After you have entered and saved your VM configuration, you can view the information in the Summary panel. If for any reason you need to make changes to the configuration, you can go back to step 2 (Configure VM settings) to do so. If the configuration is correct, click OK to accept (as illustrated in Figure 1.4).
Figure 1.4 Viewing VM Summary
Integrating vDiscovery with Azure Active Directory
Adding vDiscovery Application as New User
After you have set up the vDiscovery application in Azure Active Directory, you must add this application as a new user to your vNIOS for Azure subscription through the Azure resource manager portal, and then define its administrative role.
To add the application as a new user and define its role:
- Go to the Microsoft Azure web site.
- Log in to your Microsoft Azure account.
- On the Microsoft Azure web site, go to your Infoblox vNIOS for Azure subscription and select All settings on the right panel.
- In the Settings panel, select Users, and then click the + Add to add new access. In the Select a role panel, click Reader.
- In the Add users panel, locate the newly created vDiscovery application. You can use the filter function to locate the application. Select the application, and then click Select to create the user. Click OK in the Add access panel to save your configuration.
- You have added the new applications as a user with the Reader role
You can now configure and perform a vDiscovery job through Grid Manager (Infoblox GUI). Ensure that you have the following information that you previously recorded in order to configure a vDiscovery job:
- Client ID = Client ID in NIOS
- Key value = Client Secret in NIOS
- Token endpoint URL = Service Endpoint in NIOS
When creating a new vDiscovery job, select Azure as the Server Type. Infoblox also recommends that you select "The tenant's network view" as the network views for both public and private IP addresses. For detailed information about vDiscovery jobs and how to configure them, refer to Configuring vDiscovery Jobs in the Infoblox NIOS Administrator Guide.
Creating DNS Records for Discovered IP Addresses
When you configure vDiscovery jobs, you can enable the appliance to automatically create DNS records for discovered virtual entities in your VNets. When you enable this feature, NIOS automatically adds Host records or A and PTR records to the authoritative zones for the discovered IP addresses based on your configuration. You can also enter a formula that NIOS uses to create the DNS names for the discovered IP addresses based on their VM parameters such as vm_name or discovered_name for data discovered through Azure. By doing so, NIOS is able to discover public and private IP addresses by looking up the corresponding DNS names.
Discovered data includes IP addresses for the VMs and associated information such as VM name, VM ID, tenant ID, and others. Note that corresponding zones must already exist in order for NIOS to add DNS records. Otherwise, NIOS does not add any DNS records and it logs a message to the syslog.
NIOS automatically adds DNS records (in the network views specified for vDiscovery) based on the following conditions:
- The corresponding DNS zones must already exist in the NIOS database. NIOS does not automatically create DNS zones for the records.
- To create a PTR records, the corresponding reverse-mapping zone must exist.
- A DNS zone cannot be associated with more than one DNS view. NIOS does not create DNS records for zones that are associated with multiple DNS views.
- NIOS adds new DNS records only if the VM name for the discovered IP address is available and there is no conflict between the discovered data and the associated network view.
The following matrix captures some scenarios about how vDiscovery handles various actions and what the outcome is for the information on the Cloud Platform appliance and in the NIOS database.
Note: vDiscovery modifies records that are created by the vDiscovery process only. It does not create or update DNS records that are originally created by other admin users.
Actions and Conditions | Cloud Platform Data before vDiscovery | Cloud Platform Data after vDiscovery | NIOS Data before vDiscovery | NIOS Data after vDiscovery |
---|---|---|---|---|
| No data for vma | 10.10.10.1 | Zone: corp1.com | Zone: corp1.com |
| No data for vma | 10.10.10.1 | Zone: corp1.com | Zone: corp1.com |
| 10.10.10.1 | 10.10.10.1 | Zone: corp1.com | Zone: corp1.com |
| 10.10.10.1 | 10.10.10.1 | Zone: corp1.com | Zone: corp1.com |
| 10.10.10.1 | 10.10.10.1 | Zone: corp1.com | Zone: corp1.com |
| 10.10.10.1 | 10.10.10.1 | Zone: corp1.com | Zone: corp1.com |
| 10.10.10.1 | No data for vma | Zone: corp1.com | Zone: corp1.com |
| 10.10.10.1 | No data for vma | Zone: corp1.com | Zone: corp1.com |
| 10.10.10.1 | 10.10.10.1 | Zone: corp1.com | Zone: corp1.com |
| 10.10.10.1 | 10.10.10.1 | Zone: corp1.com | Zone: corp1.com |
| 10.10.10.1 | 10.10.10.1 | Zone: corp1.com | Zone: corp1.com |
| 10.10.10.1 | 10.10.10.1 | Zone: corp1.com | Zone: corp1.com |
| 10.10.10.1 | 10.10.10.1 | Zone: corp1.com | Zone: corp1.com |
| 10.10.10.1 | 10.10.10.1 | Zone: corp1.com | Zone: corp1.com |
| 10.10.10.1 | 10.10.10.1 | Zone: corp1.com | Zone: corp1.com |
| 10.10.10.1 | 10.10.10.1 | Zone: corp1.com | Zone: corp1.com |
To enable the appliance to automatically create DNS records, complete the following in Grid Manager:
- For a new vDiscoveryjob: From the Data Management tab, select the IPAM tab, then select vDiscovery -> New from the Toolbar; or from the Cloud tab, select vDiscovery -> New from the Toolbar.
or
To modify an existing job: From the Data Management tab, select the IPAM tab and click vDiscovery -> Discovery Manager from the Toolbar, or from the Cloud tab, select vDiscovery -> Discovery Manager from the Toolbar. In the vDiscovery Job Manager editor, click the Action icon next to a selected job and select Edit from the menu. - In step four of the vDiscovery Job wizard, or in the Data Consolidation tab of the vDiscovery Job Properties editor, complete the following:
- For every newly discovered IP address, create: Select this check box to enable NIOS to automatically create or update DNS records for discovered VM instances if the records were originally created byvDiscovery.
- Host: Select this to automatically create Host records for discovered VMs.
- A & PTR Record: Select this to automatically create A and PTR records for discovered VMs. Note that the DNS zones and reverse-mapping zones to which the records belong must exist in NIOS. Otherwise,vDiscovery does not create the records.
- The DNS name will be computed from the formula: Enter the formula that NIOS uses to create FQDNs for discovered VMs. You can use the auto-generated FQDNs for DNS resolution purposes. You must use the syntax of ${parameter name} for this formula. For Azure, this field supports the vm_name and discovered_name parameters. For example, when you enter ${vm_name}.corp100.com and the discovered vm_name = XYZ, the DNS name for this IP becomes XYZ.corp100.com. When you enter ${discover_name} here and the discovered name for the IP is ip-172-31-1-64.us-west-1.compute.internal, the DNS name for this IP is ip-172-31-1-64.us-west-1.compute.internal
Note: If the ${vm_name} parameter of an instance contains any special character, the appliance will not be able to identify this instance and will convert it to a managed VM using the vm_id parameter.
Click Add(+).