Skip to content

Commit 7d0ef11

Browse files
Merge pull request #270178 from alt-key/docs-editor/system-requirements-1711417604
Update system-requirements.md
2 parents 5e0a058 + 0dfd59c commit 7d0ef11

File tree

1 file changed

+22
-24
lines changed

1 file changed

+22
-24
lines changed

articles/azure-arc/resource-bridge/system-requirements.md

Lines changed: 22 additions & 24 deletions
Original file line numberDiff line numberDiff line change
@@ -39,17 +39,19 @@ These minimum requirements enable most scenarios. However, a partner product may
3939

4040
## IP address prefix (subnet) requirements
4141

42-
The IP address prefix (subnet) where Arc resource bridge will be deployed requires a minimum prefix of /29. The IP address prefix must have enough available IP addresses for the gateway IP, control plane IP, appliance VM IP, and reserved appliance VM IP. Please work with your network engineer to ensure that there is an available subnet with the required available IP addresses and IP address prefix for Arc resource bridge.
42+
The IP address prefix (subnet) where Arc resource bridge will be deployed requires a minimum prefix of /29. The IP address prefix must have enough available IP addresses for the gateway IP, control plane IP, appliance VM IP, and reserved appliance VM IP. Arc resource bridge only uses the IP addresses assigned to the IP pool range (Start IP, End IP) and the Control Plane IP. We recommend that the End IP immediately follow the Start IP. Ex: Start IP =192.168.0.2, End IP = 192.168.0.3. Please work with your network engineer to ensure that there is an available subnet with the required available IP addresses and IP address prefix for Arc resource bridge.
4343

44-
The IP address prefix is the subnet's IP address range for the virtual network and subnet mask (IP Mask) in CIDR notation, for example `192.168.7.1/24`. You provide the IP address prefix (in CIDR notation) during the creation of the configuration files for Arc resource bridge.
44+
The IP address prefix is the subnet's IP address range for the virtual network and subnet mask (IP Mask) in CIDR notation, for example `192.168.7.1/29`. You provide the IP address prefix (in CIDR notation) during the creation of the configuration files for Arc resource bridge.
4545

4646
Consult your network engineer to obtain the IP address prefix in CIDR notation. An IP Subnet CIDR calculator may be used to obtain this value.
4747

4848
## Static IP configuration
4949

5050
If deploying Arc resource bridge to a production environment, static configuration must be used when deploying Arc resource bridge. Static IP configuration is used to assign three static IPs (that are in the same subnet) to the Arc resource bridge control plane, appliance VM, and reserved appliance VM.
5151

52-
DHCP is only supported in a test environment for testing purposes only for VM management on Azure Stack HCI, and it should not be used in a production environment. DHCP isn't supported on any other Arc-enabled private cloud, including Arc-enabled VMware, Arc for AVS, or Arc-enabled SCVMM. If using DHCP, you must reserve the IP addresses used by the control plane and appliance VM. In addition, these IPs must be outside of the assignable DHCP range of IPs. Ex: The control plane IP should be treated as a reserved/static IP that no other machine on the network will use or receive from DHCP. If the control plane IP or appliance VM IP changes (ex: due to an outage, this impacts the resource bridge availability and functionality.
52+
DHCP is only supported in a test environment for testing purposes only for VM management on Azure Stack HCI. It should not be used in a production environment. DHCP isn't supported on any other Arc-enabled private cloud, including Arc-enabled VMware, Arc for AVS, or Arc-enabled SCVMM.
53+
54+
If using DHCP, you must reserve the IP addresses used by the control plane and appliance VM. In addition, these IPs must be outside of the assignable DHCP range of IPs. Ex: The control plane IP should be treated as a reserved/static IP that no other machine on the network will use or receive from DHCP. If the control plane IP or appliance VM IP changes, this impacts the resource bridge availability and functionality.
5355

5456
## Management machine requirements
5557

@@ -58,10 +60,14 @@ The machine used to run the commands to deploy and maintain Arc resource bridge
5860
Management machine requirements:
5961

6062
- [Azure CLI x64](/cli/azure/install-azure-cli-windows?tabs=azure-cli) installed
61-
- Open communication to Control Plane IP (`controlplaneendpoint` parameter in `createconfig` command)
62-
- Open communication to Appliance VM IP
63-
- Open communication to the reserved Appliance VM IP
64-
- if applicable, communication over port 443 to the private cloud management console (ex: VMware vCenter host machine)
63+
- Open communication to Control Plane IP
64+
65+
- Communication to Appliance VM IP (SSH TCP port 22, Kubernetes API port 6443)
66+
67+
- Communication to the reserved Appliance VM IP ((SSH TCP port 22, Kubernetes API port 6443)
68+
69+
- communication over port 443 (if applicable) to the private cloud management console (ex: VMware vCenter host machine)
70+
6571
- Internal and external DNS resolution. The DNS server must resolve internal names, such as the vCenter endpoint for vSphere or cloud agent service endpoint for Azure Stack HCI. The DNS server must also be able to resolve external addresses that are [required URLs](network-requirements.md#outbound-connectivity) for deployment.
6672
- Internet access
6773

@@ -77,11 +83,8 @@ Appliance VM IP address requirements:
7783

7884
- Open communication with the management machine and management endpoint (such as vCenter for VMware or MOC cloud agent service endpoint for Azure Stack HCI).
7985
- Internet connectivity to [required URLs](network-requirements.md#outbound-connectivity) enabled in proxy/firewall.
80-
- Static IP assigned (strongly recommended)
86+
- Static IP assigned and within the IP address prefix.
8187

82-
- If using DHCP, then the address must be reserved and outside of the assignable DHCP range of IPs. No other machine on the network will use or receive this IP from DHCP. DHCP is generally not recommended because a change in IP address (ex: due to an outage) impacts the resource bridge availability.
83-
84-
- Must be from within the IP address prefix.
8588
- Internal and external DNS resolution.
8689
- If using a proxy, the proxy server has to be reachable from this IP and all IPs within the VM IP pool.
8790

@@ -99,15 +102,11 @@ Reserved appliance VM IP requirements:
99102

100103
- Internet connectivity to [required URLs](network-requirements.md#outbound-connectivity) enabled in proxy/firewall.
101104

102-
- Static IP assigned (strongly recommended)
103-
104-
- If using DHCP, then the address must be reserved and outside of the assignable DHCP range of IPs. No other machine on the network will use or receive this IP from DHCP. DHCP is generally not recommended because a change in IP address (ex: due to an outage) impacts the resource bridge availability.
105-
106-
- Must be from within the IP address prefix.
105+
- Static IP assigned and within the IP address prefix.
107106

108-
- Internal and external DNS resolution.
107+
- Internal and external DNS resolution.
109108

110-
- If using a proxy, the proxy server has to be reachable from this IP and all IPs within the VM IP pool.
109+
- If using a proxy, the proxy server has to be reachable from this IP and all IPs within the VM IP pool.
111110

112111
## Control plane IP requirements
113112

@@ -117,8 +116,7 @@ Control plane IP requirements:
117116

118117
- Open communication with the management machine.
119118

120-
- Static IP address assigned; the IP address should be outside the DHCP range but still available on the network segment. This IP address can't be assigned to any other machine on the network.
121-
- If using DHCP, the control plane IP should be a single reserved IP that is outside of the assignable DHCP range of IPs. No other machine on the network will use or receive this IP from DHCP. DHCP is generally not recommended because a change in IP address (ex: due to an outage) impacts the resource bridge availability.
119+
- Static IP address assigned and within the IP address prefix.
122120

123121
- If using a proxy, the proxy server has to be reachable from IPs within the IP address prefix, including the reserved appliance VM IP.
124122

@@ -128,23 +126,23 @@ DNS server(s) must have internal and external endpoint resolution. The appliance
128126

129127
## Gateway
130128

131-
The gateway IP should be an IP from within the subnet designated in the IP address prefix.
129+
The gateway IP is the IP of the gateway for the network where Arc resource bridge is deployed. The gateway IP should be an IP from within the subnet designated in the IP address prefix.
132130

133131
## Example minimum configuration for static IP deployment
134132

135-
The following example shows valid configuration values that can be passed during configuration file creation for Arc resource bridge. It is strongly recommended to use static IP addresses when deploying Arc resource bridge.
133+
The following example shows valid configuration values that can be passed during configuration file creation for Arc resource bridge.
136134

137135
Notice that the IP addresses for the gateway, control plane, appliance VM and DNS server (for internal resolution) are within the IP address prefix. This key detail helps ensure successful deployment of the appliance VM.
138136

139137
IP Address Prefix (CIDR format): 192.168.0.0/29
140138

141-
Gateway (IP format): 192.168.0.1
139+
Gateway IP: 192.168.0.1
142140

143141
VM IP Pool Start (IP format): 192.168.0.2
144142

145143
VM IP Pool End (IP format): 192.168.0.3
146144

147-
Control Plane IP (IP format): 192.168.0.4
145+
Control Plane IP: 192.168.0.4
148146

149147
DNS servers (IP list format): 192.168.0.1, 10.0.0.5, 10.0.0.6
150148

0 commit comments

Comments
 (0)