Task Name | vASA firewall rule/ACL creation example |
Description | |
Prerequisites | - 6.5.0.2
|
Category | Workflow |
Components | |
User Inputs | |
Output | |
Instructions for Regular Workflow Use:
- Download the attached .ZIP file below to your computer. *Remember the location of the saved file on your computer.
- Unzip the file on your computer. Should end up with a .WFD file.
- Log in to UCS Director as a user that has "system-admin" privileges.
- Navigate to "Policies-->Orchestration" and click on "Import".
- Click "Browse" and navigate to the location on your computer where the .WFDX file resides. Choose the .WFDX file and click "Open".
- Click "Upload" and then "OK" once the file upload is completed. Then click "Next".
- Click the "Select" button next to "Import Workflows". Click the "Check All" button to check all checkboxes and then the "Select" button.
- Click "Submit".
- A new folder should appear in "Policies-->Orchestration" that contains the imported workflow. You will now need to update the included tasks with information about the specific environment.
The Workflow:
![Screen Shot 2018-01-25 at 12.52.45 PM.png](/legacyfs/online/fusion/114788_Screen Shot 2018-01-25 at 12.52.45 PM.png)
Workflow input:
![Screen Shot 2018-01-25 at 12.54.09 PM.png](/legacyfs/online/fusion/114790_Screen Shot 2018-01-25 at 12.54.09 PM.png)
Workflow run:
![Screen Shot 2018-01-25 at 12.54.45 PM.png](/legacyfs/online/fusion/114791_Screen Shot 2018-01-25 at 12.54.45 PM.png)
Firewall rule is created:
![Screen Shot 2018-01-25 at 12.56.48 PM.png](/legacyfs/online/fusion/114792_Screen Shot 2018-01-25 at 12.56.48 PM.png)
The roll back:
![Screen Shot 2018-01-25 at 12.57.47 PM.png](/legacyfs/online/fusion/114793_Screen Shot 2018-01-25 at 12.57.47 PM.png)
When rollback is done ACL is removed:
![Screen Shot 2018-01-25 at 12.59.10 PM.png](/legacyfs/online/fusion/114794_Screen Shot 2018-01-25 at 12.59.10 PM.png)
![Screen Shot 2018-01-25 at 12.59.43 PM.png](/legacyfs/online/fusion/114796_Screen Shot 2018-01-25 at 12.59.43 PM.png)
The Catalog offering:
![Screen Shot 2018-01-25 at 1.36.51 PM.png](/legacyfs/online/fusion/114800_Screen Shot 2018-01-25 at 1.36.51 PM.png)
Note:
If the endpoint device does not have a task then the ACL create task could be swapped out for a SSH task and hence talk to any device and create items.
Video Link : 16842