Create a subnet for setting up VSP One SDS Block.
If you already created a subnet satisfying the following conditions, no more subnets need to be created because you can use the subnet for setting up VSP One SDS Block.
-
If you use an existing subnet, the number of characters must be from 1 to 76.
-
Only one IPv4 CIDR block should be allocated for each subnet for control network and internode network for storage node.
-
The CIDR block to be assigned to each subnet for compute node should be in accordance with the following conditions.
-
If IPv4/IPv6 addresses (dual stack) are not used, only one IPv4 CIDR block should be allocated.
-
When IPv4/IPv6 addresses (dual stack) are used, one IPv4 CIDR block and one IPv6 CIDR block should be allocated.
-
-
Each subnet for control network, internode network, and compute network must be set with the required IP address range.
-
For the IP address range for the control network subnet, set a range of IPv4 addresses sufficient to create storage nodes (or tiebreaker nodes), controller nodes, and load balancers.
-
For the IP address range for the internode network subnet, set a range of IPv4 addresses sufficient to create storage nodes.
-
For the IP address range for the compute network subnet, set a range of IPv4 addresses sufficient to create storage nodes (or tiebreaker nodes) and a compute node.
To use a combination of IPv4 and IPv6 addresses (dual stack), also set a range of IPv6 addresses sufficient to create storage nodes and a compute node.
-
-
Communication between the control network subnet and outside subnets must be allowed.
-
Communication between the internode network subnet and outside subnets must not be allowed.
-
To mitigate security risks, each subnet for control network, internode network, and compute network must be a private subnet.
-
When placing a compute node in a virtual network (or subnet) different from the compute network subnet, communication between the compute network subnet and the virtual network (or subnet) in which a compute node is to be placed must be allowed.
-
To perform remote copy (by using the Universal Replicator function) with a storage system placed in a network different from that for the subnet of VSP One SDS Block compute network, communication between the network for the compute network subnet and the network in which the storage system is installed must be allowed.
-
The control network must be able to use outbound connection to the internet or resource management private links.