Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.


Note
titleNote

vDiscovery on VNets can be performed for vNIOS appliances deployed on Azure public cloud and Azure Government only.

...

Note
titleNote
  • Discovered virtual networks in Microsoft Cloud is mapped to network containers in NIOS.
  • Updates done by Microsoft to the root CAs of Azure services can cause vDiscovery to fail. If vDiscovery fails with ERROR: PycURL error: (60, 'SSL certificate problem: unable to get local issuer certificate'): 
    1. Download the DigiCert Global Root G2 Certificate from DigiCert Root Certificates.
    2. Upload the certificate to NIOS as described in the Uploading CA Certificates section in the Infoblox NIOS Documentation.


To perform a vDiscovery job for a VNet, complete the following tasks:

  1. Configure DNS resolver in NIOS, as described in the Configuring DNS Resolver section.
  2. Register an application with the Azure Active Directory through the Azure classic portal, as described in Integrating vDiscovery with Azure Active Directory.
  3. Add the new application as a user through the Azure resource manager portal, as described in Adding vDiscovery Application as a New User.
  4. Perform vDiscovery for service instances and subnets in selected VNets. For detailed information, refer to Configuring vDiscovery Jobs in the Infoblox NIOS Documentation.

    When configuring the endpoint for the vDiscovery job, ensure that you select the following:

    • Server Type: Select Azure.
    • Client ID: Use the CLIENT ID you obtained for the application you created in Azure.
    • Client Secret: Enter the key value of the application to authenticate the user account.
    • Service Endpoint: Use the token endpoint URL you selected for the new application.
  5. After performing a vDiscovery job on your VNets, you can view and manage discovered data in NIOS. For detailed information, refer to the Infoblox NIOS Documentation. You can also create DNS records for discovered IP addresses. For information, see Creating DNS Records for Discovered IP Addresses.

...

CloudService Endpoint Pattern
Azure AD Germanyhttps://login.microsoftonline.de
Azure AD China operated by 21Vianethttps://login.chinacloudapi.cn


Configuring DNS Resolver

To perform vDiscovery for all resources in your Microsoft VNets, you must enable DNS resolvers in NIOS. To configure DNS resolver for the Grid, complete the following in the NIOS GUI, Grid Manager:

...