はじめに
このセクションでは、SD-WAN展開を合理化する初期構成について説明します。このセクションでは、アカウントキーの生成、グループ化など、中央およびOrchestratorの構成内でのサイトの作成について説明します。このガイドではCloud Orchestratorを使用しますが、オンプレミスOrchestratorの手順も同じです。
Aruba Centralでサイトを作成
Centralは、サイトを使用して、同じ地理的な場所にあるデバイスをグループ化します。この手順では、このガイドの後半で使用するサイトを作成します。
Step 1 左側の列でOrganizationをクリックします。
Step 2 Sitesタイルをクリックし、左下のNew Siteをクリックします。
Step 3 Create New Siteウィンドウで、次の設定を割り当て、Addをクリックします。
Step 4 すべてのリモート・サイトに対して手順2と3を繰り返します。このガイドでは、次のサイトを使用します。
| Boise-Branch | Portland-Branch | Chicago-Branch | |
|---|---|---|---|
| Site Name | BR-BOI-01 | BR-POR-01 | BR-CHI-01 |
| Address | 12601 W Explorer Dr | 308 SW 2nd Ave #700 | 303 E Wacker Dr Suite 2700 |
| City | Boise | Portland | Chicago |
| State | Idaho | Oregon | Illinois |
| Zip Code | 83713 | 97204 | 60601 |

アカウントキーの生成
Cloud Orchestratorに最初にログインすると、右側に赤いポップアップボックスが表示されます。 “Important: Account key associated with this account has never been changed.” This account key is used to initially associate the Cloud Orchestrator with the Cloud portal. Its best practice to generate a new key once the orchestrator is initially logged into. This Key is automatically propagated between the Cloud portal and Cloud Orchestrator.
オンプレミスOrchestratorを使用する場合、最初のアカウントキーはEメールで送信され、アプライアンスに最初にログインするときに手動で入力する必要があります。 アカウントの初期設定こちらをご覧ください。
| 注: |
|---|
| クラウドポータルは、アカウント内のすべてのデバイスのインベントリ管理ツールです |
Step 1 Generate New Key Nowを選択します。 
Step 2 Generate New Key & Distributeをクリックします。
Step 3 Closeをクリックします。

デバイスグループ化
デバイスをグループ化すると、管理者はデバイスのサブセットをフィルタリングして選択できます。 スケーリングして正確なフィルタリングを可能にするグループ構造を持つことが重要です。次に、スケールの2つのグループ化構造を示します。OWLのサイズにより、このガイドでは左側のグループ化を使用します。
| OWL Grouping Structure | Example International Enterprise |
|---|---|
![]() | ![]() |
グループを作成するには、次の手順に従います。
Step 1 右ペインでGroup 1を右クリックします。
Step 2 Renameをクリックし、AMSと入力します。
Step 3 AMSを右クリックし、Add groupをクリックします。
Step 4 BRANCHと入力し、Okをクリックします。
Step 5 手順3を繰り返し、HUBと入力してOKをクリックします。

BIO構成
次のセクションでは、サービスオーケストレーションとBIO構成を構成する方法を示します。サービスオーケストレーションは、SASEサービスのOrchestratorの構成を確認するオプションの手順です。
サービスオーケストレーションの構成(オプション)
OWLではSASEサービスは利用しませんが、組織によるSASEプロバイダの構成方法を示すには、次の構成を参照してください。
Step 1 左上隅にあるConfigurationタブをクリックします。
Step 2 Cloud Services Column 列でService Orchestrationをクリックします。
Step 3 Service Orchestrationのタイトルの横にあるAdd Serviceをクリックします。
Step 4 SASE Serviceの名前を入力し*Prefixを入力します。
- Name: E_SASE_PROVIDER
- Prefix: 1

Step 5 E_SASE_Provider タブをクリックし、Remote Endpoint Configurationをクリックします。
Step 6 + Remote Endpointをクリックし次のように入力します。
Name: V-ECE-01
IP address: パブリックIP
Interface Label: Any
Pre shared Key: 事前共有キー
Probe Address: 8.8.8.8
Step 7 Saveをクリックします。

Step 8 Tunnel Settingsの横にあるIP SLAボックスをクリックします。
Step 9 Enable IP SLA rule orchestrationを有効になるようトグルボタンをクリックします。
Step 10 モニターをPingからHTTP/HTTPSに変更します。
Step 11 送信元インターフェイスを以前に設定したラベルLOOPBACKに設定します。
Step 12 次の推奨SLA設定を入力します。
- HTTP Request Timeout: 5
- Keepalive: 1
- Markup after X seconds: 10
- Markdown after X failed: 10
- Mark up after loss below X %: 10
- Mark down after loss below X %: 20
- Mark up after average latency Below X: 150
- Mark down after average latency Below X: 200
Step 13 Saveをクリックします。


