blob: 25e36c1b0bebc66b3807837c89b11991920ffb32 [file] [log] [blame]
# SOME DESCRIPTIVE TITLE.
# Copyright (C) 2016, Apache Software Foundation
# This file is distributed under the same license as the Apache CloudStack Administration Documentation package.
# FIRST AUTHOR <EMAIL@ADDRESS>, YEAR.
#
#, fuzzy
msgid ""
msgstr ""
"Project-Id-Version: Apache CloudStack Administration Documentation 4.8\n"
"Report-Msgid-Bugs-To: \n"
"POT-Creation-Date: 2016-08-22 13:55+0200\n"
"PO-Revision-Date: YEAR-MO-DA HO:MI+ZONE\n"
"Last-Translator: FULL NAME <EMAIL@ADDRESS>\n"
"Language-Team: LANGUAGE <LL@li.org>\n"
"MIME-Version: 1.0\n"
"Content-Type: text/plain; charset=UTF-8\n"
"Content-Transfer-Encoding: 8bit\n"
#: ../../networking.rst:18
msgid "Setting Up Networking for Users"
msgstr ""
#: ../../networking.rst:21
msgid "Overview of Setting Up Networking for Users"
msgstr ""
#: ../../networking.rst:23
msgid "People using cloud infrastructure have a variety of needs and preferences when it comes to the networking services provided by the cloud. As a CloudStack administrator, you can do the following things to set up networking for your users:"
msgstr ""
#: ../../networking.rst:28
msgid "Set up physical networks in zones"
msgstr ""
#: ../../networking.rst:30
msgid "Set up several different providers for the same service on a single physical network (for example, both Cisco and Juniper firewalls)"
msgstr ""
#: ../../networking.rst:33
msgid "Bundle different types of network services into network offerings, so users can choose the desired network services for any given virtual machine"
msgstr ""
#: ../../networking.rst:37
msgid "Add new network offerings as time goes on so end users can upgrade to a better class of service on their network"
msgstr ""
#: ../../networking.rst:40
msgid "Provide more ways for a network to be accessed by a user, such as through a project of which the user is a member"
msgstr ""
#: ../../networking.rst:45
msgid "About Virtual Networks"
msgstr ""
#: ../../networking.rst:47
msgid "A virtual network is a logical construct that enables multi-tenancy on a single physical network. In CloudStack a virtual network can be shared or isolated."
msgstr ""
#: ../../networking.rst:53
msgid "Isolated Networks"
msgstr ""
#: ../../networking.rst:55
msgid "An isolated network can be accessed only by virtual machines of a single account. Isolated networks have the following properties."
msgstr ""
#: ../../networking.rst:58
msgid "Resources such as VLAN are allocated and garbage collected dynamically"
msgstr ""
#: ../../networking.rst:61
msgid "There is one network offering for the entire network"
msgstr ""
#: ../../networking.rst:63
msgid "The network offering can be upgraded or downgraded but it is for the entire network"
msgstr ""
#: ../../networking.rst:66
msgid "For more information, see `“Configure Guest Traffic in an Advanced Zone” <networking2.html#configure-guest-traffic-in-an-advanced-zone>`_."
msgstr ""
#: ../../networking.rst:71
msgid "Shared Networks"
msgstr ""
#: ../../networking.rst:73
msgid "A shared network can be accessed by virtual machines that belong to many different accounts. Network Isolation on shared networks is accomplished by using techniques such as security groups, which is supported only in Basic zones in CloudStack 3.0.3 and later versions."
msgstr ""
#: ../../networking.rst:78
msgid "Shared Networks are created by the administrator"
msgstr ""
#: ../../networking.rst:80
msgid "Shared Networks can be designated to a certain domain"
msgstr ""
#: ../../networking.rst:82
msgid "Shared Network resources such as VLAN and physical network that it maps to are designated by the administrator"
msgstr ""
#: ../../networking.rst:85
msgid "Shared Networks can be isolated by security groups"
msgstr ""
#: ../../networking.rst:87
msgid "Public Network is a shared network that is not shown to the end users"
msgstr ""
#: ../../networking.rst:89
msgid "Source NAT per zone is not supported in Shared Network when the service provider is virtual router. However, Source NAT per account is supported. For information, see `“Configuring a Shared Guest Network” <networking2.html#configuring-a-shared-guest-network>`_."
msgstr ""
#: ../../networking.rst:96
msgid "Runtime Allocation of Virtual Network Resources"
msgstr ""
#: ../../networking.rst:98
msgid "When you define a new virtual network, all your settings for that network are stored in CloudStack. The actual network resources are activated only when the first virtual machine starts in the network. When all virtual machines have left the virtual network, the network resources are garbage collected so they can be allocated again. This helps to conserve network resources."
msgstr ""
#: ../../networking.rst:107
msgid "Network Service Providers"
msgstr ""
#: ../../networking.rst:110
msgid "For the most up-to-date list of supported network service providers, see the CloudStack UI or call `listNetworkServiceProviders`."
msgstr ""
#: ../../networking.rst:113
msgid "A service provider (also called a network element) is hardware or virtual appliance that makes a network service possible; for example, a firewall appliance can be installed in the cloud to provide firewall service. On a single network, multiple providers can provide the same network service. For example, a firewall service may be provided by Cisco or Juniper devices in the same physical network."
msgstr ""
#: ../../networking.rst:120
msgid "You can have multiple instances of the same service provider in a network (say, more than one Juniper SRX device)."
msgstr ""
#: ../../networking.rst:123
msgid "If different providers are set up to provide the same service on the network, the administrator can create network offerings so users can specify which network service provider they prefer (along with the other choices offered in network offerings). Otherwise, CloudStack will choose which provider to use whenever the service is called for."
msgstr ""
#: ../../networking.rst:129
msgid "*Supported Network Service Providers*"
msgstr ""
#: ../../networking.rst:131
msgid "CloudStack ships with an internal list of the supported service providers, and you can choose from this list when creating a network offering."
msgstr ""
#: ../../networking.rst:138
msgid "Virtual Router"
msgstr ""
#: ../../networking.rst:138
msgid "Citrix NetScaler"
msgstr ""
#: ../../networking.rst:138
msgid "Juniper SRX"
msgstr ""
#: ../../networking.rst:138
msgid "F5 BigIP"
msgstr ""
#: ../../networking.rst:138
msgid "Host based (KVM/Xen)"
msgstr ""
#: ../../networking.rst:141
msgid "Remote Access VPN"
msgstr ""
#: ../../networking.rst:141
#: ../../networking.rst:143
#: ../../networking.rst:145
#: ../../networking.rst:145
#: ../../networking.rst:147
#: ../../networking.rst:147
#: ../../networking.rst:147
#: ../../networking.rst:149
#: ../../networking.rst:151
#: ../../networking.rst:153
#: ../../networking.rst:153
#: ../../networking.rst:155
#: ../../networking.rst:155
#: ../../networking.rst:155
#: ../../networking.rst:157
#: ../../networking.rst:157
msgid "Yes"
msgstr ""
#: ../../networking.rst:141
#: ../../networking.rst:141
#: ../../networking.rst:141
#: ../../networking.rst:141
#: ../../networking.rst:143
#: ../../networking.rst:143
#: ../../networking.rst:143
#: ../../networking.rst:143
#: ../../networking.rst:145
#: ../../networking.rst:145
#: ../../networking.rst:145
#: ../../networking.rst:147
#: ../../networking.rst:147
#: ../../networking.rst:149
#: ../../networking.rst:149
#: ../../networking.rst:149
#: ../../networking.rst:149
#: ../../networking.rst:151
#: ../../networking.rst:151
#: ../../networking.rst:151
#: ../../networking.rst:151
#: ../../networking.rst:153
#: ../../networking.rst:153
#: ../../networking.rst:153
#: ../../networking.rst:155
#: ../../networking.rst:155
#: ../../networking.rst:157
#: ../../networking.rst:157
#: ../../networking.rst:157
msgid "No"
msgstr ""
#: ../../networking.rst:143
msgid "DNS/DHCP/User Data"
msgstr ""
#: ../../networking.rst:145
#: ../../networking.rst:182
#: ../../networking.rst:292
msgid "Firewall"
msgstr ""
#: ../../networking.rst:147
#: ../../networking.rst:180
msgid "Load Balancing"
msgstr ""
#: ../../networking.rst:149
msgid "Elastic IP"
msgstr ""
#: ../../networking.rst:151
msgid "Elastic LB"
msgstr ""
#: ../../networking.rst:153
#: ../../networking.rst:174
#: ../../networking.rst:293
msgid "Source NAT"
msgstr ""
#: ../../networking.rst:155
#: ../../networking.rst:176
#: ../../networking.rst:296
msgid "Static NAT"
msgstr ""
#: ../../networking.rst:157
#: ../../networking.rst:178
#: ../../networking.rst:299
msgid "Port Forwarding"
msgstr ""
#: ../../networking.rst:162
msgid "Network Offerings"
msgstr ""
#: ../../networking.rst:165
msgid "For the most up-to-date list of supported network services, see the CloudStack UI or call listNetworkServices."
msgstr ""
#: ../../networking.rst:168
msgid "A network offering is a named set of network services, such as:"
msgstr ""
#: ../../networking.rst:170
#: ../../networking.rst:287
msgid "DHCP"
msgstr ""
#: ../../networking.rst:172
#: ../../networking.rst:288
msgid "DNS"
msgstr ""
#: ../../networking.rst:184
#: ../../networking.rst:302
msgid "VPN"
msgstr ""
#: ../../networking.rst:186
msgid "(Optional) Name one of several available providers to use for a given service, such as Juniper for the firewall"
msgstr ""
#: ../../networking.rst:189
msgid "(Optional) Network tag to specify which physical network to use"
msgstr ""
#: ../../networking.rst:191
msgid "When creating a new VM, the user chooses one of the available network offerings, and that determines which network services the VM can use."
msgstr ""
#: ../../networking.rst:194
msgid "The CloudStack administrator can create any number of custom network offerings, in addition to the default network offerings provided by CloudStack. By creating multiple custom network offerings, you can set up your cloud to offer different classes of service on a single multi-tenant physical network. For example, while the underlying physical wiring may be the same for two tenants, tenant A may only need simple firewall protection for their website, while tenant B may be running a web server farm and require a scalable firewall solution, load balancing solution, and alternate networks for accessing the database backend."
msgstr ""
#: ../../networking.rst:206
msgid "If you create load balancing rules while using a network service offering that includes an external load balancer device such as NetScaler, and later change the network service offering to one that uses the CloudStack virtual router, you must create a firewall rule on the virtual router for each of your existing load balancing rules so that they continue to function."
msgstr ""
#: ../../networking.rst:213
msgid "When creating a new virtual network, the CloudStack administrator chooses which network offering to enable for that network. Each virtual network is associated with one network offering. A virtual network can be upgraded or downgraded by changing its associated network offering. If you do this, be sure to reprogram the physical network to match."
msgstr ""
#: ../../networking.rst:219
msgid "CloudStack also has internal network offerings for use by CloudStack system VMs. These network offerings are not visible to users but can be modified by administrators."
msgstr ""
#: ../../networking.rst:225
msgid "Creating a New Network Offering"
msgstr ""
#: ../../networking.rst:227
msgid "To create a network offering:"
msgstr ""
#: ../../networking.rst:229
msgid "Log in with admin privileges to the CloudStack UI."
msgstr ""
#: ../../networking.rst:231
msgid "In the left navigation bar, click Service Offerings."
msgstr ""
#: ../../networking.rst:233
msgid "In Select Offering, choose Network Offering."
msgstr ""
#: ../../networking.rst:235
msgid "Click Add Network Offering."
msgstr ""
#: ../../networking.rst:237
msgid "In the dialog, make the following choices:"
msgstr ""
#: ../../networking.rst:239
msgid "**Name**. Any desired name for the network offering."
msgstr ""
#: ../../networking.rst:241
msgid "**Description**. A short description of the offering that can be displayed to users."
msgstr ""
#: ../../networking.rst:244
msgid "**Network Rate**. Allowed data transfer rate in MB per second."
msgstr ""
#: ../../networking.rst:246
msgid "**Guest Type**. Choose whether the guest network is isolated or shared."
msgstr ""
#: ../../networking.rst:249
msgid "For a description of this term, see `“About Virtual Networks” <#about-virtual-networks>`_."
msgstr ""
#: ../../networking.rst:252
msgid "**Persistent**. Indicate whether the guest network is persistent or not. The network that you can provision without having to deploy a VM on it is termed persistent network. For more information, see `“Persistent Networks” <networking2.html#persistent-networks>`_."
msgstr ""
#: ../../networking.rst:258
msgid "**Specify VLAN**. (Isolated guest networks only) Indicate whether a VLAN could be specified when this offering is used. If you select this option and later use this network offering while creating a VPC tier or an isolated network, you will be able to specify a VLAN ID for the network you create."
msgstr ""
#: ../../networking.rst:264
msgid "**VPC**. This option indicate whether the guest network is Virtual Private Cloud-enabled. A Virtual Private Cloud (VPC) is a private, isolated part of CloudStack. A VPC can have its own virtual network topology that resembles a traditional physical network. For more information on VPCs, see `“About Virtual Private Clouds” <networking2.html#about-virtual-private-clouds>`_."
msgstr ""
#: ../../networking.rst:271
msgid "**Supported Services**. Select one or more of the possible network services. For some services, you must also choose the service provider; for example, if you select Load Balancer, you can choose the CloudStack virtual router or any other load balancers that have been configured in the cloud. Depending on which services you choose, additional fields may appear in the rest of the dialog box."
msgstr ""
#: ../../networking.rst:279
msgid "Based on the guest network type selected, you can see the following supported services:"
msgstr ""
#: ../../networking.rst:285
msgid "Supported Services"
msgstr ""
#: ../../networking.rst:285
msgid "Description"
msgstr ""
#: ../../networking.rst:285
msgid "Isolated"
msgstr ""
#: ../../networking.rst:285
msgid "Shared"
msgstr ""
#: ../../networking.rst:287
#: ../../networking.rst:288
msgid "For more information, see `“DNS and DHCP” <networking2.html#dns-and-dhcp>`_."
msgstr ""
#: ../../networking.rst:287
#: ../../networking.rst:287
#: ../../networking.rst:288
#: ../../networking.rst:288
#: ../../networking.rst:289
#: ../../networking.rst:289
#: ../../networking.rst:292
#: ../../networking.rst:292
#: ../../networking.rst:293
#: ../../networking.rst:293
#: ../../networking.rst:296
#: ../../networking.rst:296
#: ../../networking.rst:299
#: ../../networking.rst:302
#: ../../networking.rst:304
#: ../../networking.rst:306
#: ../../networking.rst:308
msgid "Supported"
msgstr ""
#: ../../networking.rst:289
msgid "Load Balancer"
msgstr ""
#: ../../networking.rst:289
msgid "If you select Load Balancer, you can choose the CloudStack virtual router or any other load balancers that have been configured in the cloud."
msgstr ""
#: ../../networking.rst:292
msgid "For more information, see the Administration Guide."
msgstr ""
#: ../../networking.rst:293
msgid "If you select Source NAT, you can choose the CloudStack virtual router or any other Source NAT providers that have been configured in the cloud."
msgstr ""
#: ../../networking.rst:296
msgid "If you select Static NAT, you can choose the CloudStack virtual router or any other Static NAT providers that have been configured in the cloud."
msgstr ""
#: ../../networking.rst:299
msgid "If you select Port Forwarding, you can choose the CloudStack virtual router or any other Port Forwarding providers that have been configured in the cloud."
msgstr ""
#: ../../networking.rst:299
#: ../../networking.rst:302
#: ../../networking.rst:304
#: ../../networking.rst:306
#: ../../networking.rst:308
msgid "Not Supported"
msgstr ""
#: ../../networking.rst:302
msgid "For more information, see `“Remote Access VPN” <networking2.html#remote-access-vpn>`_."
msgstr ""
#: ../../networking.rst:304
msgid "User Data"
msgstr ""
#: ../../networking.rst:304
msgid "For more information, see `“User Data and Meta Data” <api.html#user-data-and-meta-data>`_."
msgstr ""
#: ../../networking.rst:306
msgid "Network ACL"
msgstr ""
#: ../../networking.rst:306
msgid "For more information, see `“Configuring Network Access Control List” <networking2.html#configuring-network-access-control-list>`_."
msgstr ""
#: ../../networking.rst:308
msgid "Security Groups"
msgstr ""
#: ../../networking.rst:308
msgid "For more information, see `“Adding a Security Group” <networking2.html#adding-a-security-group>`_."
msgstr ""
#: ../../networking.rst:313
msgid "**System Offering**. If the service provider for any of the services selected in Supported Services is a virtual router, the System Offering field appears. Choose the system service offering that you want virtual routers to use in this network. For example, if you selected Load Balancer in Supported Services and selected a virtual router to provide load balancing, the System Offering field appears so you can choose between the CloudStack default system service offering and any custom system service offerings that have been defined by the CloudStack root administrator."
msgstr ""
#: ../../networking.rst:323
msgid "For more information, see `“System Service Offerings” <service_offerings.html#system-service-offerings>`_."
msgstr ""
#: ../../networking.rst:326
msgid "**LB Isolation**: Specify what type of load balancer isolation you want for the network: Shared or Dedicated."
msgstr ""
#: ../../networking.rst:329
msgid "**Dedicated**: If you select dedicated LB isolation, a dedicated load balancer device is assigned for the network from the pool of dedicated load balancer devices provisioned in the zone. If no sufficient dedicated load balancer devices are available in the zone, network creation fails. Dedicated device is a good choice for the high-traffic networks that make full use of the device's resources."
msgstr ""
#: ../../networking.rst:337
msgid "**Shared**: If you select shared LB isolation, a shared load balancer device is assigned for the network from the pool of shared load balancer devices provisioned in the zone. While provisioning CloudStack picks the shared load balancer device that is used by the least number of accounts. Once the device reaches its maximum capacity, the device will not be allocated to a new account."
msgstr ""
#: ../../networking.rst:345
msgid "**Mode**: You can select either Inline mode or Side by Side mode:"
msgstr ""
#: ../../networking.rst:347
msgid "**Inline mode**: Supported only for Juniper SRX firewall and BigF5 load balancer devices. In inline mode, a firewall device is placed in front of a load balancing device. The firewall acts as the gateway for all the incoming traffic, then redirect the load balancing traffic to the load balancer behind it. The load balancer in this case will not have the direct access to the public network."
msgstr ""
#: ../../networking.rst:355
msgid "**Side by Side**: In side by side mode, a firewall device is deployed in parallel with the load balancer device. So the traffic to the load balancer public IP is not routed through the firewall, and therefore, is exposed to the public network."
msgstr ""
#: ../../networking.rst:360
msgid "**Associate Public IP**: Select this option if you want to assign a public IP address to the VMs deployed in the guest network. This option is available only if"
msgstr ""
#: ../../networking.rst:364
msgid "Guest network is shared."
msgstr ""
#: ../../networking.rst:366
msgid "StaticNAT is enabled."
msgstr ""
#: ../../networking.rst:368
msgid "Elastic IP is enabled."
msgstr ""
#: ../../networking.rst:370
msgid "For information on Elastic IP, see `“About Elastic IP” <networking2.html#about-elastic-ip>`_."
msgstr ""
#: ../../networking.rst:373
msgid "**Redundant router capability**: Available only when Virtual Router is selected as the Source NAT provider. Select this option if you want to use two virtual routers in the network for uninterrupted connection: one operating as the master virtual router and the other as the backup. The master virtual router receives requests from and sends responses to the user’s VM. The backup virtual router is activated only when the master is down. After the failover, the backup becomes the master virtual router. CloudStack deploys the routers on different hosts to ensure reliability if one host is down."
msgstr ""
#: ../../networking.rst:384
msgid "**Conserve mode**: Indicate whether to use conserve mode. In this mode, network resources are allocated only when the first virtual machine starts in the network. When conservative mode is off, the public IP can only be used for a single service. For example, a public IP used for a port forwarding rule cannot be used for defining other services, such as StaticNAT or load balancing. When the conserve mode is on, you can define more than one service on the same public IP."
msgstr ""
#: ../../networking.rst:394
msgid "If StaticNAT is enabled, irrespective of the status of the conserve mode, no port forwarding or load balancing rule can be created for the IP. However, you can add the firewall rules by using the createFirewallRule command."
msgstr ""
#: ../../networking.rst:399
msgid "**Tags**: Network tag to specify which physical network to use."
msgstr ""
#: ../../networking.rst:401
msgid "**Default egress policy**: Configure the default policy for firewall egress rules. Options are Allow and Deny. Default is Allow if no egress policy is specified, which indicates that all the egress traffic is accepted when a guest network is created from this offering."
msgstr ""
#: ../../networking.rst:407
msgid "To block the egress traffic for a guest network, select Deny. In this case, when you configure an egress rules for an isolated guest network, rules are added to allow the specified traffic."
msgstr ""
#: ../../networking.rst:411
msgid "Click Add."
msgstr ""