Book Image

Cisco ACI Cookbook

By : Stuart Fordham
Book Image

Cisco ACI Cookbook

By: Stuart Fordham

Overview of this book

Cisco Application Centric Infrastructure (ACI) is a tough architecture that automates IT tasks and accelerates data-center application deployments. This book focuses on practical recipes to help you quickly build, manage, and customize hybrid environment for your organization using Cisco ACI. You will begin by understanding the Cisco ACI architecture and its major components. You will then configure Cisco ACI policies and tenants. Next you will connect to hypervisors and other third-party devices. Moving on, you will configure routing to external networks and within ACI tenants and also learn to secure ACI through RBAC. Furthermore, you will understand how to set up quality of service and network programming with REST, XML, Python and so on. Finally you will learn to monitor and troubleshoot ACI in the event of any issues that arise. By the end of the book, you will gain have mastered automating your IT tasks and accelerating the deployment of your applications.
Table of Contents (17 chapters)
Title Page
Credits
About the Author
About the Reviewers
www.PacktPub.com
Customer Feedback
Preface

Creating security domains


Security domains allow us to permit or deny administrators based on the tenants added as "associated objects" within the domain.

How to do it...

  1. Navigate to Admin | AAA | Security Management | Security Domains.
  1. Click on Actions, then select Create Security Domain.
  2. Name the new security domain. Here we will call the security domain TenantA-SD.
  1. Click on SUBMIT.
  2. The new security domain will be listed with the default ones.

 

  1. If you click on the security domain, you will see that there are no associated objects (tenants).
  1. To associate a tenant to a security domain, navigate to the tenant (TenantA) and click on the Policy tab.
  1. Click on the plus sign next to Security Domains, and select Tenant-SD from the drop-down menu.
  1. Click on UPDATE.
  1. If you return to the TenantA-SD security domain in the AAA tab (step 1), you can see that TenantA is now listed under associated objects.