...
Global configuration | |
---|---|
Authority | Conductor IP@ |
Tenants | Tenant is as the endpoints/users that need a similar set of Name = endpoint + service >> control access to Network |
subtenants: Hierarchical scope subtenant.tenant or sub3.sub2.sub1.tenant | |
Service Policy | define Vector ( broadband or MPLS ) |
Security Policy | encrypted or not |
Service | Name Scope: Private / Public ???? Matching criteria: Transport protocol: UDP/TCP/ICMP/GRE Action: Allow / Deny Security Policy: Service Policy: Access Policy: |
PCLI | show fib router xxxxxxx |
Global Service | packet without a Tenant ( default bucket ) |
Apply ( 3 ways ) | to Network Interface |
Network interface | Neighborhoods: subnet(s) – map to – tenant |
dynamic: using the metadata | |
PCLI | show tenant members router all |
Local Configuration: Router | |
LAN Interface | Device Interface:
|
Network Interface:
| |
DHCP server ( on the LAN interface ) | Host service:
|
service-route ( for localbreakout and EoSVR??? ) | https://docs.128technology.com/docs/config_reference_guide/#service-route Branch: point to the peer DC: point the DC servers, or GW |
service-route policy ( LB ) | https://docs.128technology.com/docs/config_reference_guide/#service-route-policy |
...