following limitations exist in the current implementation of this feature.Not

Page 165

Chapter 19.237Managing the Cloud19.1. Using Tags to Organize Resources in the CloudA tag is a key-value pair that stores metadata about a resource in

Page 166

Chapter 19. Managing the Cloud238• listNetworkACLs• listStaticRoutes19.2. Setting Configuration Parameters19.2.1. About Configuration ParametersCloudP

Page 167

Setting Global Configuration Parameters239Field Valuehost This is the IP address of the ManagementServer. If you are using multiple ManagementServers

Page 168 - 16.8. Load Balancer Rules

Basic Zone Network Traffic Types15type for each network vary depending on whether you are creating a zone with basic networking oradvanced networking.

Page 169 - 16.8.2. Configuring AutoScale

Chapter 19. Managing the Cloud2404. Click the name of the resource where you want to set a limit.5. Click the Settings tab.6. Use the search box to na

Page 170 - Prerequisites

Granular Global Configuration Parameters241Field Field Valueare sent that the availablememory is below the threshold.cluster cluster.cpu.allocated.cap

Page 171 - Configuration

Chapter 19. Managing the Cloud242Field Field Valuebecause the available storagecapacity is below the threshold.zone storage.overprovisioning.factor Us

Page 172

Customizing Alerts with Global Configuration Settings243For a list of CloudPlatform alerts, see Appendix B, Alerts. For the most up-to-date list, call

Page 173

Chapter 19. Managing the Cloud244Each SNMP trap contains the following information: message, podId, dataCenterId, clusterId, andgenerationTime.19.4.2.

Page 174 - Runtime Considerations

Customizing the Network Domain Name245</appender>The following example shows how to configure two Syslog managers at IP addresses 10.1.1.1and 10

Page 175 - 16.9.1.1. Components of GSLB

Chapter 19. Managing the Cloud246• For all networks, if a network domain is specified as part of a network's own configuration, that valueis used

Page 176

Chapter 20.247CloudPlatform APIThe CloudPlatform API is a low level API that has been used to implement the CloudPlatform webUIs. It is also a good ba

Page 177 - 16.9.2. Configuring GSLB

Chapter 20. CloudPlatform API248• local-hostname. The hostname of the VM• public-ipv4. The first public IP for the router. (E.g. the first IP of eth2)

Page 178

Chapter 21.249TuningThis section provides tips on how to improve the performance of your cloud.21.1. Performance MonitoringHost and guest performance

Page 179

Chapter 3. Cloud Infrastructure Concepts16you must also configure a network to carry public traffic. CloudPlatform takes care of presenting thenecessa

Page 180 - 16.9.2.3. Adding a GSLB Rule

Chapter 21. Tuning250For more information about the buffer pool, see "The InnoDB Buffer Pool" at MySQL ReferenceManual2.21.4. Set and Monito

Page 181

Chapter 22.251Troubleshooting22.1. EventsAn event is essentially a significant or meaningful change in the state of both virtual and physicalresources

Page 182

Chapter 22. Troubleshooting252ConfigurationAs a CloudPlatform administrator, perform the following one-time configuration to enable eventnotification

Page 183 - 16.10.2.3. Removing a Network

Event Log Queries253• INFO. This event is generated when an operation has been successfully performed.• WARN. This event is generated in the following

Page 184 - 16.11. Guest IP Ranges

Chapter 22. Troubleshooting25422.1.6.1. PermissionsConsider the following:• The root admin can delete or archive one or multiple alerts or events.• Th

Page 185 - Accounts

Log Collection Utility cloud-bugtool25522.3. Log Collection Utility cloud-bugtoolCloudPlatform provides a command-line utility called cloud-bugtool to

Page 186

Chapter 22. Troubleshooting256CauseIt is possible that a client from outside the intended pool has mounted the storage. When this occurs,the LVM is wi

Page 187

Unable to deploy VMs from uploaded vSphere template257CauseThe CloudPlatform administrator UI was used to place the host in scheduled maintenance mode

Page 188 - 16.15.3. Best Practices

Chapter 22. Troubleshooting258VMware Knowledge Base Article122.9. Load balancer rules fail after changing networkofferingSymptomAfter changing the net

Page 189 - 16.16.2. Guidelines

259Appendix A. Event TypesVM.CREATE TEMPLATE.EXTRACT SG.REVOKE.INGRESSVM.DESTROY TEMPLATE.UPLOAD HOST.RECONNECTVM.START TEMPLATE.CLEANUP MAINT.CANCELV

Page 190

Advanced Zone Public IP Addresses173.8.5. Advanced Zone Public IP AddressesWhen advanced networking is used, the administrator can create additional n

Page 192

261Appendix B. AlertsThe following is the list of alert type numbers. The current alerts can be found by calling the listAlertsAPI command.MEMORY = 0

Page 193 - 16.19. Portable IPs

Appendix B. Alerts262STORAGE_DELETE = 20 // Failed to delete storage poolUPDATE_RESOURCE_COUNT = 21 // Failed to update the resource countUSAGE_SANITY

Page 195 - 16.20. Static NAT

Chapter 4.19Accounts4.1. Accounts, Users, and DomainsAccountsAn account typically represents a customer of the service provider or a department in a l

Page 196

iii1. Getting More Information and Help 11.1. Additional Docum

Page 197

Chapter 4. Accounts204.1.1. Dedicating Resources to Accounts and DomainsThe root administrator can dedicate resources to a specific domain or account

Page 198 - 16.21.2. Firewall Rules

Using an LDAP Server for User Authentication21If you delete an account or domain, any hosts, clusters, pods, and zones that were dedicated to it arefr

Page 199 - 16.22. IP Load Balancing

Chapter 4. Accounts225. Specify the following:• Bind DN: The full distinguished name (DN), including common name (CN), of an LDAP useraccount that has

Page 200 - 16.24. Remote Access VPN

Example LDAP Configuration Commands236. Click OK.4.2.1.2. Removing an LDAP Configuration1. Log in to the CloudPlatform.2. From the left navigational b

Page 201

Chapter 4. Accounts24depending on which LDAP server you are using. A full discussion of distinguished names is outsidethe scope of our documentation.

Page 202

Search User Bind DN25(&(sAMAccountName=%u) or (&(mail=%e))4.2.5. Search User Bind DNThe bind DN is the user on the external LDAP server permi

Page 204

Chapter 5.27User Services OverviewIn addition to the physical and logical infrastructure of your cloud, and the CloudPlatform software andservers, you

Page 206

Chapter 6.29User Interface6.1. Supported BrowsersThe CloudPlatform web-based UI is available in the following popular browsers:• Mozilla Firefox 22 or

Page 207

CloudPlatform (powered by Apache CloudStack) Version 4.2 Administrator's Guideiv7. Using Projects to Organize Users and Resources

Page 208

Chapter 6. User Interface306.2.2. Root Administrator's UI OverviewThe CloudPlatform UI helps the CloudPlatform administrator provision, view, and

Page 209

Changing the Root Password31WarningYou are logging in as the root administrator. This account manages the CloudPlatformdeployment, including physical

Page 210 - 16.25.1. About Private VLAN

Chapter 6. User Interface32For more information on creating a new instance, see Section 11.4, “Creating VMs”.2. Download the script file cloud-set-gue

Page 211 - 16.25.2. Prerequisites

Creating an Instance332. Copy the key data into a file. The file looks like this:-----BEGIN RSA PRIVATE KEY-----MIICXQIBAAKBgQCSydmnQ67jP6lNoXdX3noZjQ

Page 213

Chapter 7.35Using Projects to Organize Users andResources7.1. Overview of ProjectsProjects are used to organize people and resources. CloudPlatform us

Page 214 - Major Components of a VPC:

Chapter 7. Using Projects to Organize Users and Resources361. Log in as administrator to the CloudPlatform UI.2. In the left navigation, click Global

Page 215 - VPC Network Considerations

Creating a New Project373. In the search box, type allow.user.create.projects.4.Click the edit button to set the parameter. allow.user.create.projects

Page 216

Chapter 7. Using Projects to Organize Users and Resources385. Click the Invitations tab.6. In Add by, select one of the following:a. Account – The inv

Page 217 - 16.27.3. Adding Tiers

Suspending or Deleting a Project397.6. Suspending or Deleting a ProjectWhen a project is suspended, it retains the resources it owns, but they can no

Page 218

v10.4.1. Individual ... 7410.4.2. Support Matrix f

Page 220

Chapter 8.41Steps to Provisioning Your CloudInfrastructureThis section tells how to add regions, zones, pods, clusters, hosts, storage, and networks t

Page 221

Chapter 8. Steps to Provisioning Your Cloud Infrastructure428.2. Adding Regions (optional)Grouping your cloud resources into geographic regions is an

Page 222

Adding Third and Subsequent Regions433. Now add the new region to region 1 in CloudPlatform.a. Log in to CloudPlatform in the first region as root adm

Page 223

Chapter 8. Steps to Provisioning Your Cloud Infrastructure442. Once the Management Server is running, add your new region to all existing regions by r

Page 224

Adding a Zone452. In the left navigation bar, click Regions.3. Click the name of the region you want to delete.4. Click the Remove Region button.5. Re

Page 225

Chapter 8. Steps to Provisioning Your Cloud Infrastructure46This process will require approximately 5 GB of free space on the local file system and up

Page 226

Steps to Add a New Zone47For more information about the network types, see Network Setup.7. The rest of the steps differ depending on whether you chos

Page 227

Chapter 8. Steps to Provisioning Your Cloud Infrastructure48The traffic types are management, public, guest, and storage traffic. For more information

Page 228

Steps to Add a New Zone49• Pod Name. A name for the pod.• Reserved system gateway. The gateway for the hosts in that pod.• Reserved system netmask. Th

Page 229

CloudPlatform (powered by Apache CloudStack) Version 4.2 Administrator's Guidevi12.7. Using Cisco UCS as Bare Metal Host CloudPlatform ...

Page 230

Chapter 8. Steps to Provisioning Your Cloud Infrastructure50• KVM vSphere Installation and Configuration• Oracle VM (OVM) Installation and Configurati

Page 231

Steps to Add a New Zone51• Public. A public zone is available to all users. A zone that is not public will be assigned to aparticular domain. Only use

Page 232

Chapter 8. Steps to Provisioning Your Cloud Infrastructure524. Click Next.5. Configure the IP range for public Internet traffic. Enter the following d

Page 233

Steps to Add a New Zone53• Start/End Reserved System IP. The IP range in the management network that CloudPlatformuses to manage various system VMs, s

Page 234

Chapter 8. Steps to Provisioning Your Cloud Infrastructure54more information, see HA-Enabled Virtual Machines as well as HA for Hosts, both in theAdmi

Page 235

Adding a Pod55SharedMountPoint • Path. The path on each host that is where this primarystorage is mounted. For example, "/mnt/primary".• Tag

Page 236 - 16.27.13. Removing Tiers

Chapter 8. Steps to Provisioning Your Cloud Infrastructure565. Enter the following details in the dialog.• Name. The name of the pod.• Gateway. The ga

Page 237 - 16.28. Persistent Networks

Add Cluster: vSphere573. Click the Compute tab. In the Pods node, click View All. Select the same pod you used in step 1.4. Click View Clusters, then

Page 238

Chapter 8. Steps to Provisioning Your Cloud Infrastructure582. Log in to the UI.3. In the left navigation, choose Infrastructure. In Zones, click View

Page 239 - 17.3. Console Proxy

Add Cluster: vSphere59If you have enabled Nexus dvSwitch in the environment, the following parameters for dvSwitchconfiguration are displayed:• Nexus

Page 240

vii14.4.8. Volume Deletion and Garbage Collection ... 13814.5. Working with Snapshots ...

Page 241 - 17.4. Virtual Router

Chapter 8. Steps to Provisioning Your Cloud Infrastructure608.6. Adding a Host1. Before adding a host to the CloudPlatform configuration, you must fir

Page 242 - 17.5. Secondary Storage VM

Adding a Host (XenServer, KVM, or OVM)61For all additional hosts to be added to the cluster, run the following command. This will cause the hostto joi

Page 243 - 18.3. Dedicated HA Hosts

Chapter 8. Steps to Provisioning Your Cloud Infrastructure627. Click Add Host.8. Provide the following information.• Host Name. The DNS name or IP add

Page 244

Adding Secondary Storage63• Pod. (Visible only if you choose Cluster in the Scope field.) The pod for the storage device.• Cluster. (Visible only if y

Page 245

Chapter 8. Steps to Provisioning Your Cloud Infrastructure643. Log in to the CloudPlatform UI as root administrator.4. In the left navigation bar, cli

Page 246

Initialize and Test655. In Secondary Storage, click View All.6. In Select View, choose Secondary Staging Store.7. Click the Add NFS Secondary Staging

Page 247 - Managing the Cloud

Chapter 8. Steps to Provisioning Your Cloud Infrastructure66If you decide to grow your deployment, you can add more hosts, primary storage, zones, pod

Page 248

Chapter 9.67Service OfferingsIn this chapter we discuss compute, disk, and system service offerings. Network offerings arediscussed in the section on

Page 249

Chapter 9. Service Offerings68• Storage type: The type of disk that should be allocated. Local allocates from storage attacheddirectly to the host whe

Page 250

Modifying or Deleting a Service Offering69• Disk Size. Appears only if Custom Disk Size is not selected. Define the volume size in GB.• QoS Type. Thre

Page 251

CloudPlatform (powered by Apache CloudStack) Version 4.2 Administrator's Guideviii16.15.2. Limitations ...

Page 252 - 19.4. Administrator Alerts

Chapter 9. Service Offerings705. In the dialog, make the following choices:• Name. Any desired name for the system offering.• Description. A short des

Page 253 - 19.4.2.1. SNMP Alert Details

Changing the Secondary Storage VM Service Offering on a Guest Network716.Click the Change Service button. 7. Select the offering you want.The Change s

Page 255

Chapter 10.73Setting Up Networking for Users10.1. Overview of Setting Up Networking for UsersPeople using cloud infrastructure have a variety of needs

Page 256

Chapter 10. Setting Up Networking for Users74• Source NAT per zone is not supported when the service provider is virtual router. However, SourceNAT pe

Page 257 - CloudPlatform API

Support Matrix for an Isolated Network (Combination)75Virtual Router VPC VirtualRouterBigIP F5 Juniper SRX CitrixNetScalerPortForwardingY Y N Y NLoad

Page 258

Chapter 10. Setting Up Networking for Users76NWDevicesDHCP DNS UserDataSourceNATStaticNATPortForwardingLoadBalancingRemoteVPNNetworkACLUsageMonitoring

Page 259 - 21.1. Performance Monitoring

Support Matrix for Basic Zone7710.4.4. Support Matrix for Basic ZoneY = SupportedN = Not SupportedNWDevicesDHCP DNS UserDataSourceNATStaticNATPortForw

Page 260

Chapter 10. Setting Up Networking for Users78a web server farm and require a scalable firewall solution, load balancing solution, and alternatenetwork

Page 261 - Troubleshooting

Creating a New Network Offering79• Supported Services. Select one or more of the possible network services. For some services,you must also choose the

Page 262 - 22.1.3. Standard Events

ix17. Working with System Virtual Machines 22917.1. The System VM Template

Page 263 - 22.1.5. Event Log Queries

Chapter 10. Setting Up Networking for Users80Supported Services Description Isolated Sharedbeen configured inthe cloud.VPN For more information,see Se

Page 264 - 22.1.6.2. Procedure

Changing the Network Offering on a Guest Network81Side by Side: In side by side mode, a firewall device is deployed in parallel with the loadbalancer

Page 265 - 22.3.1. Using cloud-bugtool

Chapter 10. Setting Up Networking for Users822. If you are changing from a network offering that uses the CloudPlatform virtual router to onethat uses

Page 266

Creating and Changing a Virtual Router Network Offering83• System Offering. Choose the system service offering that you want virtual routers to use in

Page 268 - Solution

Chapter 11.85Working With Virtual Machines11.1. About Working with Virtual MachinesCloudPlatform provides administrators with complete control over th

Page 269 - Appendix A. Event Types

Chapter 11. Working With Virtual Machines8611.2.1. Monitor VMs for Max CapacityThe CloudPlatform administrator should monitor the total number of VM i

Page 270

Creating VMs87Once a virtual machine is destroyed, it cannot be recovered. All the resources used by the virtualmachine will be reclaimed by the syste

Page 271 - Appendix B. Alerts

Chapter 11. Working With Virtual Machines882. In the left navigation bar, click Instances.3. Click Add Instance.4. Select a zone.5. Select a template,

Page 272

Accessing VMs89virtual machine. A linked clone is also a copy of an existing virtual machine, but it has ongoingdependency on the original. A linked c

Comments to this Manuals

No comments