Applies To:
Show Versions
BIG-IQ Cloud
- 4.2.0
About device discovery
You use the BIG-IQ Cloud to centrally manage cloud resources for tenants. Resources can be located on BIG-IQ devices in your local network, in a public cloud like Amazon EC2, or in a combination of both.
You start managing the resources that are located on devices in your local network by installing on those devices components that are specific to BIG-IQ Cloud, and then making BIG-IQ Cloud aware of them through the discovery process. You accomplish the component installation process from the command line. To discover a device, you provide BIG-IQ Cloud with its IP address, user name, and password.
Alternately, for those devices located in the Amazon EC2 and OpenStack public cloud space, BIG-IQ Cloud automatically detects them when it connects to the Amazon EC2 or OpenStack cloud.
Installing required BIG-IQ components on BIG-IP devices
You can perform this task only after you have licensed and installed the BIG-IQ system and at least one BIG-IP device running version 11.3 or later.
This task runs a script. For this script to run properly, you must first open specific ports on your EC2 AMI BIG-IQ instance and on any associated EC2 BIG-IP instances. To open these ports, you need additional security group rules in your allow-only-ssh-https-ping security group, and you need to associate these rules with the management interface.
You need to create three rules: two outbound rules for the BIG-IQ instance, and one inbound rule for the BIG-IP instance.
Group Name | Group Description | Rule Name | Source | Port |
---|---|---|---|---|
allow-only-ssh-https-ping | Allow only SSH, HTTPS, or PING | Outbound SSH | 0.0.0.0/0 | 22 (SSH) |
Outbound HTTPS | 443 0.0.0.0/0 | 443 (HTTPS) | ||
Inbound HTTPS | 0.0.0.0/0 | 443 (HTTPS) |
Discovering devices
After you license and perform the initial configuration for the BIG-IQ system, you can discover BIG-IP devices running version 11.3 or later. For proper communication, you must configure each F5 device you want to manage with a route to the BIG-IQ system. If you do not specify the required network communication route between the devices, device discovery will fail.
For devices located in a third-party cloud (such as EC2, OpenStack, and VMware), you must configure BIG-IQ Cloud with DNS so it can resolve the endpoint by name. You access this setting by clicking System > Overview > Services.
You discover a device by providing BIG-IQ Cloud with the device's IP address, user name, and password.
Adding devices located in a third-party cloud
After you license and perform the initial configuration for the BIG-IQ system, you can discover BIG-IP devices running version 11.3 or later. For proper communication, you must configure each F5 device you want to manage with a route to the BIG-IQ system. If you do not specify the required network communication route between the devices, device discovery will fail.
For devices located in a third-party cloud (such as EC2, OpenStack, and VMware), you must configure BIG-IQ Cloud with DNS so it can resolve the endpoint by name. You access this setting by clicking System > Overview > Services.
You discover a device in a third-party cloud by specifying a connector, selecting a device's image, and providing a user name and password for that device.
Viewing device inventory details
You can view detailed data about the managed devices in your network. Information includes associated IP addresses, platform type, license details, software version, and so forth. In addition to viewing this information, you can also export it to a CSV file and edit the data as required to create reports for asset management.