Platform Blueprint, NAT Options
Use the Platform Blueprint MMG Options to include the MMG and describe how it is configured. Use this when you have selected a 'NAT Proxy' option on a VMware type Resource Blueprint, which is a part of this platform group.
Caution
MiVB_MI type resource may also be in isolated VLAN networks, but they have NAT services provided by the MiVB_MI server. The discussion of this section is not applicable to these resources.
MMG Options
-
Primary Service IP: Describes customer side subnet and an address on the customer side of the MMG. Used as the source IP on packets that pass through the NAT from the management side. Format is a CIDR-notation string, e.g. 192.168.0.1/16.
-
Customer side Gateway: If management side computers need access beyond the customer side network defined by the Primary Service IP then you will indicate a customer side gateway router here.
-
Additional Service: Use this to provide access to specific management side services such as SNMP trap or backup file servers.
Resource Blueprint
To utilize the MMG NAT, select NAT Proxy on the Resource Blueprint. The Resource Blueprint can be configured with customer VLAN side IP addresses that is assigned to the VM. By specifying the IP addresses in the resource blueprints, you can configure every customer network with the same IP numbering plan. These addresses can be overridden at instance create time.
Caution
VMware Network Label (name): On the Resource Blueprint, provide a VMware Network name for every network interface that the resource needs. At instance create time, you can overwrite VMware Network names. In the case of a unique VLAN per customer, each instance creation needs to have a unique, VLAN associated, VMware Network provided. To avoid mapping a resource to the wrong VMware network, set the resource network label to a fake name, for example: change-me. With this invalid network, if the customer assigned VMware Network that was not provided at instance create time, then the creation fails early with a message 'change-me' is not found.
Caution
When the MMG NAT is involved, VMware IP Pool cannot be used to supply IP addresses since the NAT is setup before VMware is engaged.