...
Global | |
---|---|
Service | Name Scope: Private / Public Matching criteria: Transport protocol: UDP/TCP/ICMP/GRE Action: Allow / Deny |
PCLI | show fib router xxxxxxx |
Global Service | packet without a Tenant ( default bucket ) |
Tenants | Tenant is as the endpoints/users that need a similar set of Nmae = endpoint + service >> control access to Network |
subtenants | Hierarchical scope subtenant.tenant or sub3.sub2.sub1.tenant |
Apply ( 3 ways ) | to Network Interface |
Neighborhoods: subnet(s) – map to – tenant | |
dynamic: using hte metadata | |
PCLI | show tenant members router all |
Security Policies | |
Local | |
Router Provisioning | |
ZTP or Zero-Touch Provisioning | salt-minion call the salt-master on the Conductor |
OTP or One-Touch Provisioning | |
Automated Provisioner | Conductor provisioning |
ISO image | Centos 7.5 128T sofware Useful OS settings and tools |
OTP's ISO and | DHCP client on interfaces Web server GUI >> Need to add the Conductor IP@ |
Interactive ISO | |