Configure the Cisco DNA Center Appliance

Similar documents
Configure the Cisco DNA Center Appliance

Configure the Cisco DNA Center Appliance

Troubleshooting Cisco APIC-EM Multi-Host

Release Notes for Cisco Application Policy Infrastructure Controller Enterprise Module, Release x

Configuring Cisco Mobility Express controller

Troubleshooting Cisco APIC-EM Single and Multi-Host

Cisco Digital Network Architecture Center Appliance Installation Guide, Release 1.0

VMware Identity Manager Connector Installation and Configuration (Legacy Mode)

Smart Call Home Deploying thetransport Gateway on Cisco Unified Computing System and Red Hat Linux

SOA Software API Gateway Appliance 6.3 Administration Guide

IBM Single Sign On for Bluemix Version December Identity Bridge Configuration topics

Installing the Cisco Virtual Network Management Center

Create a pfsense router for your private lab network template

Cisco Prime Collaboration Deployment

Installing or Upgrading ANM Virtual Appliance

SUSE Cloud Admin Appliance Walk Through. You may download the SUSE Cloud Admin Appliance the following ways.

Lab - Configure Wireless Router in Windows

Connect the Appliance to a Cisco Cloud Web Security Proxy

Lab - Connect to a Router for the First Time

Deploying Cisco UCS Central

Installing and Configuring vcloud Connector

The Balabit s Privileged Session Management 5 F5 Azure Reference Guide

Step 3 - How to Configure Basic System Settings

Installing and Configuring vcloud Connector

ACE Live on RSP: Installation Instructions

Installing Cisco APIC-EM on a Virtual Machine

Configuring the Cisco TelePresence System

Chapter 10 - Configure ASA Basic Settings and Firewall using ASDM

ForeScout CounterACT. Single CounterACT Appliance. Quick Installation Guide. Version 8.0

Connectra Virtual Appliance Evaluation Guide

Managing the Mobility Express Network

Chapter 10 Configure AnyConnect Remote Access SSL VPN Using ASDM

Configuring the SMA 500v Virtual Appliance

Installation and Upgrade

Initial Setup. Cisco APIC Documentation Roadmap. This chapter contains the following sections:

EdgeConnect for Amazon Web Services (AWS)

Installing CMX 10.5 on Cisco MSE 3375

Configure Site Network Settings

Deploy the ExtraHop Discover 3100, 6100, 8100, or 9100 Appliances

VMware vsphere 5.5: Install, Configure, Manage Lab Addendum. Lab 3: Configuring VMware ESXi

Installing Cisco StadiumVision Director Software from a DVD

CSPC OVA Getting Started Guide

Installation. Power on and initial setup. Before You Begin. Procedure

UDP Director Virtual Edition Installation and Configuration Guide (for Stealthwatch System v6.9.0)

Software-Defined Access Deployment Guide

Cisco CSPC 2.7.x. Quick Start Guide. Feb CSPC Quick Start Guide

Managing GSS Devices from the GUI

Deploy the ExtraHop Discover Appliance 1100

Understanding UCS Server Configuration Utility User Interface

VMware Identity Manager Cloud Deployment. DEC 2017 VMware AirWatch 9.2 VMware Identity Manager

VMware Identity Manager Cloud Deployment. Modified on 01 OCT 2017 VMware Identity Manager

StorSimple Appliance Quick Start Guide for Software Version 1.2.1

Configuring the Cisco APIC-EM Settings

Redhat OpenStack 5.0 and PLUMgrid OpenStack Networking Suite 2.0 Installation Hands-on lab guide

Cisco VDS Service Broker Software Installation Guide for UCS Platforms

Installing Your System Using Manual Deployment

Settings. IP Settings. Set Up Ethernet Settings. Procedure

Proofpoint Threat Response

Using SSL to Secure Client/Server Connections

Installing and Configuring VMware Identity Manager Connector (Windows) OCT 2018 VMware Identity Manager VMware Identity Manager 3.

Figure 5-25: Setup Wizard s Safe Surfing Screen

Installation of Cisco Business Edition 6000H/M

4. Web-based Switch Configuration

Get Started with Cisco DNA Center

Configuring High Availability (HA)

Load Balancing Censornet USS Gateway. Deployment Guide v Copyright Loadbalancer.org

Forescout. Quick Installation Guide. Single Appliance. Version 8.1

Deploying VMware Identity Manager in the DMZ. JULY 2018 VMware Identity Manager 3.2

Upgrading Earlier Release Version Servers for Cisco UCS Manager Integration

Installing Cisco MSE in a VMware Virtual Machine

Dell EMC License Manager Version 1.5 User's Guide

CounterACT 7.0 Single CounterACT Appliance

Software-Defined Access Deployment Guide

Read the following information carefully, before you begin an upgrade.

ECDS MDE 100XVB Installation Guide on ISR G2 UCS-E and VMWare vsphere Hypervisor (ESXi)

Platform Compatibility... 1 Known Issues... 1 Resolved Issues... 2 Deploying the SRA Virtual Appliance... 3 Related Technical Documentation...

Threat Response Auto Pull (TRAP) - Installation Guide

Cisco Mini ACI Fabric and Virtual APICs

Configure HyperFlex Hardware Acceleration Cards

Chapter 2: System and Network Architecture. Chapter 4: Configuration of the Server and Client Machines. Chapter 5: Starting a Functional Test

Cisco IMC Supervisor Installation Guide for VMware vsphere and Microsoft Hyper-V, Release 2.0

Installation of Cisco HCM-F

HyTrust Appliance Installation Guide

Deploying the LANGuardian Virtual Appliance on VMware ESXi 6.5

Stealthwatch Flow Sensor Virtual Edition Installation and Configuration Guide (for Stealthwatch System v6.9.0)

UDP Director Virtual Edition

System Setup. Accessing the Administration Interface CHAPTER

Deploying VMware Identity Manager in the DMZ. SEPT 2018 VMware Identity Manager 3.3

Implementing Infoblox Data Connector 2.0

6.1. Getting Started Guide

Managing Pod Through Cisco VIM Insight

Deployment Guide: Routing Mode with No DMZ

Upgrading the Cisco APIC-EM Deployment

dctrack Quick Setup Guide (Recommended) Obtain a dctrack Support Website Username and Password

Deploy the ExtraHop Explore Appliance on a Linux KVM

System Configuration. The following topics explain how to configure system configuration settings on Firepower Management Centers and managed devices:

ISO Installation Guide. Version 1.2 December 2015

Getting Started with ESX Server 3i Installable Update 2 and later for ESX Server 3i version 3.5 Installable and VirtualCenter 2.5

HyTrust CloudControl Installation Guide

Crestron Mercury Tabletop UC Audio Conference Console for Microsoft Teams

Transcription:

Review Cisco DNA Center Configuration Wizard Parameters, page 1 Configure Cisco DNA Center Using the Wizard, page 5 Review Cisco DNA Center Configuration Wizard Parameters When Cisco DNA Center configuration begins, an interactive configuration wizard prompts you to enter configuration parameter information. The following table describes the parameters for which the wizard will prompt you, and the information you will need to enter in order to complete the configuration. Table 1: Cisco DNA Center Configuration Wizard Parameters Configuration Wizard Prompt Description Example Host IP address Enter a host IP address for each of the 10.0.0.12 ports you are going to use (at minimum, addresses for the ports connecting the appliance to the enterprise network and to the management network). These must be valied IPv4 addresses. Netmask Enter a netmask for the IP address. 255.255.255.0 This must be a valid IPv4 netmask. Default Gateway IP address Enter a default gateway IP address. 10.12.13.1 This must be a valid IPv4 address for the default gateway. 1

Review Cisco DNA Center Configuration Wizard Parameters Configuration Wizard Prompt DNS Servers Description Enter a DNS server address. This must be a valid IPv4 address for the primary DNS server. Enter either a single IP address for a single primary server, or multiple IP addresses separated by spaces for multiple DNS servers. Example 10.15.20.25 Static Routes Enter the IP address and subnet mask for a manually specified route for this interface. We recommend that you always specify at least one static route for the interface connecting to the fabric underlay. 204.2.0.0/255.255.0.0 Enter either a single IP address and subnet mask for a single static route, or a space-separated list of multiple IP addresses/masks for multiple static routes. HTTPS Proxy HTTPS Proxy Username HTTPS Proxy Password Cluster Virtual IP Address Enter the URL of any network proxy used to access the network. Enter the username used to access the proxy. Enter the password used to access the proxy. Leave blank. This is used only in multihost cluster deployments, which are not supported in this release. https://proxy.mycompany.com:8080 MyUserName MyPass901& 10.25.20.25 2

Review Cisco DNA Center Configuration Wizard Parameters Configuration Wizard Prompt Linux Password Description Enter a Linux password. Identifies the Linux administrator password that is used for CLI access to the Maglev roots and clients. This is the password for the "maglev" user. You must create this password because there is no default. The password must meet the following requirements: Eight character minimum length. Does NOT contain a tab or a line break. Does contain characters from at least three of the following categories: Uppercase alphabet Lowercase alphabet Numeral Special characters (for example,! or #) Example MyPass01 (Optional) Password Generation Seed (Optional) Auto Generated Password Instead of creating and entering your own Linux administrator password, you can enter a seed phrase and press Generate Password to have the configuration wizard generate a random and secure password using that seed phrase. If you choose to enter a seed phrase, the generated password will be displayed in the Auto Generated Password field, where you can further edit it. If you choose to enter a seed phrase, the generated password (including your seed phrase) will be displayed in this field. If desired, you can either use this password "as is", or you can further edit this auto generated password. You must select Use Generated Password to save the password and have it used automatically. WhenAprilLastInDooryard N/A 3

Review Cisco DNA Center Configuration Wizard Parameters Configuration Wizard Prompt Administrator Password Description Enter the admin password. Identifies the password used for GUI access to DNA center. You must create this password because there is no default. The password must meet the following requirements: Eight character minimum length. Does NOT contain a tab or a line break. Does contain characters from at least three of the following categories: Uppercase alphabet Lowercase alphabet Numeral Special characters (for example,! or #) Example MyIseYPass2 NTP Servers Services Subnet Enter a primary NTP server address. This must be a valid IPv4 address or hostname of a Network Time Protocol (NTP) server. Before you deploy DNA Center, make sure that the time on the DNA Center appliance system clock is current and that you are using a Network Time Protocol (NTP) server that is keeping the correct time. Enter a comma-delimited list of dedicated IP subnets for DNA Center to use in managing its own services. The two dedicated IPv4 service management subnets must not conflict or overlap with any other subnets in use in the enterprise network. The minimum size of the subnets is 21 bits; the recommended size is 20 bits to 16 bits. There is no default. 10.12.13.10 Enter either a single IP address for a single NTP primary server, or multiple IP addresses separated by spaces for several NTP servers. We recommend that you configure three NTP servers for your deployment. 10.60.0.0/21, 10.60.8.0/21 4

Configure Cisco DNA Center Using the Wizard Configuration Wizard Prompt Description Example Cluster Services Subnet Enter a dedicated IP subnet for DNA Center to use in managing its clustering services. The dedicated IPv4 subnet cluster-service management subnet must not conflict or overlap with any other subnet in use in the enterprise network, including the dedicated DNA services-management subnet. The default is 10.100.0.0/16. 10.100.0.0/16 Configure Cisco DNA Center Using the Wizard Perform the steps below to configure the Cisco DNA Center appliance as a single host. The entire process takes over an hour, with the installation of component packages (after your final review of all the wizard settings) taking approximately 45 minutes. Before You Begin Be sure that you have: Configured CIMC for use with the appliance. See Configure CIMC. Used CIMC to configure the appliance hardware. See Use CIMC to Configure the Appliance. Reviewed and gathered appropriate information about the parameters for which the configuration wizard will prompt you. See Review Cisco DNA Center Configuration Wizard Parameters, on page 1. Step 1 Step 2 Step 3 Boot up the host. Review the Welcome to the DNA Center Configuration Wizard! screen and choose the Start a new DNA Center cluster option to begin. Enter configuration values for the NETWORK ADAPTER #1 on the host. The configuration wizard discovers and prompts you to confirm values for the network adapter or adapters on your host. Host IP address Cluster Link Enter the host IP address for the port that connects the appliance to the enterprise network (the first 10Gb VIC port). The wizard validates the value entered and issues an error message if incorrect. If you receive an error message, check that the IP exists and that the port is cabled correctly. If you entered the wrong IP and get an error, use <<back to re-enter the IP. Although multi-host clustering is not supported in this release, select the first checkbox. 5

Configure Cisco DNA Center Using the Wizard Netmask Default Gateway IP address DNS Servers Static Routes Enter the netmask for the network adapter's IP address. Enter a default gateway IP address to use for the network adapter. If no other routes match the traffic, traffic will be routed through this IP address. Enter the DNS server or servers IP addresses (separated by spaces) for the network adapter. If required for your network, enter a space separated list of static routes in this format: <network>/<netmask>/<gateway> Static routes, which define explicit paths between two routers, cannot be automatically updated; you must manually reconfigure static routes when network changes occur. You should use static routes in environments where network traffic is predictable and where the network design is simple. You should not use static routes in large, constantly changing networks because static routes cannot react to network changes. Once satisfied with the network adapter settings, enter next>> to proceed. After entering next>>, the wizard validates the values you entered. After validation, you are prompted to enter values for each of the remaining three adapters, in order of discovery. Repeat the process you used for the first network adapter, configuring each as per their cabling to their respective networks. When you are finished entering and validating each of the network adapter values, enter next>> to proceed. Step 4 Enter configuration values for any NETWORK PROXY you are using. HTTPS Proxy Enter the URL of the network proxy. HTTPS Proxy Username HTTPS Proxy Password Enter the user name used to access the network proxy. Enter the password used to access the network proxy. After configuring the proxy, enter next>> to proceed. Step 5 Enter configuration values for any MAGLEV CLUSTER DETAILS. Cluster Virtual IP Address Leave this blank. This is used only in multihost cluster deployments, which are not supported in this release. When you are finished, enter next>> to proceed. Step 6 Enter values for the USER ACCOUNT SETTINGS. 6

Configure Cisco DNA Center Using the Wizard Linux Password Re-enter Linux Password Password Generation Seed Auto Generated Password Administrator Passphrase Re-enter Administrator Passphrase Enter a Linux password. The Linux password is used to ensure security for both the Maglev root and clients located on the host. Access to the Maglev root and clients requires this password. The default username is maglev and cannot be changed The Linux password is encrypted and hashed in the DNA Center database. Confirm the Linux password by entering it a second time. (Optional) Instead of creating and entering your own password in the above Linux Password fields, you can enter a seed phrase and have the wizard generate a random and secure password using that seed phrase. Enter a seed phrase and then press <Generate Password> to generate the password. (Optional) The seed phrase appears as part of a random and secure password. If desired, you can either use this password "as is", or you can further edit this auto generated password. Press <Use Generated Password> to save the password. When finished with the password, be sure to save it to a secure location for future reference. Enter an administrator passphrase. The administrator passphrase is encrypted and hashed in the DNA Center database. Confirm the administrator passphrase by entering it a second time. When you are finished, enter next>> to proceed. Step 7 Enter configuration values for NTP SERVER SETTINGS. NTP servers Enter a single NTP server address or a list of NTP servers, each separated by a space. We recommend that, for redundancy purposes, you configure at least three NTP servers for your deployment. Cisco routers and switches can also be configured as NTP servers. After configuring the NTP server(s), enter next>> to proceed. 7

Configure Cisco DNA Center Using the Wizard Step 8 Enter configuration values for MAGLEV ADVANCED SETTINGS: Services Subnet Enter a comma-delimited list of dedicated IP subnets for DNA Center to use in managing its own services. There is no default. Cluster Services Subnet Enter a dedicated IP subnet for DNA Center to use in managing its clustering services. The default subnet is 10.100.0.0/16. When you are finished, enter next>> to proceed. Step 9 A final message appears stating that the wizard is now ready to proceed with applying the configuration. The following options are available: [back] Review and verify your configuration settings. [cancel] Discard your configuration settings and exit the configuration wizard. [proceed] Save your configuration settings and begin applying them. Enter proceed>> to complete the installation. After entering proceed>>, the configuration wizard applies the configuration values that you entered above. At the end of the configuration process, a CONFIGURATION SUCCEEDED! message appears. The appliance will reboot automatically and display messages on the KVM console as it applies your settings and brings up services. This process can take several hours; you can monitor its progress via the console. Step 10 Step 11 Step 12 Step 13 Open your compatible web browser and enter the DNA Center host IP address to access the DNA Center GUI. For compatible browsers, see Access Cisco DNA Center Using a Web Browser. After entering the IP address in the browser, a message stating that "Your connection is not private" appears. Ignore the message and click the Advanced link. After clicking the Advanced link, a message stating that the site s security certificate is not trusted appears. Ignore the message and click the link. This message appears because DNA Center uses a self-signed certificate. You will have the option to upload a trusted certificate using the DNA Center GUI after installation completes. In the DNA Center Login window, enter the administrator username and password that you configured earlier and click the Log In button. What to Do Next When these tasks are complete: 1 Log in to the DNA Center GUI for the first time and perform First-Time Setup. See Log In to Cisco DNA Center For the First Time 2 Integrate DNA Center with Cisco Identity Services Engine (ISE). This is a standard requirement for nearly all DNA Centerdeployments. See Integrate Cisco ISE With DNA Center. 8

Configure Cisco DNA Center Using the Wizard 3 Start to use DNA Center to manage and configure your network. For assistance with navigating the GUI and becoming familiar with its features, see the "Getting Started" chapter in the Cisco DNA Center User Guide. 9

Configure Cisco DNA Center Using the Wizard 10