Network Access Matrix
| Source | Destination | Port/Protocol | Purpose |
|---|---|---|---|
| Deployer | Hypervisor | 22/TCP (SSH) | Host management |
| Deployer | iDRAC | 443/HTTPS 22/TCP (SSH) |
Out-of-band management |
| Deployer | All VMs | 22/TCP (SSH) | VM configuration |
| Database VMs | Database VMs | Bynet (custom) | Database interconnect |
| All VMs | DNS Server | 53/UDP | Name resolution |
| All VMs | NTP Server | 123/UDP | Time sync |
| Source | Destination | Port/Protocol | Purpose |
| Users | Viewpoint | 443/HTTPS | Web UI access |
| Users | CMIC | 443/HTTPS | Management UI |
| Deployer | iDRAC, Hosts, VMs | 9090/HTTP | Serves files (for example, ISOs and gcow2) |
Required VLANs
| VLAN | Purpose | Subnet Example |
|---|---|---|
| Management (CLAN) | Public network for management | 192.168.1.0/24 |
| iDRAC | Out-of-band management | 192.168.100.0/24 |
| BYN1 (Bynet 1) | Database bynet network 1 | 10.0.0.0/25 |
| BYN2 (Bynet 2) | Database bynet network 2 | 10.1.0.0/25 |
| CMIC1 | CMIC 1 network | 10.3.0.0/25 |
| CMIC2 | CMIC 2 network | 10.5.0.0/25 |
| DSU | DSU network | 10.6.0.0.25 |