官术网_书友最值得收藏!

Introduction

We will start configuring the ACI fabric by creating some policies and a couple of tenants.

The ACI policy model is all about mapping application requirements to policies. We need tenant A to talk to an SQL server; we create a policy for that. We also need tenant A to talk the storage system, so we create a policy for that.

The APIC looks after the policies. When we make a change to an object within the fabric, it is the job of the APIC to apply this change to the policy model, which then makes the change to the affected endpoint. Such an example would be adding a new device to the fabric. Communication with the new device is prohibited until the policy model is updated to include the new device.

There are different policies, but they can be split into fairly distinct groups: those that govern the ACI fabric as a whole and those that are concerned with tenants.

All the policies are recorded in the MIT, or management information tree.

The MIT

In this chapter, we will start by creating a fabric policy to enable NTP (Network Time Protocol), as it is an essential service for the smooth functioning of the fabric (along with DNS, which is covered in Chapter 4, Routing in ACI). We will look at access policies and enable CDP (Cisco Discovery Protocol) across the fabric.

We will then create our first tenant and set it up for networking by creating the networking and application components, and then we will give it something to do by creating a contract that we will provide to a second tenant to consume.

This is a basic idea of what we will be configuring:

We will also look at creating a management contract for permitting SNMP traffic, which we will need for Chapter 8, Troubleshooting ACI.

主站蜘蛛池模板: 奉节县| 辽中县| 玛沁县| 罗源县| 周宁县| 桂阳县| 潍坊市| 南安市| 辽阳县| 五家渠市| 格尔木市| 玉林市| 修水县| 舞钢市| 平山县| 建水县| 潜江市| 松溪县| 辛集市| 永仁县| 龙口市| 嘉义县| 阿图什市| 聊城市| 乐清市| 伊宁市| 江源县| 西峡县| 洛扎县| 磐安县| 南溪县| 怀安县| 平舆县| 苍溪县| 阿合奇县| 长岭县| 郧西县| 南昌市| 招远市| 武义县| 轮台县|