Cisco Catalyst Center 3.1.x on ESXi Deployment Guide

PDF

Configure a Catalyst Center on ESXi virtual appliance

Want to summarize with AI?

Log in

Overview

Walks through the various methods for configuring the virtual appliance, including the Maglev Configuration wizard, to establish network and system settings.


Configure a virtual appliance using the Maglev Configuration Wizard (default mode)

To quickly configure a virtual appliance using the Maglev Configuration Wizard and preset settings, use this procedure.

Note

The Intracluster interface is preconfigured when using this wizard. If you don't want to use the default settings for this interface, you'll need to complete the Maglev Configuration wizard with advanced mode selected.

Before you begin

Gather these information for the virtual appliance before you start this procedure:

  • Static IP address

  • Subnet mask

  • Default gateway

  • DNS address

  • NTP server details

  • Proxy server details

If you plan to configure the appliance's Management interface, also configure an additional network adapter for this interface to reside on before you start this wizard.

Procedure

1.

After deployment completes, power on the new virtual machine:

  1. In the vSphere Client, right-click the virtual machine.

  2. Choose Power > Power On.

Your virtual machine typically becomes operational in about 45 minutes, depending on bandwidth, RAM, hard disk space, and vCPU count. You can monitor progress in the VMware VM Console.

2.

Launch either the remote console or web console by clicking the appropriate link.

3.

Configure the virtual machine by completing the Maglev Configuration Wizard:

  1. You don't need to enter any settings in the wizard's STATIC IP CONFIGURATION page, so click skip>>.

    Enter static IP settings only when configuring a virtual appliance using the browser-based web UI installation mode.

  2. Click Create MKS.

  3. Click Start using MKS pre manufactured cluster.

  4. Enter the configuration values for NETWORK ADAPTER #1, as shown in the table. Click next>>.

    Catalyst Center on ESXi uses this interface to link the virtual appliance with your network.

    Host IPv4 address field

    Enter the IP address for the Enterprise interface. This is required.

    IPv4 Netmask field

    Enter the netmask for the interface IP address.

    Default Gateway IPv4 Address field

    Enter a default gateway IP address to use for the interface.

    Ensure that you enter a default gateway IP address for at least one of your appliance's interfaces. Otherwise, you will not be able to complete the configuration wizard.

    IPv4 Static Routes field

    Enter one or more static routes in this format, separated by spaces: <network>/<netmask>/<gateway>. This is usually required on the Catalyst Center on ESXi Management interface only.

    LACP Mode field

    Leave this field blank, as it's not applicable to virtual appliances.

    The wizard checks the values you entered and displays an error message if any are incorrect. If you receive an error message, check that the value you entered is correct, then reenter it. If necessary, click <<back to reenter it.

  5. You don't need to enter configuration values for NETWORK ADAPTER #2, as the Host IPv4 Address and IPv4 Netmask fields are prepopulated for the Intracluster interface. Click next>> to proceed.

  6. Enter the configuration values for NETWORK ADAPTER #3, as shown in the table. Click next>>.

    This interface allows you to access the Catalyst Center on ESXi GUI from the virtual appliance.

    Note

    This wizard page appears only if you have configured an additional network adapter for the Management interface.

    Host IPv4 address field

    Enter the IP address for the Management interface. This is required only if you are using this interface to access the Catalyst Center on ESXi GUI from your management network; otherwise, you can leave it blank.

    IPv4 Netmask field

    Enter the netmask for the interface IP address.

    Default Gateway IPv4 Address field

    Enter a default gateway IP address to use for the interface.

    Ensure that you enter a default gateway IP address for at least one of your appliance's interfaces. Otherwise, you will not be able to complete the configuration wizard.

    IPv4 Static Routes field

    Enter one or more static routes in this format, separated by spaces: <network>/<netmask>/<gateway>.

    Correct any validation errors to proceed. The wizard applies your network adapter configurations.

  7. In the DNS Configuration page, enter the IP address of the preferred DNS server. Click next>>. If you are entering multiple DNS servers, separate the IP addresses in the list with spaces.

    • For NTP, ensure port 123 (UDP) is open between Catalyst Center on ESXi and your NTP server.

    • Configure a maximum of three DNS servers. Configuring more than three DNS servers for a virtual appliance can cause problems.

    The wizard updates, indicating that it must shut down the controller in order to validate the settings you have entered so far.

  8. Select one of these steps:

    • If you need to change any settings, click <<back as needed, make the necessary changes, and then return to this wizard page.

    • If you're happy with the settings you've entered, click proceed>>.

  9. After validation successfully completes, select one of these steps:

    • If your network does not use a proxy server to access the internet, click skip proxy>> to proceed.

    • If your network does use a proxy server, enter these configuration values in the NETWORK PROXY wizard page. Click next>>.

    HTTPS Proxy field

    Enter the URL or host name of an HTTPS network proxy used to access the Internet.

    Note

    Connection from Catalyst Center on ESXi to the HTTPS proxy is supported only through HTTP in this release.

    HTTPS Proxy Username field

    Enter the user name used to access the network proxy. If no proxy login is required, leave this field blank.

    HTTPS Proxy Password field

    Enter the password used to access the network proxy. If no proxy login is required, leave this field blank.

    After you provide the necessary information, correct any validation errors to proceed, as needed.

  10. You are next prompted to enter the virtual appliance's virtual IP address in the MAGLEV CLUSTER DETAILS wizard page. Enter the virtual IP address configured for the Enterprise interface. If you configured a virtual IP address for the Management interface, enter this address as well (using a comma to separate the two IP addresses).

    You can also specify the fully qualified domain name (FQDN) for your virtual appliance. Catalyst Center on ESXi uses this domain name for these steps:

    • It uses this host name to access your virtual appliance’s web interface and the Representational State Transfer (REST) APIs used by devices in the enterprise network that Catalyst Center on ESXi manages.

    • In the Subject Alternative Name (SAN) field of Catalyst Center on ESXi certificates, it uses the FQDN to the define the Plug and Play server that should be used for device provisioning.

    After you provide the information, click next>> to proceed. If validation errors appear, correct them as you did on previous screens.

  11. Enter these configuration values for the settings provided in the wizard's USER ACCOUNT SETTINGS page. Click next>>.

    Linux Password field

    Enter and confirm the password for the maglev user.

    Re-enter Linux Password field

    Confirm the Linux password by entering it a second time.

    Password Generation Seed field

    If you do not want to create the Linux password yourself, enter a seed phrase in this field and then press <Generate Password> to generate the password.

    Auto Generated Password field

    (Optional) The seed phrase appears as part of a random and secure password. If desired, you can either use this password "as is", or you can further edit this auto-generated password.

    Press <Use Generated Password> to save the password.

    After you provide the information, correct any validation errors to proceed, as needed.

  12. Enter these configuration values for the settings provided in the wizard's NTP SERVER SETTINGS page. Click next>>.

    NTP Servers field

    Enter one or more NTP server addresses or host names, separated by spaces. At least one NTP address or host name is required. For a production deployment, we recommend that you configure a minimum of three NTP servers.

    NTP Authentication check box

    To enable the authentication of your NTP server before synchronization with Catalyst Center on ESXi, check this check box and enter the required information:

    • The NTP server's key ID. Valid values range between 1 and 4294967295 (2^32-1).

      This value corresponds to the key ID that's defined in the NTP server's key file.

    • The SHA-1 key value associated with the NTP server's key ID. This 40-character hex string resides in the NTP server's key file.

    Note

    Ensure that you enter a key ID and key value for each NTP server that you configured in the previous field.

    After you provide the information, correct any validation errors to continue, as needed.

    A final message appears, stating that the wizard is ready to apply the configuration.

  13. To apply the settings you've entered to the virtual appliance, click proceed>>.

    After the configuration process completes, the virtual appliance powers on again and displays a CONFIGURATION SUCCEEDED! message, then presents the Maglev login page.

    Note

    Wait 15 to 30 minutes for services to stabilize before you log in to the Catalyst Center UI.

4.

Complete the quick start workflow.


Configure a virtual appliance using the Maglev Configuration Wizard (advanced mode)

If you want to configure a virtual appliance using the Maglev Configuration wizard and need to specify settings that are different from the preset appliance settings, complete this procedure.

Before you begin

Gather this information for your virtual appliance before you start:

  • Static IP address

  • Subnet mask

  • Default gateway

  • DNS address

  • NTP server details

  • Proxy server details

If you plan to configure the appliance's Management interface, also configure an additional network adapter for this interface before you start this wizard.

Procedure

1.

After deployment completes, power on the newly-created virtual machine:

  1. In the vSphere Client, right-click the virtual machine.

  2. Choose Power > Power On.

Your virtual machine typically becomes operational in about 45 minutes. The exact time depends on your available bandwidth, RAM, hard disk space, and the number of vCPUs. You can monitor the progress in the vSphere Client's Recent Tasks tab.

2.

Launch either the remote console or web console by clicking the appropriate link.

3.

Configure the virtual machine by completing the Maglev Configuration Wizard:

  1. You don't need to enter any settings in the wizard's STATIC IP CONFIGURATION page, so click skip>>.

    Configure static IP addresses only if you are installing the virtual appliance through the browser-based WEB UI.

  2. Click Create MKS.

  3. Click the Start configuration of MKS in advanced mode option.

    The next wizard page opens, indicating that all preconfigured appliance settings (except for the container and cluster subnets) will be erased. You'll need to enter values for these settings.

    If you choose this option, you cannot return to the default appliance setup workflow. Keep this in mind before you complete the next step.

  4. Click proceed>>.

    After all of the preconfigured appliance settings have been erased, the next wizard page opens.

  5. Do one or more of these steps, then click next>>:

  6. You don't need to enter any settings in the Layer2 mode used for the services wizard page, so click next>>.

  7. Enter the configuration values for NETWORK ADAPTER #1, as shown in the table, then click next>>.

    Catalyst Center on ESXi uses this interface to link the virtual appliance with your network.

    Host IPv4/IPv6 Address field

    Enter the IP address for the Enterprise interface. This is required.

    IPv4 Netmask/IPv6 Prefix Length field

    Do one of these:

    • If you selected IPv4 addressing, enter the netmask for the port's IP address. This is required.

    • If you selected IPv6 addressing, enter the prefix length (in bits). Valid values range from 10 through 127.

    Default Gateway IPv4/IPv6 Address field

    Enter a default gateway IP address to use for the interface.

    Ensure that you enter a default gateway IP address for at least one of your appliance's interfaces. Otherwise, you will not be able to complete the configuration wizard.

    IPv4/IPv6 Static Routes field

    Enter one or more static routes in this format, separated by spaces: <network>/<netmask>/<gateway>. This is usually required on the Management interface only.

    Cluster Link field

    Leave this field blank. It is required on the Intracluster interface only.

    LACP Mode field

    Leave this field blank, as it's not applicable to virtual appliances.

    The wizard checks the values you entered and displays an error message if any are incorrect. If you receive an error message, verify the value you entered. Click <<back to reenter it.

  8. Enter the configuration values for NETWORK ADAPTER #2, as shown in the table, then click next>>.

    Host IPv4/IPv6 Address field

    Enter the IP address for the Intracluster interface. This is required. Note that you cannot change the address of the Intracluster interface later.

    IPv4 Netmask/IPv6 Prefix Length field

    Do one of these:

    • If you selected IPv4 addressing, enter the netmask for the port's IP address. This is required.

    • If you selected IPv6 addressing, enter the prefix length (in bits). Valid values range from 10 through 127.

    Default Gateway IPv4/IPv6 Address field

    Leave this field blank.

    IPv4/IPv6 Static Routes field

    Leave this field blank.

    Cluster Link field

    Check the check box to set this interface as the link to a Catalyst Center on ESXi cluster. This is required on the Intracluster interface only.

    LACP Mode field

    Leave this field blank, as it's not applicable to virtual appliances.

    If you see validation errors, correct them to continue. The wizard validates and applies your network adapter configurations.

  9. Enter the configuration values for NETWORK ADAPTER #3, as shown in the table, then click next>>.

    Use this interface to access the Catalyst Center on ESXi GUI on your the virtual appliance.

    Note

    You will see this wizard page only if you have already configured an additional network adapter for the Management interface.

    Host IPv4/IPv6 Address field

    Enter the IP address for the Management interface. This is required only if you are using this interface to access the Catalyst Center on ESXi GUI from your management network; otherwise, you can leave it blank.

    IPv4 Netmask/IPv6 Prefix Length field

    Do one of these if you entered an IP address:

    • If you selected IPv4 addressing, enter the netmask for the port's IP address. This is required.

    • If you selected IPv6 addressing, enter the prefix length (in bits). Valid values range from 10 through 127.

    Default Gateway IPv4/IPv6 Address field

    Enter a default gateway IP address to use for the interface.

    Ensure that you enter a default gateway IP address for at least one of your appliance's interfaces. Otherwise, you will not be able to complete the configuration wizard.

    IPv4/IPv6 Static Routes field

    Enter one or more static routes in this format, separated by spaces: <network>/<netmask>/<gateway>.

    Cluster Link field

    Leave this field blank. It is required on the Intracluster interface only.

    Correct validation errors, if any, to proceed. The wizard validates and applies your network adapter configurations.

  10. In the DNS Configuration page, enter the IP address of the preferred DNS server and then click next>>. If you are entering multiple DNS servers, separate the IP addresses in the list with spaces.

    • For NTP, ensure port 123 (UDP) is open between Catalyst Center on ESXi and your NTP server.

    • Avoid configuring more than three DNS servers for your virtual appliance to prevent problems.

    The wizard updates, indicating that it needs to shut down the controller in order to validate the settings you've entered so far.

  11. Do one of these:

    • If you need to change any settings, click <<back as needed, make the necessary changes, and then return to this wizard page.

    • If you're happy with the settings you've entered, click proceed>>.

  12. After validation successfully completes, the NETWORK PROXY wizard page opens. Click skip proxy>> to proceed.

  13. Confirm that you want to skip network proxy configuration by clicking skip proxy validation>>.

  14. Next, you are prompted to enter the virtual appliance's virtual IP addresses in the MAGLEV CLUSTER DETAILS wizard page. Since clusters are not supported by Catalyst Center on ESXi, you can leave the Cluster Virtual IP Address(s) field on this page blank.

    You can also specify the fully qualified domain name (FQDN) for your virtual appliance. Catalyst Center on ESXi uses this domain name to:

    • Access your virtual appliance’s web interface and the Representational State Transfer (REST) APIs used by devices in the enterprise network that Catalyst Center on ESXi manages.

    • Define the Plug and Play server, in the Subject Alternative Name (SAN) field of Catalyst Center on ESXi certificates, that should be used for device provisioning.

    After you provide the necessary information, click next>> to proceed. Correct validation errors, if any, as you did in previous screens.

  15. Enter the configuration values for the settings provided in the wizard's USER ACCOUNT SETTINGS page as listed in the table, then click next>>.

    Linux Password field

    Enter and confirm the password for the maglev user.

    Re-enter Linux Password field

    Confirm the Linux password by entering it a second time.

    Password Generation Seed field

    If you do not want to create the Linux password yourself, enter a seed phrase in this field and then press <Generate Password> to generate the password.

    Auto Generated Password field

    (Optional) The seed phrase appears as part of a random and secure password. If desired, you can either use this password "as is", or you can further edit this auto-generated password.

    Press <Use Generated Password> to save the password.

    After you provide the necessary information, correct any validation errors to proceed (if necessary).

  16. Enter the configuration values for the settings provided in the wizard's NTP SERVER SETTINGS page as described in the table, then click next>>.

    NTP Servers field

    Enter one or more NTP server addresses or hostnames, separated by spaces. At least one NTP address or hostname is required. For a production deployment, we recommend that you configure a minimum of three NTP servers.

    NTP Authentication check box

    To enable the authentication of your NTP server before it's synchronized with Catalyst Center on ESXi, check this check box and then enter these details:

    • The NTP server's key ID. Valid values range between 1 and 4294967295 (2^32-1).

      This value corresponds to the key ID that's defined in the NTP server's key file.

    • The SHA-1 key value associated with the NTP server's key ID. This 40-character hex string resides in the NTP server's key file.

    Note

    Ensure that you enter a key ID and key value for each NTP server that you configured in the previous field.

    After you provide the necessary information, correct any validation errors to proceed (if necessary).

    The wizard displays a message when it is ready to apply the configuration.

  17. Enter the configuration values for the settings provided in the wizard's MAGLEV ADVANCED SETTINGS page as described in the table, then click next>>.

    Container Subnet field

    A dedicated, non-routed IP subnet that Catalyst Center on ESXi uses to manage internal services. By default, this is already set to 169.254.32.0/20, and we recommend that you use this subnet. If you enter another subnet, ensure that it does not conflict with or overlap with any other internal or an external network subnet used by Catalyst Center on ESXi. For more information, see the Container Subnet description in the Catalyst Center Second-Generation Appliance Installation Guide's "Required IP Addresses and Subnets" topic.

    Cluster Subnet field

    A dedicated, non-routed IP subnet that Catalyst Center on ESXi uses to manage internal cluster services. By default, this is already set to 169.254.48.0/20, and we recommend that you use this subnet. If you choose to enter another subnet, ensure that it does not conflict with or overlap any other subnet used by the Catalyst Center on ESXi internal network or an external network. For more information, see the Cluster Subnet description in the Catalyst Center Second-Generation Appliance Installation Guide's "Required IP Addresses and Subnets" topic.

    After you provide the necessary information, correct any validation errors to proceed (if necessary).

    A final message appears, stating that the wizard is ready to apply the configuration.

  18. To apply the settings you've entered to the virtual appliance, click proceed>>.

    After the configuration process completes, the virtual appliance powers on again and displays a CONFIGURATION SUCCEEDED! message.

    It takes around 180 to 210 minutes for the virtual machine to become operational. The actual time will depend on things like available bandwidth, RAM, hard disk space, and the number of vCPUs. You can monitor the progress in the vSphere Client's Recent Tasks tab.

4.

Complete the quick start workflow.


Configure a virtual appliance using the Install Configuration wizard

If you want to configure a virtual appliance as quickly as possible using the browser-based Install configuration wizard and are okay with using preset appliance settings, complete this procedure.

Ensure that all of the IP addresses you enter while completing this procedure are valid IPv4 addresses with valid IPv4 netmasks. Also make sure that the addresses and their corresponding subnets do not overlap. This can result in service communication issues.

Before you begin

Collect the required information:

  • Static IP address

  • Subnet mask

  • Default gateway

  • DNS address

  • NTP server details

  • Proxy server details

Use a supported browser. See Deployment requirements.

Enable ICMP on the firewall between Catalyst Center on ESXi and the DNS servers you will specify in this procedure. This wizard uses Ping to verify the DNS server you specify. If a firewall between Catalyst Center on ESXi and the DNS server is not configured to allow ICMP, the ping can be blocked, which can prevent successful completion of the wizard.

Note

The Intracluster interface is preconfigured when using this wizard. If you do not want to use the default settings for this interface, complete the browser-based Advanced Install configuration wizard.

Procedure

1.

After deployment completes, power on the newly-created virtual machine:

  1. In the vSphere Web Client, right-click the virtual machine.

  2. Choose Power > Power On.

The virtual machine typically becomes operational in about 45 minutes. This time varies depending on the bandwidth, RAM, hard disk space, and the number of vCPUs. You can monitor the progress in the vSphere Client's Recent Tasks tab.

2.

Launch either the remote console or web console by selecting the appropriate link.

3.

Open the Install Configuration wizard:

  1. In the STATIC IP CONFIGURATION page, do one of the tasks:

    • If you want a DHCP server to assign an IP address, subnet mask, and default gateway to your virtual appliance's Enterprise interface, click skip>>.

    • If you want to assign your own IP address, subnet mask, and default gateway to your virtual appliance's Enterprise interface, enter the information described in this table and then click configure>>.

    Note

    The IPv6 Mode check box is for enabling IPv6 addressing in advanced mode only. For IPv4 deployments, this check box needs to be unchecked.

    IPv6 Mode check box

    If you want to enable IPv6 addressing, you will need to do so using the Advanced Install Configuration wizard. Leave this check box unchecked to use IPv4 addressing.

    IP Address field

    Enter the static IP address that you want to use.

    Netmask field

    Enter the netmask for the IP address you specified in the previous field. You can enter either a netmask or CIDR address.

    Default Gateway Address field

    Specify the default gateway that will be used to route traffic.

    Static Routes field

    Leave the Static Routes field blank as this wizard does not allow configuration of static routes.

    Note the URL listed in the Web Installation field; you will need it for the next step.

  2. Open the URL that was displayed in the Static IP Configuration page.

  3. Click the Start a Catalyst Center Virtual Appliance radio button, then click Next.

  4. Click the Install radio button, then click Start.

    The Overview slider opens. Click > to view a summary of the tasks that the wizard will help you complete.

  5. Click Start Workflow to start the wizard.

    The Virtual Appliance Interfaces page opens.

4.

Configure your virtual appliance by completing the Install Configuration wizard:

  1. Click Next.

    The DNS Configuration page opens.

  2. In the DNS field, enter the IP address of the preferred DNS server. To enter additional DNS servers, click the Add (+) icon.

    You can configure a maximum of three DNS servers. Configure no more than three DNS servers for an appliance to avoid issues.

  3. Click Next.

    The Configure Proxy Server Information page opens.

  4. Do one of the tasks:

    • If your network does not use a proxy server to access the internet, click the No radio button and then click Next.

    • If your network does use a proxy server to access the internet, enter the values described in this table and then click Next.

    Proxy Server field

    Enter the URL or host name of an HTTPS network proxy used to access the Internet.

    Note
    Connection from Catalyst Center on ESXi to the HTTPS proxy is supported only via HTTP in this release.

    Port field

    Enter the port that your appliance used to access the network proxy.

    Username field

    Enter the username used to access the network proxy. If no proxy login is required, leave this field blank.

    Password field

    Enter the password used to access the network proxy. If no proxy login is required, leave this field blank.

    The wizard's Advanced Appliance Settings page opens.

  5. Enter configuration values for your appliance, then click Next.

    Cluster Virtual IP Addresses

    To access from Enterprise Network and For Intracluster Access fields

    Enter the virtual IP address configured for the Enterprise interface. If you configured a virtual IP address for the Management interface, enter this address as well (using a comma to separate the two IP addresses).

    Fully Qualified Domain Name (FQDN) field

    You can also specify the Fully Qualified Domain Name (FQDN) for your virtual appliance. Catalyst Center on ESXi uses this domain name to do the tasks:

    • This hostname is used to access your virtual appliance’s web interface and the Representational State Transfer (REST) APIs used by devices managed by Catalyst Center on ESXi in the enterprise network.

    • In the Subject Alternative Name (SAN) field of Catalyst Center on ESXi certificates, it uses the FQDN to the define the Plug and Play server that should be used for device provisioning.

    NTP Server Settings

    NTP Server field

    Enter at least one NTP server address or hostname. To enter additional NTP server addresses or hostnames, click the Add (+) icon.

    For a production deployment, Cisco recommends configuring at least three NTP servers.

    Turn on NTP Authentication check box

    To enable the authentication of your NTP server before it is synchronized with Catalyst Center on ESXi, check this check box and then enter the required information:

    • The NTP server's key ID. Valid values range between 1 and 4294967295 (2^32-1).

      This value corresponds to the key ID that's defined in the NTP server's key file.

    • The SHA-1 key value associated with the NTP server's key ID. This 40-character hex string resides in the NTP server's key file.

    Note

    Ensure that you enter a key ID and key value for each NTP server that you configured in the previous field.

    Subnet Settings

    Container Subnet field

    A dedicated, non-routed IP subnet that Catalyst Center on ESXi uses to manage internal services. By default, this is already set to 169.254.32.0/20, and you cannot enter another subnet.

    Cluster Subnet field

    A dedicated, non-routed IP subnet that Catalyst Center on ESXi uses to manage internal cluster services. By default, this is already set to 169.254.48.0/20, and you cannot enter another subnet.

    The Enter CLI Password page opens.

  6. Enter and confirm the password for the maglev user, then click Next.

    This is the password you will use to log in to Catalyst Center on ESXi for the first time after configuring the virtual appliance. After logging in, you will be prompted to configure a new admin user (as a security measure). Refer to Complete the quick start workflow.

    The wizard validates the information that you entered and notifies you of any settings that need to be changed before you can proceed with the wizard. If the settings you entered are valid, the wizard's Summary page opens.

    Note

    To download the appliance configuration as a JSON file, click the corresponding link.

  7. Scroll to the bottom of the screen and review all the settings entered while completing the wizard. To update any settings, click the relevant Edit link.

  8. To complete the configuration of your Catalyst Center on ESXi virtual appliance, click Start Configuration.

    The wizard screen continuously updates during the process, showing which tasks are being completed, their progress, and any errors. To save a local copy of this information as a text file, click the Download link.

5.

After appliance configuration completes, click the copy icon to copy the default admin superuser password.

Catalyst Center on ESXi automatically sets this password when you complete the Install configuration wizard. Ensure that you click the copy icon before you proceed. Otherwise, you will not be able to log in to Catalyst Center on ESXi for the first time.

Note

As a security measure, you will be prompted to change this password after you log in. For more information, refer to Complete the quick start workflow.


Configure a virtual appliance using the advanced Install Configuration Wizard

To configure a virtual appliance using the browser-based Advanced Install configuration wizard with settings differing from the preset appliance settings, complete this procedure.

Enter only valid IPv4 addresses with correct IPv4 subnet masks. Ensure that the addresses and their corresponding subnets do not overlap. Overlapping subnets might cause issues with service communication.

Before you begin

Collect this information:

  • Static IP address

  • Subnet mask

  • Default gateway

  • DNS address

  • NTP server details

  • Proxy server details

Ensure you are using a supported browser. For more information, refer to Deployment requirements.

Ensure you enabled ICMP on the firewall between Catalyst Center on ESXi and both the default gateway and the DNS server you specify in this procedure. The wizard uses ping to verify the gateway and DNS server you specify. This ping might get blocked if a firewall is in place and ICMP is not enabled on that firewall. When this happens, you will not be able to complete the wizard.

Procedure

1.

After the deployment completes, power on your new virtual machine:

  1. In the vSphere Web Client, right-click the virtual machine.

  2. Choose Power > Power On.

It takes approximately 90 to 120 minutes for the virtual machine to become operational. The total time depends on the available bandwidth, RAM, hard disk space, and the number of vCPUs. Monitor the progress in the vSphere Client's Recent Tasks tab.

2.

Click the link for the remote console or web console to launch it.

3.

Open the Advanced Install Configuration wizard:

  1. In the STATIC IP CONFIGURATION page, do one of the tasks:

    • If you want a DHCP server to assign an IP address, subnet mask, and default gateway to your virtual appliance's Enterprise interface, click skip>>.

    • If you want to assign your own IP address, subnet mask, and default gateway to your virtual appliance's Enterprise interface, enter the information described in this table and then click configure>>.

    Option Description

    IPv6 Mode check box

    If you want to use IPv6 addressing, check this check box. If you want to use IPv4 addressing instead, leave this check box blank.

    IP Address field

    Enter the static IP address that you want to use.

    Netmask field

    Enter the netmask for the IP address you specified in the previous field:

    • If you entered an IPv4 address, you can enter either a netmask or CIDR address.

    • If you entered an IPv6 address, you can only enter a CIDR address.

    Default Gateway Address field

    Specify the default gateway that will be used to route traffic.

    Static Routes field

    Enter one or more static routes in this format, separated by spaces: <network>/<netmask>/<gateway>. This is usually required on the Management interface only.

    Note the URL that is listed in the Web Installation field. You will need this for the next step.

  2. Open the URL that was displayed in the Static IP Configuration page.

  3. Click the Start a Catalyst Center Virtual Appliance radio button, then click Next.

  4. Click the Advanced Install radio button, then click Start.

    The Advanced Install Overview slider opens. Click > to view a summary of the tasks that the wizard will help you complete.

  5. Click Start Workflow to start the wizard.

    The Virtual Appliance Interface Overview page opens, providing a description of the four appliance interfaces that you can configure.

4.

Configure your virtual appliance by completing the Advanced Install Configuration wizard:

  1. Click Next.

    The How would you like to set up your appliance interfaces? page opens

    If your network is behind a firewall, perform these actions:

    • Click the allow access to these URLs link to open a window listing the URLs that Catalyst Center on ESXi must access.

    • Click the open these ports link to open a window listing the network service ports required by Catalyst Center on ESXi.

    By default, the Enterprise Network Interface check box is already checked. It's also prepopulated with the values you entered in the STATIC IP CONFIGURATION page.

  2. Follow these steps for each appliance interface you want to use, then click Next:

    • Click its check box and enter the appropriate configuration values.

    • If necessary, click its Add/Edit Static Route link to configure static routes. Click + as needed to configure additional routes. When you're done, click Add.

    The DNS Configuration screen opens.

  3. Enter the IP address of the preferred DNS server, then click Next. To enter additional DNS servers, click the Add (+) icon.

    • For each node in your cluster, configure a maximum of three DNS servers. You might encounter problems if you configure more than three DNS servers for an appliance.

    • For NTP, ensure that port 123 (UDP) is open between Catalyst Center on ESXi and your NTP server.

    The Configure Proxy Server Information screen opens.

  4. Follow one of these steps and then click Next:

    • If your network does not use a proxy server to access the internet, click the No radio button.

    • If your network does use a proxy server to access the internet, enter the values described in this table:

    Field Description

    Proxy Server

    Enter the URL or host name of an HTTPS network proxy used to access the Internet.

    Note
    Connection from Catalyst Center on ESXi to the HTTPS proxy is supported only via HTTP in this release.

    Port

    Enter the port your appliance used to access the network proxy.

    Username

    Enter the username used to access the network proxy. If no proxy login is required, leave this field blank.

    Password

    Enter the password used to access the network proxy. If no proxy login is required, leave this field blank.

    The wizard checks the information you have entered and displays any settings that need to be changed before you can proceed If the settings you have entered are valid and the port is up, the wizard's Advanced Appliance Settings screen opens.

  5. Enter configuration values for your appliance, then click Next.

    Option Description

    Cluster Virtual IP Addresses

    To access from Enterprise Network and For Intracluster Access fields

    Enter the virtual IP address configured for the Enterprise interface. If you configured a virtual IP address for the Management interface, enter this address as well (using a comma to separate the two IP addresses).

    Fully Qualified Domain Name (FQDN) field

    You can also specify the Fully Qualified Domain Name (FQDN) for your virtual appliance. Catalyst Center on ESXi uses this domain name for these tasks:

    • It uses this hostname to access your virtual appliance’s web interface and the Representational State Transfer (REST) APIs used by devices in the enterprise network that Catalyst Center on ESXi manages.

    • In the Subject Alternative Name (SAN) field of Catalyst Center on ESXi certificates, it uses the FQDN to the define the Plug and Play server that should be used for device provisioning.

    NTP Server Settings

    NTP Server field

    Enter at least one NTP server address or hostname. To enter additional NTP server addresses or hostnames, click the Add (+) icon.

    For a production deployment, Cisco recommends that you configure a minimum of three NTP servers.

    Turn On NTP Authentication check box

    To enable the authentication of your NTP server before it's synchronized with Catalyst Center on ESXi, check this check box and then enter this information:

    • The NTP server's key ID. Valid values range between 1 and 4294967295 (2^32-1).

      This value corresponds to the key ID that's defined in the NTP server's key file.

    • The SHA-1 key value associated with the NTP server's key ID. This 40-character hex string resides in the NTP server's key file.

    Note

    Ensure that you enter a key ID and key value for each NTP server that you configured in the previous field.

    Subnet Settings

    Container Subnet field

    A dedicated, non-routed IP subnet that Catalyst Center on ESXi uses to manage internal services. By default, this is already set to 169.254.32.0/20, and we recommend that you use this subnet.

    Cluster Subnet field

    A dedicated, non-routed IP subnet that Catalyst Center on ESXi uses to manage internal cluster services. By default, this is already set to 169.254.48.0/20, and we recommend that you use this subnet.

    The Enter CLI Password page opens.

  6. Enter and confirm the password for the maglev user, then click Next.

    The wizard validates the information you have entered and notifies you of any settings that need to be changed before you can proceed with the wizard. If the settings you have entered are valid, the wizard's Summary page opens.

    Note

    To download the appliance configuration as a JSON file, click the corresponding link.

  7. Scroll to the bottom of the screen and review all of the settings that you have entered while completing the wizard. If necessary, click the appropriate Edit link to open the wizard screen in which you want to make updates.

  8. To complete the configuration of your Catalyst Center on ESXi virtual appliance, click Start Configuration.

    The wizard screen updates during the process, to show which tasks are being completed, their progress, and any errors. Click the Download link to save this information as a text file.

    The virtual machine becomes operational in 180 to 210 minutes. The time depends on the available bandwidth, RAM, hard disk space, and the number of vCPUs. You can monitor the progress in the vSphere Client's Recent Tasks tab.

5.

After configuring the appliance, click the copy icon to save the default administrator superuser password.

Services may take between 15 to 30 minutes to stabilize before you can log in to the user interface.

Catalyst Center on ESXi automatically sets this password when you complete the Install configuration wizard. Ensure that you click the copy icon before you proceed. Otherwise, you will not be able to log in to Catalyst Center on ESXi for the first time.

Note

As a security measure, you will be prompted to change this password after you log in. For more information, refer to Complete the quick start workflow.