Ask The Experts - Cisco

Transcription

Ask the ExpertsInstallation / Implementation BestPractices: Crosswork Data Gateway forCloud for Trust Insights[YYYY Month DD]

This session is for you ifyou: 2021 Cisco and/or its affiliates. All rights reserved. Cisco ConfidentialPlan to deploy Crosswork Data Gateway forCloud use cases.2

By using the CrossworkData Gateway for Cloud,you can: 2021 Cisco and/or its affiliates. All rights reserved. Cisco ConfidentialHave a way to protect and test theintegrity of Cisco IOS XR devices.View hardware and software integrityand trustworthy status of productionrouters.3

Getting you to your business outcomes imizeAdoptEvaluateAccelerateEngageUseNeedDesigned to maximizevalue at the Implementstage 2021 Cisco and/or its affiliates. All rights reserved. Cisco ConfidentialOnboardImplementExperts will present bestpractices for implementingthe Crosswork Data Gateway4

Today’sconversation 2021 Cisco and/or its affiliates. All rights reserved. Cisco Confidential01Installation workflow overview02Installation step-by-step03Software installation and compatibility guidelines5

Installationworkflow overview 2021 Cisco and/or its affiliates. All rights reserved. Cisco Confidential6

Installation workflow overviewStep 1Step 2Check Hypervisor readinessCheck hardware resourcesStep 3Step 4Verify networking:Define network services:* MGMT NetworkNTP and DNS Servers, DNSSearch Domain, SCP Serverand credentials to use* Control/Data TrafficVerify PortsStep 5Step 6Install CDG using two options:Post-Installation Tasks:* CDG via vCenter to deployan OVF TemplateLog In / Log Out* CDG via OVF ToolConfigure Control ProxyGenerate/Export enrollment packageStep 7Login to Crosswork cloud andEnroll CDG with CrossworkTrust InsightsVerify CDG Connectivity 2021 Cisco and/or its affiliates. All rights reserved. Cisco Confidential7

Installation stepby-step

Crosswork Data Gateway compatibilityStep 1: Software Dependencies VMware vCenter Server 6.7 Update 3g or later (ESXi 6.7 Update 1 installed onhosts) VMware vCenter Server 6.5 Update 2d or later (ESXi 6.5 Update 2 installed onhosts) 2021 Cisco and/or its affiliates. All rights reserved. Cisco Confidential9

Crosswork Data Gateway compatibilityStep 2, 3: Hardware and Networking Hardware resources required: 32 GB memory, Disk 70 GB, 8 vCPUs. Setup network configuration for the two networks at ESXi hypervisor level. Network Interfaces:Combination #vNIC0vNIC11Management TrafficControl/Data Traffic---2Management TrafficControl/Data Traffic 2021 Cisco and/or its affiliates. All rights reserved. Cisco Confidential10

Crosswork Data Gateway compatibilityStep 4: Define Network Services and verify Ports Define NTP and DNS Servers IP Addresses before installation and be sure they are reachable. Define the Control Proxy URL for internet connectivity. Define SCP URL and credentials to export the Enrollment package during installation. Next slide details the Ports required for CDG implementation Following values can be configured post-installation: NTP, DNS, SCP, Control Proxy, Staticroutes, SSH Keys, vNIC1 MTU. 2021 Cisco and/or its affiliates. All rights reserved. Cisco Confidential11

Crosswork Data Gateway compatibilityStep 4: Define Network Services and verify Ports Consider the following ports to be opened for CDGPortProtocolUsed forDirectionType of trafficPortProtocolUsed forDirectionType of traffic22TCPSSH ta22TCPSCP 123UDPNTP nt53UDPDNS ement443UDPCrossworkControllerOutboundManagement 2021 Cisco and/or its affiliates. All rights reserved. Cisco Confidential12

Crosswork Data Gateway compatibilityStep 5 to 7: Will be covered in demo Step 5: Installation Step 6: Post-installation tasks Step 7: Enroll CDG into Crosswork Cloud 2021 Cisco and/or its affiliates. All rights reserved. Cisco Confidential13

Key pointsto rememberBe aware of dependencies:software compatibilities andrequired resources.Prepare in advance all theconfiguration parameters.Note that most of installationtasks are done using vCenter. 2021 Cisco and/or its affiliates. All rights reserved. Cisco Confidential14

nstallationandConfigurationGuide/b cdg 114 installation configuration guide/b cdg 111 installation customization guide chapter dsystems-management/crosswork-networkautomation/b cisco-crosswork-cloud-userguide/m about-trust-insights.html 2021 Cisco and/or its affiliates. All rights reserved. Cisco ConfidentialContinue theconversation in our[solution name]community[Please insert URL forCisco technologycommunity related tothis ATX]15

Continuing your timizeAdoptEvaluateAccelerateEngageUseNeed 2021 Cisco and/or its affiliates. All rights reserved. Cisco ConfidentialOnboardImplement16

Get more help along your Crosswork CloudjourneyFor CDG Implementation use case:Product Overview and Business Value: Trust Insights Architecture Transformation Planning: Crosswork Data Gateway for Cloud Success Tips Component Integration: Network Device Onboarding to Crosswork Cloud ATX Cisco Customer Experience Services: TrainingLearn more about our available services. 2021 Cisco and/or its affiliates. All rights reserved. Cisco Confidential17

an OVF Template * CDG via OVF Tool Step 6 Post-Installation Tasks: Log In / Log Out Generate/Export enrollment package Configure Control Proxy Verify CDG Connectivity Step 7 Login to Crosswork cloud and Enroll CDG with Crosswork Trust Insights