官术网_书友最值得收藏!

Introduction

We will start configuring the ACI fabric by creating some policies and a couple of tenants.

The ACI policy model is all about mapping application requirements to policies. We need tenant A to talk to an SQL server; we create a policy for that. We also need tenant A to talk the storage system, so we create a policy for that.

The APIC looks after the policies. When we make a change to an object within the fabric, it is the job of the APIC to apply this change to the policy model, which then makes the change to the affected endpoint. Such an example would be adding a new device to the fabric. Communication with the new device is prohibited until the policy model is updated to include the new device.

There are different policies, but they can be split into fairly distinct groups: those that govern the ACI fabric as a whole and those that are concerned with tenants.

All the policies are recorded in the MIT, or management information tree.

The MIT

In this chapter, we will start by creating a fabric policy to enable NTP (Network Time Protocol), as it is an essential service for the smooth functioning of the fabric (along with DNS, which is covered in Chapter 4, Routing in ACI). We will look at access policies and enable CDP (Cisco Discovery Protocol) across the fabric.

We will then create our first tenant and set it up for networking by creating the networking and application components, and then we will give it something to do by creating a contract that we will provide to a second tenant to consume.

This is a basic idea of what we will be configuring:

We will also look at creating a management contract for permitting SNMP traffic, which we will need for Chapter 8, Troubleshooting ACI.

主站蜘蛛池模板: 红河县| 宝鸡市| 宁都县| 克山县| 漳平市| 许昌市| 泽库县| 大同市| 江永县| 宜宾县| 安康市| 吕梁市| 仁化县| 弥渡县| 板桥市| 大港区| 乌兰浩特市| 满洲里市| 特克斯县| 巴马| 云林县| 合水县| 砚山县| 炎陵县| 营口市| 横山县| 巩义市| 新乡县| 藁城市| 汤阴县| 胶州市| 丹寨县| 藁城市| 明溪县| 宝坻区| 鸡泽县| 平山县| 黔江区| 万荣县| 金平| 阿尔山市|